This feature is unsupported by checkpoint. No matter what firewall
version you have 


-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:[EMAIL PROTECTED] On Behalf Of Sergio
Alvarez
Sent: Tuesday, August 08, 2006 4:29 PM
To: [email protected]
Subject: Re: [FW-1] Help with HTTPS User Authentication

Alan, I would start by upgrading the product. HFA18 is the latest patch
for
R55, I would say your HFA04 is pretty old and it all could be related
with a
bug, although to be completely honest I could not be 100% sure of that.
If you could even upgrade to NGX R60 HFA03, it would be even better.

Regards

On 8/8/06, Alan Baker <[EMAIL PROTECTED]> wrote:
>
>
> >
> > > As I say, HTTP works, but HTTPS doesn't.  If I replace the
> > "User Auth"
> > > action  with "Accept"  I get through to the object with both
> > > protocols.
> > >
> > > I'm using Check Point VPN-1(TM) NG with Application
> > Intelligence (R55)
> > > HFA_04.
> > >
> > > Any idea as to where I am going wrong?
> >
> > CP doesn't support transparent user authentication for https
> > unless you're setting up the firewall as a proxy server in
> > the client browser.
> >
> Thanks Lars - but in the manual is says:
>
> "User Authentication
> User Authentication provides authentication for five services: TELNET,
> FTP, HTTP,
> HTTPS, and RLOGIN. By default, User Authentication is transparent. The
> user does
> not explicitly connect to the FireWall-1 Gateway, but initiates a
> connection directly to
> the target server."
>
> So I'm confused.
>
> Alan
>
>
_______________________________________________________________________
>
> The information in this email is confidential.  It is intended
> solely for the addressee.  Access to this email by anyone else
> is unauthorised.  If you are not the intended recipient, any
> disclosure, copying, or distribution is prohibited and may be
> unlawful.  If you have received this email in error please delete
> it immediately and contact [EMAIL PROTECTED]
> _________________________________________________________________
>
> This e-mail has been scanned for all viruses by Star Internet.
> The service is powered by MessageLabs.
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to [EMAIL PROTECTED]
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> [EMAIL PROTECTED]
> =================================================
>



-- 
Sergio Alvarez
(506)8301342

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to