We'll she mentioned that they're using SecureClient, so it shouldn't be a 
problem... and the proxy idea is great, all users should be proxied even those 
connected via VPN.

        -----Original Message----- 
        From: Mailing list for discussion of Firewall-1 on behalf of Ray 
        Sent: Sat 1/8/2005 9:22 PM 
        To: [email protected] 
        Cc: 
        Subject: Re: [FW-1]
        
        

        That will only work if they are connected in via SecureClient. If 
they're
        not connected it won't work. The only real hope is if they use a proxy
        server. A desktop security rule, connected or not, can drop all 
HTTP/HTTPS
        traffic that's not headed for the proxy.
        
        Ray
        
        >From: "Millan, Raul" <[EMAIL PROTECTED]>
        >Reply-To: Mailing list for discussion of Firewall-1
        ><[email protected]>
        >To: [email protected]
        >Subject: Re: [FW-1]
        >Date: Sat, 8 Jan 2005 11:19:47 -0500
        >
        >Route all traffic thru gateway option, should work.
        >
        >-----Original Message-----
        >From: Mailing list for discussion of Firewall-1
        >[mailto:[EMAIL PROTECTED] On Behalf Of Lucero,
        >Michael F
        >Sent: Thursday, January 06, 2005 12:54 PM
        >To: [email protected]
        >Subject: [FW-1]
        >
        >We use SecureClient and would like to disable split tunneling for 
users;
        >I want to make sure that they never browse the internet without coming
        >through our network.  Any ideas how this is/or can be done?
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >
        >Confidentiality Notice: This e-mail,including all attachments is for 
the
        >sole use of the intended recipient(s) and may contain confidential and
        >privileged information. Any unauthorized review,use,disclosure or
        >distribution is prohibited unless specifically provided under the New
        >Mexico Inspection of Public Records Act. If you are not the intended
        >recipient, please contact the sender and destroy all copies of this
        >message.  -- This email has been scanned by the MessageLabs Email
        >Security System.
        >
        >=================================================
        >To set vacation, Out-Of-Office, or away messages, send an email to
        >[EMAIL PROTECTED]
        >in the BODY of the email add:
        >set fw-1-mailinglist nomail
        >=================================================
        >To unsubscribe from this mailing list,
        >please see the instructions at
        >http://www.checkpoint.com/services/mailing.html
        >=================================================
        >If you have any questions on how to change your subscription options,
        >email [EMAIL PROTECTED]
        >=================================================
        >
        >=================================================
        >To set vacation, Out-Of-Office, or away messages,
        >send an email to [EMAIL PROTECTED]
        >in the BODY of the email add:
        >set fw-1-mailinglist nomail
        >=================================================
        >To unsubscribe from this mailing list,
        >please see the instructions at
        >http://www.checkpoint.com/services/mailing.html
        >=================================================
        >If you have any questions on how to change your
        >subscription options, email
        >[EMAIL PROTECTED]
        >=================================================
        
        =================================================
        To set vacation, Out-Of-Office, or away messages,
        send an email to [EMAIL PROTECTED]
        in the BODY of the email add:
        set fw-1-mailinglist nomail
        =================================================
        To unsubscribe from this mailing list,
        please see the instructions at
        http://www.checkpoint.com/services/mailing.html
        =================================================
        If you have any questions on how to change your
        subscription options, email
        [EMAIL PROTECTED]
        =================================================
        

Reply via email to