This sounds more like a site-to-site activity. Is that possible? You could
limit the source and destination IPs in the rule.
Ray
From: Alan Choyna <achoyna AT PATHF DOT COM>
Reply-To: Mailing list for discussion of Firewall-1
<FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Subject: [FW-1] How to auto-authenticate Win2k and Mac OS10 VPN to FW.
Date: Fri, 25 Feb 2005 17:42:14 -0600
We are running SPLAT R55 HFA9 with securemote R56.
We have some Win2k servers that need to push info to a server behind our
gateway from an affiliate company 24/7 reliably.
We installed Securemote, and the users authenticate via user id and
password, and have configured securemote to auto authenticate. This is not
entirely reliable though, and every few days (2-3) securemote asks for
manual re-authentication. Is this a known problem?
Any suggestions of how to make the auto authentication more reliable?
Would authentication via certificate be more reliable in this manner? If
so, how do we set it up?
Thanks in advance for any advice or input.
Alan.
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
|