- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hello,
Does anyone tried "endpoint security vpn" E80.71 in MacOS 10.13.2 ?
I tried in several machines and the connection is successful, but no connectivity...
The gateway is R80.10 with Jumbo 56.
Thanks!
Exactly the same symptoms you describe! At the same time we had problems with legacy authentication, but the real solution is to disable the desktop firewall.
This version for MAC includes desktop firewall... So if you can, edit the ttm file on the gateway and change the "default" of "enable_firewall" from "true" to "client_decide"
The client default is false.
...
:enable_firewall (
:gateway (
:map (
:false (false)
:true (true)
:client_decide (client_decide)
)
:default (client_decide)
)
)
...
Best regards
Hello,
It seems the problem is related with legacy authentication... after changing the object to a Role and client re-installation, VPN it's working.
Thanks!
Hi Hermano,
What sort of symptoms were you seeing from the client? I am having a similar issue, where using the VPN client works fine on MacOS 10.13.1, but on 10.13.2 the client authenticates successfully, but does not pass any traffic eg. if I try SSH to a known IP address, I receive an "Operation not permitted" message, and can't see any traffic from the client in our FW logs.
Thanks!
Exactly the same symptoms you describe! At the same time we had problems with legacy authentication, but the real solution is to disable the desktop firewall.
This version for MAC includes desktop firewall... So if you can, edit the ttm file on the gateway and change the "default" of "enable_firewall" from "true" to "client_decide"
The client default is false.
...
:enable_firewall (
:gateway (
:map (
:false (false)
:true (true)
:client_decide (client_decide)
)
:default (client_decide)
)
)
...
Best regards
This is a workaround..., maybe its possible to do something in the MacOS system configuration. I´m not a Mac user ![]()
We route all vpn traffic to the gateway, and our "endpoint security VPN" desktop firewall policy is allow_all, so this workaround is a solution for our Mac users. Windows users use "Checkpoint mobile for windows".
If there is anyone with more ideas... it would be great ![]()
Best regards.
Thanks so much Hermano! That seems to have solved our issue.
Cheers,
Patrick
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 4 | |
| 3 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY