- Products
- Learn
- Local User Groups
- Partners
- More
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Improve Your Security Posture with
Threat Prevention and Policy Insights
Overlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hello Guys!
Ihave the below scenario.I am writing about r77.30.Client connect through capsule vpn successfully.
Then try to access certain internal server with RDP without success.From devices(ipad & android phone) i ask him and tried various rdp client without success.Also note that those servers are works properly through mobile access.Finally with fw ctl zdebug drop tcpdump i cannot see any logs.
Any suggestions?
Jerry,
I think for "capsule connect" no MAB policy is needed.
snip from MAB dosumentation
"The Mobile Access policy applies to the Mobile Access portal and Capsule Workspace. It does not apply to Desktop clients or Capsule Connect."
Wolfgang
GGiorgakis,
Capsule Connect VPN is a full VPN client. You have to configure remote access rules to use them.
These rules are different from MobileAccessBlade rules, they are the same as for a normal Windows VPN client like EndPoint VPN.
If you use SSL-extender and native applications via MOB, you can't use this rules with Capsule VPN.
Add your gateway to the remote access community, create rules with users as source, your needed destinations and services and in the VPN section add the remote access community.
Wolfgang
Add the network into VPN domain and works properly.
Thanks
Jerry,
I think for "capsule connect" no MAB policy is needed.
snip from MAB dosumentation
"The Mobile Access policy applies to the Mobile Access portal and Capsule Workspace. It does not apply to Desktop clients or Capsule Connect."
Wolfgang
Hello @Wolfgang
To use CAPSULE on iPhone/Android, do you need to have the “Mobile Access” blade enabled in your FW?
Currently, my remote users connect using the IPsec VPN blade, using the “Endpoint Security VPN” client, since most of them use PCs to connect, but we want some of them to be able to use their mobile phones for their connections. However, we are unsure whether it is necessary to enable the “mobile access” blade for this.
Thank you for your comments.
Remote Access clients of all varieties can use either IPsec VPN OR Mobile Access without issue.
The only time you need to enable Mobile Access is if you want to use the SSL VPN portal.
Hello,
Could you tell me in which file a remote VPN user's connection attempts are saved?
I have users who are trying to connect using CAPSULE and are unable to do so.
Are there any diagnostic commands for CAPSULE client scenarios?
Thank you.
Did you check the gateway logs?
There are steps in this SK for collecting logs on the client side.
https://support.checkpoint.com/results/sk/sk106755
Tap the "info" (the i in the circle) icon
Tap on the 3 aligned dots (settings) in the top right
Tap "Configure logs"
My understanding was that the IPSec VPN blade only supported SecuRemote.
For the gateway to support all other clients it needed Mobile Access as well.
Should be confirmed here:
https://support.checkpoint.com/results/sk/sk67820
Also confirmed by launching the Mobile Access wizard and hovering the mouse cursor over the different client types. The popup text says which license is required.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 13 | |
| 9 | |
| 8 | |
| 8 | |
| 7 | |
| 5 | |
| 5 | |
| 4 | |
| 3 | |
| 3 |
Wed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchWed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY