- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Announcing Quantum R82.10!
Learn MoreOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hi All,
I am trying to setup a test lab with Mobile Access VPN, running R81.20. My Checkpoint VM has just two interfaces (192.168.10.10, 192.168.20.10). I would like to have the GAIA management portal accessible on one and Mobile Access VPN on the other.
I have followed a few different guides on setting up Mobile Access VPN, but I always get stuck.
No matter what I do every URL on both interfaces always loads the GAIA management portal. I have tried setting the "Main URL" under "Platform Portal" on the gateway but this makes no difference.
Is there a more detailed guide on how to configure Mobile Access VPN from scratch? Or am I just doing something else wrong here?
Are you specifying /sslvpn as part of the URL?
This is noted in the product documentation: https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_MobileAccess_AdminGuide/Cont...
By default, all portals (Gaia WebUI, SSL VPN, others) use the same IP and the correct portal is used based on URL.
Not sure you can change the requirement to use /sslvpn as part of the URL, even if multiportal is disabled.
Apologies, I should have specified. Yes I am requesting /sslvpn. Every URL loads the GAIA management portal, even ones that I would expect to 404 like /asdf.
I'd start with troubleshooting Multiportal: https://support.checkpoint.com/results/sk/sk87920
Based on what you find there, we can suggest other steps.
sslvpn is not showing up when I run "mpclient list". Checking in SmartView it definitely seems like it is enabled, the box is checked and "Mobile Access" appears under "Access Blades". Is there something extra I need to do to get it configured and enabled with the MultiPortal Daemon?
Try disabling the blade, pushing policy, then enabling the blade again, and pushing policy.
Tried disabling, pushing, re-enabling. I've also tried again from scratch on a fresh VM. Still no luck unfortunately.
Is there a log file I can check to see any errors that might be occurring while applying the policy? In SmartConsole it looks like everything is enabled and working fine. But checking on the CLI it seems like nothing is enabled.
Alternatively is it possible to enable Mobile Access purely from the CLI?
Did you perform all the debugging steps in sk87920?
Easy to fix...change web ui port.
clish -> set web ssl-port 4434
yes
save config
exit
Also change in smart console, push policy
Andy
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY