- Products
- Learn
- Local User Groups
- Partners
- More
Policy Insights and Policy Auditor in Action
19 November @ 5pm CET / 11am ET
Access Control and Threat Prevention Best Practices
Watch HereOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hi,
Before I ask TAC, I would like to use the wisdom of the crowd.
Is there a way to keep Endpoint Security Client connected while switching between windows users (windows 10)?
Let me explain my need:
Let's say I have a user connected from a laptop to the VPN and now I want to create a new user on the laptop, in order to get a roaming user profile, the user has to be connected to the Domain and to the network and this can be done only via VPN. If I can log-in with one user, connect to the VPN and then switch to the new user while the VPN is connected I will be able to get the roaming user profile directly after login.
Is there a way to support this scenario using Endpoint Security?
As far as I know, you should be able to do this.
In fact, we have a note about this here saying that any user logged into the same system will also have access: Check Point Remote Access Solutions
Earlier versions of the client definitely didn't support this, though: Multiple logged in users (Fast User Switching) is not supported
A customer recently reported this behaviour to me as a perceived 'problem' but from what Dameon says and the note in sk67820 it does appear to be "by design". The behaviour reported to me was that "switch user" (on Windows 10) appeared to drop the remote access VPN tunnel whereas if the logged in user (user1) locked the screen and another user (user2) logged in as "Other User" then the tunnel from user1 would still be up & working....
This particular customer wanted to prevent this scenario, so i believe the solution in this case would be a Windows control to prevent both switching and "other user" login capability?
interested to know if anyone else has encountered this ...
To prevent this you can set the "Disconnect when device is idle" in global properties
But, Does the second user able to login via the first user VPN?
Thanks Shahar, will give that a go
yes, once the user2 logs into Windows, then they can access all corporate resources as if they were user1...
This is really interesting!!
I will give it a try although it sounds like a bug
Do you know which authentication method is used in this case?
Yes in this case we configure User Certificate authentication CAPI with Cert verification against backend AD Certificate Authority and User checking against AD Group Membership.
In this example user2 does not belong to the “remote VPN allowed” AD group but user1 does !
---
Regards,
Patrick
So the second user "piggy backs" on the first user tunnel.
Which Endpoint version are you using
Cool, I will try that.
Thanks
Patrick
Hi, Did you ever find a solution to keep VPN connected when switching windows users? I'm facing the same challenge.
thanks
Which client version and authentication method is used?
For reference E84.30 (old) fixed an issue where the VPN disconnects when the Windows desktop locks.
E87.20. Authenticating with Certificate - P12
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 3 | |
| 2 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Thu 20 Nov 2025 @ 05:00 PM (CET)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - AMERThu 20 Nov 2025 @ 10:00 AM (CST)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - EMEAWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchThu 20 Nov 2025 @ 05:00 PM (CET)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - AMERThu 20 Nov 2025 @ 10:00 AM (CST)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - EMEAThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY