Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations IamaSherpa on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Remote office connectivity to Windows AD Domain

Status
Not open for further replies.

ruster

MIS
Jan 1, 2001
83
CA
Hello All,

Bit of a newbie to checkpoint, however I am well familiar with the concepts associated with firewalls as I am more of a Cisco PIX fellow.

In my current contract placement, I have a need to setup connectivity for a smaller remote office, to the head office location. They use checkpoint NG as their firewall and VPN solution.

What I visualize (and don't know if its possible), is to setup client PC's at the remote office, with Checkpoint SecureClient, and would like to have them authenticate against the domain controller in the head office. I do not know what features or functionality checkpoint, and its client, possesses, so I do not know if it is possible. If anyone has had experience on setting up remote offices (in a Windows domain oriented environment), please advise on what approaches I can consider. High level is fine, and I can later research the details.

Thanks in advance

Ruster.
 
Hi,

I think there is somthing called SDL - Secure Domain Logon which allows you to logon to a Windows Network. I have not looked into it in detail.

Hope this helps...

Akiwondo (MCSE, CCSA)
 
Hi Akiwando,

thanks for the tip. Actually, I had already found that info, and enabled both office mode and sdl. I find that I am able to log onto the domain, with the login scripts being executed. However there appears to be some inconsistency with it. At times I receive a message indicating that the domain controller cannot be located. It seems to be some timeout value that exists, either of the PC having to communicate to the domain controller, or a timeout between the secureremote client passing control to windows for forwarding of the authentication credentials. Still struggling to get a solid model here. Any additional suggestions or tips would help (PS. Presently playing around with the SDL timeout values).

Ruster.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top