[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] Re: [FW1] Gui client over securemtoe
Robert, Yim, Valid point. Also you can use ip pooling and so define a finite group and ensure that only successfully negotiated vpn sessions will be able to connect. Configuring on the fly will always be a tricky endeavor. As long as the management server is not also an enforcement point, you will be fine, otherwise the policy on the managment device will need to be unloaded and/or recompiled to allow the fw1 control sessions from gui-clients. CT Robert MacDonald wrote: > Yim, > > Yes. > > Remember, the fwmgr needs to know what IP your coming > from. If you get a dynamic IP from your ISP, then you will > need to edit the gui-clients config file and modify your allowed > IP, then proceed. > > Creating the proper(i.e. secure!) rules to allow this is more fun. > > If you don't have enough bandwidth(especially dialup), it has > a tendency to just stop mid stream. > > Robert > > - - > Robert P. MacDonald > Global Infrastructure Group, Haworth, Inc. > Voice:> email: [email protected] > > >>> Yim Lee <[email protected]> 02/16/01 03:14PM >>> > > > >Is it possible to run the gui client over securemote? > >I saw a few posting in the archive but no solution. > >Thanks for you help. > > > >Yim > > ================================================================================ > To unsubscribe from this mailing list, please see the instructions at > http://www.checkpoint.com/services/mailing.html > ================================================================================ ================================================================================ To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================================================
|