Firewall-1

Re: [FW-1] VPN between VPN-1 and stand-alone windows server

Subject: Re: [FW-1] VPN between VPN-1 and stand-alone windows server
From: "Previtera, Sal" <Sal.Previtera AT WTH DOT ORG>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Thu, 24 Feb 2005 08:16:45 -0600
Checkpoint SecuRemote client is free....and the SecuRemote user license you
need to install for your Checkpoint Firewall is also free.

I read somewhere that L2TP does not work with Network Address Translation
(NAT)...unless you have an internet routable static IP address on your
Windows Server.


-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM] On Behalf Of Nico De
Ranter
Sent: Thursday, February 24, 2005 2:28 AM
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Subject: Re: [FW-1] VPN between VPN-1 and stand-alone windows server

a site-to-site VPN is indeed what I want. But I was hoping to be able to
do this with the clients I already have available since I have no budget
at all to buy any new equipment or software.

Nico

On Tue, 2005-02-22 at 16:33, Keshav wrote:
> Hi Nico,
>
> Go for a site-site VPN which means you will need to setup vpn between two
> gateways ...checkpoint to another checkpoint..ipsec vpn...
>
> In that case you dont have to worry about entering passswords each
time..you
> just need to access what ever you want to and checkpoint in both gateways
> will do the job...
>
> else if you go for client-site vpn like securemote(ipsec) , you can make
use
> of transparent mode and can make it to remember the password. But then
once
> the connection times out , you will have to re-enter.
>
> Thanks and Regards,
> Keshav,
> Technical Consultant,
> Information Security Solutions,
> Ramco Systems,
> Bangalore.
>
> ----- Original Message -----
> From: "Nico De Ranter" <nico AT SONYCOM DOT COM>
> To: <FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM>
> Sent: Tuesday, February 22, 2005 8:01 PM
> Subject: [FW-1] VPN between VPN-1 and stand-alone windows server
>
>
> > Hi,
> >
> > I need to create a VPN between my Checkpoint FW-1/VPN-1 NG AI server and
> > a standalone Windows 2000 server.  The client software should run on the
> > Windows box itself and the VPN should work without intervention from a
> > user (e.g. no need to manually type a password to open the tunnel). Can
> > I do this with L2TP or Secureremote or do they require someone to be
> > logged in on the Windows box?
> >
> > Any ideas, suggestions or other solutions?
> >
> > Thanks in advance,
> >
> > Nico
> > --
> > ---------------------------------------------------------
> >  "It has been said that there are only two businesses that
> >   refer to customers as users: illegal drug trade and
> >                the computer industry."
> > ---------------------------------------------------------
> > Nico De Ranter
> > Senior System Administrator
> > Sony Service Center (NSCE/VPE-B)
> > The Corporate Village, Da Vincilaan 7-D1
> > B-1935 Zaventem, Belgium
> > Telephone: +32 (0)2 700 86 41 Fax: +32 (0)2 700 86 22
> >
> > =================================================
> > To set vacation, Out-Of-Office, or away messages,
> > send an email to LISTSERV AT amadeus.us.checkpoint DOT com
> > in the BODY of the email add:
> > set fw-1-mailinglist nomail
> > =================================================
> > To unsubscribe from this mailing list,
> > please see the instructions at
> > http://www.checkpoint.com/services/mailing.html
> > =================================================
> > If you have any questions on how to change your
> > subscription options, email
> > fw-1-owner AT ts.checkpoint DOT com
> > =================================================
>
>
> DISCLAIMER:
>
> Information transmitted by this e-mail may be proprietary to Ramco Systems
Ltd., and / or the authors of the information and is intended for use only
by the individual or entity to which it is addressed, and may contain
confidential or legally privileged information. If you are not the intended
recipient or it appears that this mail has been forwarded to you without
proper authority, you are not authorised to access, read, disclose, copy,
use or otherwise deal with it and any such actions are prohibited and may be
unlawful.
>
> Internet communications cannot be guaranteed to be secure or error-free as
information could be intercepted, corrupted, lost, arrive late or contain
viruses. Ramco Systems Limited therefore does not accept liability for any
errors, omissions, viruses or computer problems experienced as a result of
this transmission.
>
> If you have received this e-mail in error, please notify us immediately at
mail to: mailadmin AT rsi.ramco DOT com and delete this mail from your records.
Notice is hereby given that no representation, contract or other binding
obligation shall be created by this e-mail.
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to LISTSERV AT amadeus.us.checkpoint DOT com
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> fw-1-owner AT ts.checkpoint DOT com
> =================================================
--
---------------------------------------------------------
 "It has been said that there are only two businesses that
  refer to customers as users: illegal drug trade and
               the computer industry."
---------------------------------------------------------
Nico De Ranter
Senior System Administrator
Sony Service Center (NSCE/VPE-B)
The Corporate Village, Da Vincilaan 7-D1
B-1935 Zaventem, Belgium
Telephone: +32 (0)2 700 86 41 Fax: +32 (0)2 700 86 22

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>