Do you have the Office Mode network in the VPN encryption domain (part of a
group)? That's allowed in your configuration. It may not be relevant, but we
have difficulties calling a SecureClient user by NetMeeting using an ILS
server. They never get the call. The SecureClient user can call the internal
people every time.

I don't recall if this was fixed by putting the Office Mode network in the
VPN Domain or not.

Ray

From: Jos� Mar�a Gabald�n              <[EMAIL PROTECTED]>
Reply-To: Mailing list for discussion of Firewall-1
<[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
Subject: Re: [FW-1] Netmeeting through SecureClient
Date: Thu, 22 Jul 2004 13:50:06 -0400

Yes, I have a rule in Desktop Security that allows any traffic from the
internal network... It doesn't show any dropped traffic on Secureclient
either.

Thanks,

_______________________________

Cybertech Projects

Jos� Mar�a Gabald�n
Network Security Engineer
email: [EMAIL PROTECTED]
www.cybertech.com.ve



-----Mensaje original-----
De: Mailing list for discussion of Firewall-1
[mailto:[EMAIL PROTECTED] En nombre de Chris
Hoff
Enviado el: Jueves, 22 de Julio de 2004 10:57 a.m.
Para: [EMAIL PROTECTED]
Asunto: Re: [FW-1] Netmeeting through SecureClient

Do you have a rule on the desktop policy allowing the local connections
to connect to the SecureClient? I would check the SecureClient
Diagnostics log to see if it is dropping the back connection.

Hope this helps,

Chris

-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:[EMAIL PROTECTED] On Behalf Of Jos�
Mar�a Gabald�n
Sent: Thursday, July 22, 2004 7:13 AM
To: [EMAIL PROTECTED]
Subject: [FW-1] Netmeeting through SecureClient

Hi guys,

I have a Check Point R55 firewall with SecureClient R56 configured in
Office Mode. VPN works fine, the client gets its IP from the gateway,
from the central site we can ping the client...
However, we have a VoIP (H.323) gateway in the encryption domain, we are
trying to make calls from Netmeeting (in the remote client) to the VoIP
gateway, the call establishes, but the voice is only heard in one
direction (from the client to the gateway only).
Some configuration pointers:
- Remote access rule has "Any" services configured
- SmartView tracker doesn't show any dropped packets
- I have a manual NAT rule disableing the NAT hide inside the VPN.
- We have tested this enviroment with other IPSec clients and other
firewalls and have worked fine.

Do you have any idea of that could be happening?

Thanks in advanced,

Regards,

_______________________________

Jos� Mar�a Gabald�n
Network Security Engineer
email: [EMAIL PROTECTED]
www.cybertech.com.ve

=================================================
To set vacation, Out-Of-Office, or away messages, send an email to
[EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your subscription options,
email [EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

_________________________________________________________________ Planning a family vacation? Check out the MSN Family Travel guide! http://dollar.msn.com

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to