Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
AkosBakos
MVP Silver
MVP Silver

SSL VPN disconnects after a successful login attempt, if the notebook on hotspot provided by iOS

Hi CheckMates,

I experiences a strange behaviour:

Here are the details:

  1. A notebook (both win10 and win11) which is enrolled to Intune
    1. the detailed parameters are not available yet
  2. the internet access provied by an iPhone hotspot
  3. SSL VPN disconnects after successful logon

If I change the internet access to a simple basic wifi -> everything works fine.

I know, this is a particular situation therefore I ask you for help. Not 100% sure this belogs to Check Point, but I got the info from this channel.

Thank you in advance for any ideas or tips.

Akos

----------------
\m/_(>_<)_\m/
0 Kudos
6 Replies
Lesley
MVP Gold
MVP Gold

I have seen the same, tried other provider and then all was OK. 

Just make capture on the relevant gateway. Check what public IP is used and tcpdump on the fw. If there is no traffic you can exclude firewall from the scope. If you also capture on client and see https send out and not on the gw we are even more certain. 

-------
Please press "Accept as Solution" if my post solved it 🙂
AkosBakos
MVP Silver
MVP Silver

Hi Lesley,

It does not depend on the provider, Customer has tested with different providers.

I will have an on-site session later, so it you have more tips, please share wih me 🙂

Akos

----------------
\m/_(>_<)_\m/
0 Kudos
the_rock
MVP Gold
MVP Gold

Hey bro,

I see the point @D_W  is making, makes sense to me as well.

Andy

0 Kudos
D_W
Advisor

Maybe a local routing issue?
Check if the hotspot uses the same ip range as the SSL VPN.

Lesley
MVP Gold
MVP Gold

You think there is overlap between VPN client subnet and mobile provider network? That would be unlikely I see more then one provider has been tested as a hotspot. 

-------
Please press "Accept as Solution" if my post solved it 🙂
0 Kudos
D_W
Advisor

Yes I think so 🙂 hotspot creates an ad-hoc network between the phone and the client not between the provider and the client. The phone settings define the network range. I think on iPhone you cannot change it...

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events