- Products
- Learn
- Local User Groups
- Partners
- More
Access Control and Threat Prevention Best Practices
5 November @ 5pm CET / 11am ET
Firewall Uptime, Reimagined
How AIOps Simplifies Operations and Prevents Outages
HTTPS Inspection
Help us to understand your needs better
CheckMates Go:
Spark Management Portal and More!
Dear All,
I have a demo environment, where I want to the post-login script functionality.
I seemed straightforward according to this article:
I used a simple .vbs which would pop up a window with a word. The location is C:\install\test.vbs .
My MGMT and GW is R81.10 take 95
Anybody experienced such kind of behavior?
All answer are welcome 🙂
BR
Akos
Try a .bat file - .vbs will not work afaik... sk103117: How to run the Post Connect Script on a Remote Access VPN client that connects to a specif...
Hi G_W_Albrecht
Same, it seems the values of the trac_client_1.ttm does not take affect on the client side.
If I check the trac.defaults on the client side and the post_connect_script parameters empty, however I set it on the GW side. For test purposes I set the flush_dns_cache to "true" but it didn't make changes on the client side.
flush_dns_cache STRING "false" G W_USER 1 <----- default values
Akos
As shown in https://support.checkpoint.com/results/sk/sk103117 - Did you do a policy install and delete & recreate the site on the client after the changes ?
Hi,
Yes of course.
Akos
I would suggest to contact TAC !
Hi,
That would be the last chance, because it is a test system without any support.....
I don't think they would help me.
A
As long as you are testing for a customer with a valid support contract, it does not matter.
One more thing, is this correct syntax?
No - see https://support.checkpoint.com/results/sk/sk103117 -
:default (C:\vpn_pcs.bat)
Hi,
Ok, but the file must be in the root (C:\)?
SK said:
:default (<Full Path to the script file on the Remote Access VPN computer>)
You have to give the full path - regardless if that is C:\<somepath> or D:\<somepath> or F:\<somepath>, it only has to be the same for every client !
One step forward:
trac.log
[ 4524 6448][8 Aug 13:15:25][TR_FLOW_STEP] TrRunScriptsStep::RunCommandLine: SCRunProcessAsUser returned with code 2 - failed to create process
[ 4524 6448][8 Aug 13:15:25][TR_FLOW_STEP] TrRunScriptsStep::RunScriptThread: Failed to run script: 'C:\Users\Public\Documents\vpn_pcs.bat''.
What could be this? 🙂
A
Can you run the script from CLI with user-level permissions ?
Important Note - The Post-Connect script runs with user-level permissions. For security reasons, running the Post-Connect script is not supported if users do a Secure Domain Login before Windows login.
Hi,
My first idea was the same. I'm able to run the script. My client is a simple win10 client.
Akos
What simple win10 client ? I thought you are using E87.30 RA VPN client ? Neverteless, SCRunProcessAsUser returned with code 2 - failed to create process looks like the client has no rights to run it...
To clarify this?
I'm using a win10 with E87.30 RA VPN client
A
A late follow-up:
I needed toadd the missing parameters following sk75221.
Akos
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 6 | |
| 3 | |
| 3 | |
| 2 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Thu 30 Oct 2025 @ 03:00 PM (CET)
Cloud Security Under Siege: Critical Insights from the 2025 Security Landscape - EMEAThu 30 Oct 2025 @ 11:00 AM (EDT)
Tips and Tricks 2025 #15: Become a Threat Exposure Management Power User!Thu 30 Oct 2025 @ 02:00 PM (EDT)
Cloud Security Under Siege: Critical Insights from the 2025 Security Landscape - AMERThu 30 Oct 2025 @ 03:00 PM (CET)
Cloud Security Under Siege: Critical Insights from the 2025 Security Landscape - EMEAThu 30 Oct 2025 @ 11:00 AM (EDT)
Tips and Tricks 2025 #15: Become a Threat Exposure Management Power User!Thu 30 Oct 2025 @ 02:00 PM (EDT)
Cloud Security Under Siege: Critical Insights from the 2025 Security Landscape - AMERWed 05 Nov 2025 @ 11:00 AM (EST)
TechTalk: Access Control and Threat Prevention Best PracticesAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY