- Products
- Learn
- Local User Groups
- Partners
- More
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
Ink Dragon: A Major Nation-State Campaign
Watch HereCheckMates Go:
CheckMates Fest
Hi everyone.
We have an issue with connectivity consistence ONLY on iPads. I will try to explain it in steps.
==Mobile Access is not enabled on the gateway, so VPN connection occurs over SSL==
1. User opens and connects using Capsule Connect. Everything works properly.
2. User turns off the screen and goes away for 10 minutes. We tested for 10 minutes because tunnel doesn't drop in, say, 4 minutes.
3. Capsule Connect logging seems to be stopped during these 10 minutes.
4. When the user comes back and turns on the screen, VPN indicator is visible on the notification bar, but there is no traffic (verified by tcpdump on the gateway).
5. The moment user goes to the Capsule Connect application, the VPN timer seems to reset and starts from 00:00.
6. The traffic seems to ONLY start flowing when the user goes back to some other applications that communicate with internal resources. This is again confirmed by tcpdump.
We already have updated to the latest iPadOS 18.3.2, and on the gateway we have R81.10 JHF Take 172. We can see that for the time the screen is off on iPad, Capsule Connect stopped logging (no logs with the relevant timestamps during that 10 minutes). And, sadly due to log rotation (yes, we missed that part), we lost the relevant vpnd logs on the gateway.
Before organizing everyone again to conduct debug, changing the number of vpnd.elg files in a maintenance window and run another lap, I wanted to ask if anyone has dealt with a similar behavior. This doesn't happen on Android, but happens on all different versions on iPads. We need to understand if this is a Check Point issue or an iPad issue.
Cheers!
Based on a quick Internet search, this looks like the result of a long-standing iOS limitation unrelated to Check Point.
I could have sworn I saw someone had this issue before and they posted about it on community and it turned out to be some setting on Ipad that was causing it, just cant remember what : - (
Andy
I've been searching for that post for days already. Failed epically 🙂
Before I open a TAC ticket and waste their timely resources for such a topic, would you think it's an iOS or iPadOS issue if the debug logging stops completely the moment screen gets turned off? How would you even prove it? iOS doesn't allow me to see system logs. I love android 🙂
I think people could argue for days on end which OS is better, but lets not go there lol. Anyway, let me see if I can find recent post where someone modified trac ttm file to resolve ipad issues.
Andy
Have you checked if the app is restricted from running in the background and if it's excluded from power savings constraints etc?
Are you in a position to test the device whilst it is on charge?
Yes. That was the first thing we checked since the application logging seems to stop when the screen turns off. Nothing...
For what is worth, here is Copilot answer:)
Andy
***********************
This issue can occur due to various reasons, such as power-saving settings on the iPad, VPN client settings, or network configurations. Here are some steps you can take to troubleshoot and resolve the issue:
Check Power-Saving Settings:
Settings > Battery > Low Power Mode.VPN Client Settings:
Settings > VPN > Capsule Connectand enable "Auto Reconnect".Network Configuration:
Update VPN Client:
Re-authentication Settings:
If the issue persists after following these steps, you may need to contact Check Point Support for further assistance. You can open a ticket at the Check Point Support Center.
Based on a quick Internet search, this looks like the result of a long-standing iOS limitation unrelated to Check Point.
Based on what Phoneboy said, seems its a limitation not tied to CP side.
Andy
I can read that in his post already...
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 4 | |
| 4 | |
| 3 | |
| 3 | |
| 3 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 |
Tue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementTue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY