Hi SG,

I use client auth for this kind of stuff.  It works
fine.  It's not encrypted however unless you take some
extra steps.  The other downside being that if your
user authenticates from a multiuser system, or from
behind a NAT device other folks will also have access.

HTH,
Pete
--- Security Guy <[EMAIL PROTECTED]>
wrote:
> We have a device that resides within our DMZ, a
> select group of DHCP users will need access.  I
> don't really want to give the users static IP
> addresses, can some kind of alternate authentication
> be used?  I've tried User Authentication, only to
> find out it only supports telnet rlogin http,https
> and ftp.  I would like to keep the users on DHCP
> IPs,  they will be accessing the DMZ resource via a
> RDP connection [tcp port 3389]  Will client
> authentication work?
>
> thoughts | ideas | suggestions
>
> Thanks!
>
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to [EMAIL PROTECTED]
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> [EMAIL PROTECTED]
> =================================================


__________________________________
Do you Yahoo!?
New Yahoo! Photos - easier uploading and sharing.
http://photos.yahoo.com/

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to