Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
AkosBakos
Mentor Mentor
Mentor

SSL VPN disconnects after a successful login attempt, if the notebook on hotspot provided by iOS

Hi CheckMates,

I experiences a strange behaviour:

Here are the details:

  1. A notebook (both win10 and win11) which is enrolled to Intune
    1. the detailed parameters are not available yet
  2. the internet access provied by an iPhone hotspot
  3. SSL VPN disconnects after successful logon

If I change the internet access to a simple basic wifi -> everything works fine.

I know, this is a particular situation therefore I ask you for help. Not 100% sure this belogs to Check Point, but I got the info from this channel.

Thank you in advance for any ideas or tips.

Akos

----------------
\m/_(>_<)_\m/
0 Kudos
6 Replies
Lesley
Authority Authority
Authority

I have seen the same, tried other provider and then all was OK. 

Just make capture on the relevant gateway. Check what public IP is used and tcpdump on the fw. If there is no traffic you can exclude firewall from the scope. If you also capture on client and see https send out and not on the gw we are even more certain. 

-------
If you like this post please give a thumbs up(kudo)! 🙂
AkosBakos
Mentor Mentor
Mentor

Hi Lesley,

It does not depend on the provider, Customer has tested with different providers.

I will have an on-site session later, so it you have more tips, please share wih me 🙂

Akos

----------------
\m/_(>_<)_\m/
0 Kudos
the_rock
Legend
Legend

Hey bro,

I see the point @D_W  is making, makes sense to me as well.

Andy

0 Kudos
D_W
Advisor

Maybe a local routing issue?
Check if the hotspot uses the same ip range as the SSL VPN.

Lesley
Authority Authority
Authority

You think there is overlap between VPN client subnet and mobile provider network? That would be unlikely I see more then one provider has been tested as a hotspot. 

-------
If you like this post please give a thumbs up(kudo)! 🙂
0 Kudos
D_W
Advisor

Yes I think so 🙂 hotspot creates an ad-hoc network between the phone and the client not between the provider and the client. The phone settings define the network range. I think on iPhone you cannot change it...

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events