Clientless VPN

Clientless VPN is becoming increasingly popular. The idea is to use a Web browser to provide access to an intranet, which many people already have installed on their computers for surfing the Internet. Unfortunately, this means you can access only Web-enabled applications. For some organizations, this is enough.

FireWall-1 has actually had the basic functionality for Clientless VPN since FireWall-1 4.1, though the feature was never called that and it was never enabled via the GUI. In NG FP3, Check Point added a GUI option for Clientless VPN under the VPN Advanced frame of the gateway object. In NG FP2 and before, you can enable the functionality as follows.

1.
Add the following entry to $FWDIR/conf/fwauthd.conf on your firewall ...

Get Essential Check Point™ FireWall-1® NG: An Installation, Configuration, and Troubleshooting Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.