Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
yeruel
Participant
Jump to solution

Create More than Remote access in VPN community

Hi Checkmates,

I am planning to create users for a traffic SSL VPN client to access internal resources from the internet. A remote access VPN has been created. When users log in to the SSL VPN client using their username and password, and authentication is successful, the client receives a remote IP pool address and attempts to access the resources. My goal is to create different remote access VPN communities for different user groups, and mapped each remote access vpn to the users group, and with each group having its own access control policy.

Is it possible to create different remote access VPNs in VPN communities for this purpose?

For example:

  • Rule 1: Source - Usergroup1, Destination - Network1, VPN - RemoteAccessVPN1

  • Rule 2: Source - Usergroup2, Destination - Network2, VPN - RemoteAccessVPN2

     

    VPN Coommunity.png

 

0 Kudos
3 Solutions

Accepted Solutions
Tal_Paz-Fridman
Employee
Employee
(1)
the_rock
Legend
Legend

Cant do, sorry, definitely not possible, as @Tal_Paz-Fridman indicated. Below is what happens if you try.

Andy

Screenshot_1.png

View solution in original post

0 Kudos
Chris_Atkinson
Employee Employee
Employee

You would likely need to explore combinations of the following to achieve similar logic

- Identity Awareness + Remote Access 

- Multi-domain Management + VSX 

Otherwise please consult with your local CP SE about a possible RFE.

CCSM R77/R80/ELITE

View solution in original post

3 Replies
Tal_Paz-Fridman
Employee
Employee

No.

Multiple Remote Access communities Issue:

https://support.checkpoint.com/results/sk/sk160892 

(1)
the_rock
Legend
Legend

Cant do, sorry, definitely not possible, as @Tal_Paz-Fridman indicated. Below is what happens if you try.

Andy

Screenshot_1.png

0 Kudos
Chris_Atkinson
Employee Employee
Employee

You would likely need to explore combinations of the following to achieve similar logic

- Identity Awareness + Remote Access 

- Multi-domain Management + VSX 

Otherwise please consult with your local CP SE about a possible RFE.

CCSM R77/R80/ELITE

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events