Firewall-1

[FW-1] SecuRemote NG - R56, Build: 269 using DSL with dynamic WAN adress

Subject: [FW-1] SecuRemote NG - R56, Build: 269 using DSL with dynamic WAN adress es
From: "Fischer, Jürgen, 3414" <Juergen.Fischer AT DEMAGCRANES DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Wed, 6 Oct 2004 14:06:09 +0200
Dear all,

we have encontered the following problem:
Situation:
- A PC with SecureRemote installed in a private LAN behind a DSL-Router
- DSL router provides the PC with an IP-adress via DHCP (192.168.x.x)
- If access to the company-LAN is requested (via public internet) the
DSL-router connects to the ISP
- The DSL router receives a dynamic IP-adress from the ISP
- The SecureRemote Client on the PC connetcs to the Company Checkpoint
Firewall and authenticates.

So far so good.

Now the problem:
- After 15 minutes idle time the router disconnects from the internet
(normal router timeout)

- The PC now requests a connection to the company-LAN again
- The DSL-router (re)connects to the ISP
- The DSL router receives a dynamic IP-adress from the ISP (normaly another
one than the first time)

Now we have the problem that it is n_o_t possible to connect to the company
LAN. (The requests, e.g. ping <LAN-adress> time out)

Only stopping and restarting the SecureRemote client fixes the problem.
- The client reauthenticates with the company Checkpoint Firewall and the
client can connect to the LAN again.

>From my pov the problem is the changed IP-adress of the DSL router's WAN
interface.

Is that a known problem ?
Is there a solution for that ?

Best regards

Juergen Fischer


=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>