- Products
- Learn
- Local User Groups
- Partners
- More
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
Join our TechTalk: Malware 2021 to Present Day
Building a Preventative Cyber Program
ZTNA Buyer’s Guide
Zero Trust essentials for your most valuable assets
Be a CloudMate!
Check out our cloud security exclusive space!
Check Point's Cyber Park is Now Open
Let the Games Begin!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
Hi Team,
Is there any way to restrict users internet once they logged on to RA vpn or SNX? I know one way is route the entire internet traffic through firewall and no nat rule for Office mode or force fake proxy entry to browsers so that they wont be able to browse the internet.
However it seems those are global settings and I am looking if this can be done for certain users?
As those are global settings, you can't make them apply to specific users: it's all or nothing.
However, a Desktop Policy (using Endpoint Security VPN or Harmony Endpoint) can block browsing to the Internet on the client without having to route all traffic.
Thanks for the reply - In this case I would need separate EPM server? or Desktop security policy option checked?
Either option should work (depends on if you use EPM or not).
I think you could use desktop policy, for sure. But, why not just create RA groups and then set up regular policy rules to restrict access?
Just a thought..
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY