Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
m123
Explorer
Jump to solution

CP_default_Office_Mode_addresses_pool

I saw this created on my smart console today
"CP_default_Office_Mode_addresses_pool"

I researched and apparantly it is apool that assign vpn users ip.

My question is can it be deleted as my client sees it a security concern?
What is the actual use of the pool

0 Kudos
2 Solutions

Accepted Solutions
Chris_Atkinson
MVP Platinum CHKP MVP Platinum CHKP
MVP Platinum CHKP

This is the default IP pool for remote access VPN clients.

SmartConsole includes a default object for Office Mode IP addresses, CP_default_Office_Mode_addresses_pool. You can use the default object, or create a new one for your network. It is used here unless you assign an alternate network object.

1000007804.png

CCSM R77/R80/ELITE

View solution in original post

the_rock
MVP Diamond
MVP Diamond

Chris is 100% right. Technically, you can use that pool, meaning when people connect to VPN with their client, they will get IP from 172.16.10.0/24 pool. You can also extend it to use larger prefix, say /23 if needed or create totally new subnet and use that for OM pool, thats what lots of people may do as well. To answer your question, use of the pool is for those IP addresses to be assigned to remote users.

Best,
Andy

View solution in original post

0 Kudos
2 Replies
Chris_Atkinson
MVP Platinum CHKP MVP Platinum CHKP
MVP Platinum CHKP

This is the default IP pool for remote access VPN clients.

SmartConsole includes a default object for Office Mode IP addresses, CP_default_Office_Mode_addresses_pool. You can use the default object, or create a new one for your network. It is used here unless you assign an alternate network object.

1000007804.png

CCSM R77/R80/ELITE
the_rock
MVP Diamond
MVP Diamond

Chris is 100% right. Technically, you can use that pool, meaning when people connect to VPN with their client, they will get IP from 172.16.10.0/24 pool. You can also extend it to use larger prefix, say /23 if needed or create totally new subnet and use that for OM pool, thats what lots of people may do as well. To answer your question, use of the pool is for those IP addresses to be assigned to remote users.

Best,
Andy
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events