- CheckMates
- :
- Products
- :
- Quantum
- :
- Remote Access VPN
- :
- Remote Access VPN - Always On
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Remote Access VPN - Always On
Hi,
We would like to consider implementing an Always On solution. We are now using Check Point VPN clients (standalone) on Windows and MacOS devices.
The main authentication method is currently username/password, but we are phasing to SAML authentication (Okta).
Would Check Point support an Always On solution given those criterias ? Does a guide exists ?
Thanks in advance for your help.
Regards,
Antoine
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
sk44073: Password caching with Endpoint Security VPN
sk114584: How to disable password saving for Endpoint Security VPN connections
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
CP Always On is mostly implemented using the RA client AutoConnect feature. Second method is Machine Authentication, connecting to VPN even before user login. For SAML, see sk172909: SAML authentication in Remote Access VPN clients
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thanks for your reply. So if we want a solution that provides both autoconnect and autologin, we only have certificates authentication, right ?
Currently SAML auth works great, but requires user interraction. The idea of our management is to have something entirely transparent to the user.
Thanks.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Also Certificate Authentication has both, as long as the Cert password is cached ! I do only need to select connect in menue, and also using AutoConnect, no user interaction is needed.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
how we can cache the password?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
sk44073: Password caching with Endpoint Security VPN
sk114584: How to disable password saving for Endpoint Security VPN connections
