This sounds more like a site-to-site activity. Is that possible? You could limit the source and destination IPs in the rule.
Ray
From: Alan Choyna <[EMAIL PROTECTED]> Reply-To: Mailing list for discussion of Firewall-1 <[email protected]> To: [email protected] Subject: [FW-1] How to auto-authenticate Win2k and Mac OS10 VPN to FW. Date: Fri, 25 Feb 2005 17:42:14 -0600
We are running SPLAT R55 HFA9 with securemote R56.
We have some Win2k servers that need to push info to a server behind our gateway from an affiliate company 24/7 reliably.
We installed Securemote, and the users authenticate via user id and password, and have configured securemote to auto authenticate. This is not entirely reliable though, and every few days (2-3) securemote asks for manual re-authentication. Is this a known problem?
Any suggestions of how to make the auto authentication more reliable?
Would authentication via certificate be more reliable in this manner? If so, how do we set it up?
Thanks in advance for any advice or input.
Alan.
================================================= To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [EMAIL PROTECTED] =================================================
================================================= To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [EMAIL PROTECTED] =================================================
