CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3.
2. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > SecureClient/SecuRemote
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2005-08-13
Senior Member
 
Join Date: 2005-08-12
Posts: 162
Rep Power: 4
roadrunner has an average reputation (10+)
Default SecuRemote CLI and SecurID Authentication

SecuRemote CLI and SecurID Authentication
While not technically supported, you can use command-line mode and a one-time password scheme and have it work. It's all in the scripting...

On one of my systems, I have Secure Client set up with a batch job that I periodically run to refresh my VPN connection. The system is accessible via the Windows 2000 Telnet server, so I rarely need to see the "screen" on this particular platform. This script breaks the VPN connection, sets my credentials to the provided password (actually a SecurID passcode), connects to the site using the established VPN profile, check to see that it actually did connect with an ipconfig just to make sure I got assigned, and finally erase the credentials. Erasing the credentials is necessary in my case because when the VPN requires re-authentication, my previously entered credentials will be used. Those credentials will be wrong since it’s a SecurID passcode (it changes every 60 seconds) and it will eventually “lock” my SecurID card for too many failed attempts!

The script is as follows:

scc disconnect scc up dwelch %1% scc connect "VPN Profile" scc status ipconfig scc ep


FAQForm
FAQs.Class: SecureClientFAQs
FAQs.OS: OsWindows
FAQs.Version: ALL

Last edited by roadrunner; 2005-08-13 at 14:24. Reason: authentication misspelled
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 17:15.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0