Other Applications
07/17/2001, 4:10pm, EDT
Tuesday, July 17th[::FROM::] [::SiteName::]
Checkpoint developing full Mac VPN client
[::related_name_google::] [::related_name_google1::]
[::related_stories_google::]
[::related_products_google::]
MacNN has learned that Checkpoint is completing the first Mac version of its
SecuRemote client, which will allow Mac users to log into Checkpoint's Firewall for VPN connections with a native application. In the past other software has been partially compatible but typically limited connections to Site-Site VPN tunnel rather than a Client-Site VPN tunnel: "This version of the software is being developed by a third party software company for Checkpoint. Checkpoint assures that it will be developing it's [sic] own version of the software for Macintosh and should have it released by the end of the year." However, the company has not formally committed to an OS X version yet.
[::digg_button::]
[::news_tags::]
[::doclix::]
[::boottext::] [::bootmark::]
[::layout::]
[::google::]


subscribe to comments
for this article
PS First Post.
posted by 0
posted by 0
1. Inability to define internal networks or any hosts with a subnet other than 255.255.255.255
2. Blowfish encryption algorithm as an ESP transform is not supported by Firewall-1
3. DES_MAC authentication algorithm is not supported by Firewall-1
4. AH is not supported with this client and should not be selected, with or without ESP
5. Firewall-1 4.1 does not support IP Compression
6. Notification is sent after Phase 1 from client to Firewall (this is harmless, but appears in the log viewer.)
The main problem is Item #1. Since it lacks the ability for topology downloads, any internal host that a client wishes to configure, needs to be manually configured as a seperate host. This becomes a huge problem when deploying for 100s of users that need to get to many internal hosts.
The beta client is downloadable from Checkpoint, however, the link doesn't seem to be readily available off of their main beta portion of the web site. I think you need to call Checkpoint directly to get the link.
posted by 0