Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Ob1lan
Collaborator
Jump to solution

Remote Access VPN - Always On

Hi,

We would like to consider implementing an Always On solution. We are now using Check Point VPN clients (standalone) on Windows and MacOS devices.

The main authentication method is currently username/password, but we are phasing to SAML authentication (Okta).

Would Check Point support an Always On solution given those criterias ? Does a guide exists ?

Thanks in advance for your help.

Regards,

Antoine

0 Kudos
5 Replies
G_W_Albrecht
Legend Legend
Legend

CP Always On is mostly implemented using the RA client AutoConnect feature. Second method is Machine Authentication, connecting to VPN even before user login. For SAML, see sk172909: SAML authentication in Remote Access VPN clients

CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist
0 Kudos
Ob1lan
Collaborator

Thanks for your reply. So if we want a solution that provides both autoconnect and autologin, we only have certificates authentication, right ?

Currently SAML auth works great, but requires user interraction. The idea of our management is to have something entirely transparent to the user. 

Thanks.

0 Kudos
G_W_Albrecht
Legend Legend
Legend

Also Certificate Authentication has both, as long as the Cert password is cached ! I do only need to select connect in menue, and also using AutoConnect, no user interaction is needed.

CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist
0 Kudos
handiansudianto
Advisor

how we can cache the password?

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events