Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Ilovecheckpoint
Participant

Platform Portal & UserCheck ip address

Hello,

By default usercheck and portal ip address is the one configured on main ip address.

My gateway has as main ip address, a public one, its management is reachable via Internet.

My concern is security; is there any limitation if I change their ip address to an internal one and I allow only internal ip addresses to reach them, like remote access ipsec vpn?

 

 

0 Kudos
4 Replies
PhoneBoy
Admin
Admin

If you change the Main IP, it will impact Remote Access unless you configure Link Selection to the correct (public) IP. 
It's also the IP used for managing the gateways, so it needs to be reachable from the management.

Ilovecheckpoint
Participant

Thank you for your answer.

What about if I change Platform Portal & UserCheck ip address, and I choose an internal one?

0 Kudos
Gaurav_Pandya

There is an option to keep the platform portal and UserCheck IPs public while restricting access using a dynamic geo object. Please refer to the thread below for details.
 

https://community.checkpoint.com/t5/SASE-and-Remote-Access/Geo-VPN-blocking/m-p/214040

 

0 Kudos
emmap
MVP Gold CHKP MVP Gold CHKP
MVP Gold CHKP

You can change the Platform Portal IP to an internal one without breaking remote access. Often people will configure a URL for UserCheck and have their internal DNS server map it to the suitable internal interface VIP on the gateway. You can then set that URL in the UserCheck settings.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events