Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
sean37
Explorer

VPN Login Before Windows

Issues - Not getting VPN Icon berfore windows login. This is a new Windows Deployment using Autopilot. End user has never logged into computer before this. Need to have VPN for first login when user is remote. The deployment type is hybrid entra. This requires user to authenicate to the DC. 

I Can confirm that 

1. Checkpint is install and trac.config is there with SDL enable and Always connect turned on

2. It does have Username and Password ad auth type. 

3. Default site id configured. 

Even with all this we still don't get the VPN icon on first boot after autopilot.

0 Kudos
12 Replies
PhoneBoy
Admin
Admin

What authentication type have you configured for Remote Access?
If it's SAML, this does not support SDL, which is noted here:
https://sc1.checkpoint.com/documents/R82/WebAdminGuides/EN/CP_R82_RemoteAccessVPN_AdminGuide/Content... 

0 Kudos
(1)
sean37
Explorer

Using Username / Password and still cannot get the icon on the login to connect VPN

0 Kudos
PhoneBoy
Admin
Admin

Please provide screenshots (with sensitive details redacted) showing what you've configured as well as the version/JHF levels of gateways and management.
Also, I don't know what "still cannot get the icon on the login to connect VPN" means, please show a screenshot of that.

0 Kudos
sean37
Explorer

Endpoint version E88.70
Gateways 1575 R81.10.15 x4 Cloud GW R82 98
SmartCloud R82 MGMT

0 Kudos
PhoneBoy
Admin
Admin

Secure Domain Login leverages a legacy feature in Windows called GINA, which has technically been deprecated since Windows Vista.
I'm guessing the login method you are using (PIN) does NOT leverage GINA and/or your release of Windows completely disables GINA.

Regardless of the reason, no GINA means no SDL.

0 Kudos
the_rock
Legend
Legend

Those settings look right to me...so what happens when laptop boots up? Do you see an option to try log in?

Andy

0 Kudos
sean37
Explorer

No the VPN icon to try login. Never promots or anything. 

0 Kudos
the_rock
Legend
Legend

Technically, it would not come up automatically, user would need to click on the icon when screen is locked before they enter their creds for windows.

Andy

0 Kudos
sean37
Explorer

The problem is the icon does not show to click on. That is the part we’re missing.

0 Kudos
the_rock
Legend
Legend

K, got it now. Here is what I would try...either reinstall the client on PC you are testing or try another one. If both fail, might be worth do remote with TAC.

Andy

0 Kudos
sean37
Explorer

One other thing is that at this point of trying to login into the VPN no user has logged into the computer yet. It's a fresh OBE for the user using autopilot. 

0 Kudos
the_rock
Legend
Legend

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 20 May 2025 @ 11:30 AM (PDT)

    Las Vegas: Check Point Hybrid Mesh

    Wed 21 May 2025 @ 11:30 AM (MST)

    Tempe, AZ: Check Point Hybrid Mesh

    Tue 03 Jun 2025 @ 06:00 PM (EDT)

    Montreal: CPX Recap

    Tue 10 Jun 2025 @ 06:00 PM (EDT)

    Quebec City: CPX Recap
    CheckMates Events