Firewall-1

Re: [FW-1] secure remote and wins protocol

Subject: Re: [FW-1] secure remote and wins protocol
From: fwguru <fwguru AT GMAIL DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Wed, 19 Apr 2006 02:36:21 -0400
OfficeMode is really the way to go, especially if you are running SDL. But
you can create a SecuRemote DNS Server that should help.
1. Create an object for your internal DNS server.
2. Create an SR DNS server (Manage > Servers & Opsec > New > SR DNS).
3. Select your internal DNS server object.
4. Install policy.
5. Have SR clients do an update site.
6. Reconnect and try again.

You should use IP pool NAT for your SR connections.  This along with the SR
DNS server entry will get you as close to having OfficeMode without having a
SecureClient license.

If you must resolve internal netbios names, populate clients' lmhosts files.

Neil Delacruz


On 4/18/06, Luca Rossi <itnet2k AT yahoo DOT it> wrote:
>
> Hi all,
> we have build a vpn with secure remote and sdl but we
> have a problem with the network drive mapped wit
> script logon and browsing the microsoft network. There
> is one with the same problem?
> Thanks all
>
>
>
>
>
>
> ___________________________________
> Yahoo! Mail: gratis 1GB per i messaggi e allegati da 10MB
> http://mail.yahoo.it
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to LISTSERV AT amadeus.us.checkpoint DOT com
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> fw-1-owner AT ts.checkpoint DOT com
> =================================================
>

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>