Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
CEEJAY
Contributor

Connected to SNX, but cannot reach internal network (server)

Hello, I am encountering an issue regarding Check Point SNX (Network Mode). I can successfully connect to SNX and get an Office Mode IP, but when I tried to ping the server and access web app in my internal network, it does not work. Does VPN Domain has something to do with this? The only policy I created is in the Mobile Access Policy by creating a Native Application and editing the targeted server. 

0 Kudos
7 Replies
emmap
MVP Gold CHKP MVP Gold CHKP
MVP Gold CHKP

What do you see in the traffic logs?

0 Kudos
CEEJAY
Contributor

From the logs, I think it was being dropped by the clean up rule, but I tried to add a rule src:office mode ip | dst: the server and lan | services: any | action: accept but still cannot reach the server or other resources in the lan.

0 Kudos
emmap
MVP Gold CHKP MVP Gold CHKP
MVP Gold CHKP

Under Mobile Access in your gateway, is it configured to use Legacy policy or Unified policy? And where did you set up the access? 

0 Kudos
CEEJAY
Contributor

It is configured to use legacy policy. What do you mean where did i set up the access? 

0 Kudos
emmap
MVP Gold CHKP MVP Gold CHKP
MVP Gold CHKP

Where did you add the access configuration? If your gateway is set to legacy policy then you'll need to add the access configuration in the old Mobile Access policy to allow SNX to connect into network resources.

0 Kudos
CEEJAY
Contributor

the clusterXL is running with R82 version, the rule base for mobile access is now accessible thru smart console, that is where I confgured the access rule.

0 Kudos
emmap
MVP Gold CHKP MVP Gold CHKP
MVP Gold CHKP

Yes but when the gateway is configured to use the Legacy policy, you have to configure the access through the old Mobile Access GUI in the Shared Policy section. If you want it integrated into the main access policy you have to change the gateway to use Unified policy.

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events