- CheckMates
- :
- Products
- :
- Harmony
- :
- Endpoint
- :
- Re: Publishing On-Prem Endpoint Server
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Publishing On-Prem Endpoint Server
Is it practical to allow connections to an On-Prem Endpoint management server on the internet using its FQDN?? I would like persons off the corporate network to receive product updates and so on via the internet. I have just about 300 or so home-based users.
I am looking for some guidance on this endeavor.
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
There are white papers published here about using a seperate policy server in your DMZ for this purpose. Depending on your existing licensing this may already be included within your entitlements.
Note if it's solely product updates of interest you have the ability to influence how those e.g A/V updates are received if the policy server or endpoint manager is unavailable i.e. direct from Check Point or other location.
Coming back to your original query yes it is something that is done by some customers (via NAT) depending on their internal policies, others may opt to achieve via VPN.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
There are white papers published here about using a seperate policy server in your DMZ for this purpose. Depending on your existing licensing this may already be included within your entitlements.
Note if it's solely product updates of interest you have the ability to influence how those e.g A/V updates are received if the policy server or endpoint manager is unavailable i.e. direct from Check Point or other location.
Coming back to your original query yes it is something that is done by some customers (via NAT) depending on their internal policies, others may opt to achieve via VPN.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
here is the White Paper for this: https://community.checkpoint.com/t5/Endpoint-Security-Products/White-Paper-R80-20-Endpoint-Policy-Se...
