Firewall-1

Re: [FW-1] SecureClient

Subject: Re: [FW-1] SecureClient
From: Jeffrey Rogers <Jeff AT ROGERSINFOSEC DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Fri, 30 Apr 2004 10:01:34 -0400
Neil,

The Desktop Policy gets "pushed" to the Policy Server.  When the
SecureClient user logs in to the Policy Server the Desktop Policy is
"fetched" from the Policy Server.

You are correct regarding the inbound/outbound rules.  For outbound back to
corporate you would use the "encrypt" option for SecureClient VPN.

On FP3 the SDS server cannot be installed on the SmartCenter machine - not
sure about R55.

Jeff


-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM] On Behalf Of Neil 
Kemp
Sent: Friday, April 30, 2004 3:26 AM
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Subject: Re: [FW-1] SecureClient


Thanks. How does a desktop policy get pushed ? Do you just define the
inbound and outbound rules (inbound you can restrict so that no one apart
from your corporate resources can access the desktop to avoid the hijacking
of the line), allow outbound rules so the secureclient can access your
corporate network / resources / applications and also can allow at this
point access to the Internet across their connection as well ?

Just so I understand it. Thanks.

Also, just installed a demo of NG R55, installed Policy Server also, which
is fine, but there is an option for the Software Deployment Server, which, I
believe, allows you to push the SecureClient software to the client, and any
updates / policy changes. But I cant check the box for this, can do for
Policy Server, but not the SDS option.

Thanks in advance.

"Previtera, Sal" <Sal.Previtera AT WTH DOT ORG> wrote:

> SecureClient also requires that you have a license installed on FW/VPN
with
> the number of SecureClients (pay$$$)   .... same for SecureRemote, but the
> download of the license it is  free.
>
> -----Original Message-----
> From: Joe Pope [mailto:POPEJ AT WESTAT DOT COM]
> Sent: Thursday, April 29, 2004 9:23 AM
> To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
> Subject: Re: [FW-1] SecureClient
>
> SecureClient is SecuRemote, with the desktop policies added. We
> migrated from SecuRemote R54 to SecureClient R55 with not problems.
> You do not need the policy server unless you want to push desktop
> policies to the clients.
>
> Good Luck!
>
> -----Original Message-----
> From: Neil Kemp [mailto:neil.kemp AT BUSINESSSENSE.CO DOT UK]
> Sent: Wednesday, April 28, 2004 3:55 AM
> To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
> Subject: [FW-1] SecureClient
>
>
> Excuse the basic question for some of you.
>
> I use SecuRemote on a daily basis and install / configure it for
> clients regularly.
>
> I have a customer who wants to use SecureClient. I am presuming this
> is a case of installing the Policy Server and working it out from
> there ?
>
> Thanks in advance.
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to LISTSERV AT amadeus.us.checkpoint DOT com
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> fw-1-owner AT ts.checkpoint DOT com
> =================================================
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to LISTSERV AT amadeus.us.checkpoint DOT com
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> fw-1-owner AT ts.checkpoint DOT com
> =================================================
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to LISTSERV AT amadeus.us.checkpoint DOT com
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> fw-1-owner AT ts.checkpoint DOT com
> =================================================
>

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>