- Products
- Learn
- Local User Groups
- Partners
-
More
Join Us for CPX 360
23-24 February 2021
Important certificate update to CloudGuard Controller, CME,
and Azure HA Security Gateways
How to Remediate Endpoint & VPN
Issues (in versions E81.10 or earlier)
IDC Spotlight -
Uplevel The SOC
Important! R80 and R80.10
End Of Support around the corner (May 2021)
Hi Guys,
I am gathering some helpful information for a while now to suffice my concern.
I found this thread and followed it but it does shows what I wanted.
https://community.checkpoint.com/thread/7204-restricting-remote-access-by-ipv4-address
My concern is, I want to restrict a subnet from connecting to the VPN. For example, SUBNET-A should be the only subnet that can connect to my VPN using Endpoint VPN client. I tried in my lab what is in the link but I still can connect to VPN even though my endpoint does not belong to that subnet.
Is this really possible?
Thanks for the help.
It is possible - but what is shown in logs for you ?
Hi @Günther W. Albrecht,
In my logs, i can only see "Key Install" and "Login" logs but these logs upon analyzing, it is pertaining to the VPN IP so the security rules will not to take effect. Is my understanding correct?
Above image is a sample, I am connecting to my external zone (sorry the object naming is incorrect).
How I can restrict a group of user like only the group of 10.10.10.0/24 can connect to the VPN?
Thanks in advance.
What, if anything, did you try from that the thread you mentioned?
About CheckMates
Learn Check Point
Advanced Learning
WELCOME TO THE FUTURE OF CYBER SECURITY