- Products
- Learn
- Local User Groups
- Partners
- More
Policy Insights and Policy Auditor in Action
19 November @ 5pm CET / 11am ET
Access Control and Threat Prevention Best Practices
Watch HereOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hi,
I can't SSH to the firewall the I connect to via remote access VPN. Firewall rules are in place for SSH and webUI access to the firewall. I know in other VPN communities there is a tab for "excluded services". Is there a similar option for remote access VPN community?
I can get to the webUI but I can't SSH. Logs show traffic being decrypted.
I am running R81.10 mgmt and R80.40 firewall.
Thank you.
Thank you Rock and Genesis for your help. I found the issue. My SSH session was saved with the external IP, and I did not realize until now. 😅
Do you see any logs for port 22 when trying?
Yup
What do they show? Did you try zdebug on command line?
Hmm I don't see logs anymore but I did enable split tunneling and manually specified the encryption domain.
I do have a firewall rule that should allow this traffic...
Src: office mode network
Dst: FW
Services: SSH and webUI port
I am able to access the webUI and I see accept and decrypt logs for this traffic from my office mode IP to the internal IP of the firewall.
When I try to SSH I don't see logs. I do see drops in the zdebug. It shows this connection being dropped but the weird thing is the source is my external IP trying to hit destination of the external IP of the firewall.
Shouldn't this traffic be hitting the same rule that allows webUI access?
Message me directly, I have time to do remote, I have a feeling its something simple you might be missing.
Cheers!
Silly question have you updated the allowed list in GAIA?
Thank you Rock and Genesis for your help. I found the issue. My SSH session was saved with the external IP, and I did not realize until now. 😅
Well, sometimes smallest things pose a problem. Glad it works now : - )
Its a good reminder to us all, check the basics first!
I agree with you wholeheartedly!
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 26 | |
| 18 | |
| 15 | |
| 13 | |
| 12 | |
| 10 | |
| 6 | |
| 5 | |
| 5 | |
| 4 |
Thu 20 Nov 2025 @ 05:00 PM (CET)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - AMERThu 20 Nov 2025 @ 10:00 AM (CST)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - EMEAWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchThu 20 Nov 2025 @ 05:00 PM (CET)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - AMERThu 20 Nov 2025 @ 10:00 AM (CST)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - EMEAThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY