Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
JohnMcClain
Explorer

Excluding RADIUS queries from being processed by implied rules

 

Hi all, 

My particular issue is that my RADIUS queries are sent in cleartext - whereas they should be sent through the S2S VPN tunnel I have set up. 

I know there's a way to exclude LDAP queries from implied rules -- sk26059

But does anyone know of a way to exclude RADIUS queries?

I am working on a 77.20.87 SMB device 

I am not finding anything on the subject in the various Check Point knowledge bases and administration guides. 

Thank you

John

0 Kudos
2 Replies
PhoneBoy
Admin
Admin

Linked on the bottom of the SK you mentioned seems to answer that question: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut...
Tried that?

0 Kudos
G_W_Albrecht
Legend Legend
Legend

Yes -  sk31692 RADIUS/SecurID packets are being picked up by an implied rule instead of being encrypted 

For centrally managed units see https://community.checkpoint.com/t5/SMB-Gateways-Spark/SMB-units-SMS-files-for-VPN-fine-tuning/td-p/... on how to implement it.

For local management See my posting here: Changing implied_rules.def on locally managed SMBs

 

 sk31692

CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events