- Products
- Learn
- Local User Groups
- Partners
- More
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
Ink Dragon: A Major Nation-State Campaign
Watch HereCheckMates Go:
CheckMates Fest
VPN client authentication configured with two authentication factors: RADIUS + Dynamic ID
Clients are able to connect only with User+Pass if they use Capsule VPN Clients - Windows, Android or IOS (capsule connect).
Only way to avoid this is to disable this clients... but I need to use them (certificate authentication).
Can you post a screenshot of the following settings:
This might help to see if it is a configuration issue or misbehaving!
Not sure you can configure different authentication schemes for different clients. What does your Gateway Properties > VPN Clients > Authentication show?
Currently I have two choices there:
1. Radius, DynamicID
2. Personal Certificate, Username and Password
For me it sounds like you have configured "multiple login options" that way and this is only supported for some clients. See sk111583 for details.
For other clients you have to rely on the legacy authentication options.
Yes, I've configured multiple login options and I know that Capsule VPN clients only support one factor authentication. But the gateway should enforce two factor and don't allow the connection for this clients.
Can you post a screenshot of the following settings:
This might help to see if it is a configuration issue or misbehaving!
That's it !!! Never imagined that the setting could be there (allow older clients to connect to the gateway was unchecked).
Many thanks
Hi Antonio,
I will appreciate if you could open a ticket with TAC for further investigation.
Thanks,
Royi.
I will. Thanks.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 4 | |
| 4 | |
| 3 | |
| 3 | |
| 3 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 |
Tue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementTue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY