Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Simon_Macpherso
Advisor
Jump to solution

SAML Support for Remote Access VPN

Hello,

When configuring SAML integration for Remote Access VPN, the following documentation specifies Endpoint Security Client for Windows - version E84.70 build 986102705 or higher needs to be installed.

https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_RemoteAccessVPN_AdminGuide/C...

Our Windows users are currently using the Checkpoint Capsule VPN client from the Windows store, which allows users to configure a VPN connection profile with the OS VPN settings.

Can the Checkpoint Capsule VPN client be used for SAML authentication for Windows users instead of deploying Endpoint Security Client for Windows - version E84.70 build 986102705 or higher to each machine?

Regards,
Simon

0 Kudos
1 Solution

Accepted Solutions
PhoneBoy
Admin
Admin

Capsule VPN clients on any platform (Windows, iOS, Android) do not currently support SAML authentication.

View solution in original post

0 Kudos
10 Replies
Simon_Macpherso
Advisor
0 Kudos
_Val_
Admin
Admin

Look here: https://support.checkpoint.com/results/sk/sk172909

Capsule is not listed, which means SAML is not supported with it.

0 Kudos
Senpai_Noticed
Employee
Employee

SK172909 states at the top, that SAML is not supported with 

  • Capsule VPN / Capsule Connect / Capsule for Windows

0 Kudos
Chris_Atkinson
Employee
Employee

There has been progress in recent Jumbo's it seems: R81.10 JHF T113

PRJ-47677,PMTR-88036 - VPN - UPDATE: Added SAML authentication support for Capsule Connect / Capsule VPN.

 

CCSM R77/R80/ELITE
0 Kudos
Senpai_Noticed
Employee
Employee

Not seeing any Official Admin Guide nor an SK article. This may still be in development.
just that the Jumbo for R81.10 JHF Take_113 may have included the feature to be released, like how in R80.40 JHF Take_114

 

0 Kudos
PhoneBoy
Admin
Admin

While I agree this is positive movement, I assume this would also require client updates as well.

0 Kudos
Senpai_Noticed
Employee
Employee

No ETA on the feature release, but I would assume its more in align with when Jumbo release schedules are pushed out.
But at current state, Capsule is not yet fully supported with SAML.

0 Kudos
PhoneBoy
Admin
Admin

Capsule VPN clients on any platform (Windows, iOS, Android) do not currently support SAML authentication.

0 Kudos
ClaudiaPeter
Contributor

Is there any roadmap for SAML support for iOS clients?

SAML is supported for Windows clients since nearly 2 years, but for iOS clients it is still "not currently supported". To use different authentication methods during a transition time period is okay, but after two years and with no chance to solve this, we are urged to migrate to another VPN solution.

0 Kudos
PhoneBoy
Admin
Admin

Recommend you engage with your Check Point SE on this requirement. 

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events