| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| All, My Current Env : Integrity Secure Client(Unified) 6.5. Checpt NGX R62. Integrity Advanced Server - 6.5. 1) My first question. When the above parameter "block_connections_on_unverified" is set to "true" in local.scv and the SCV check fails(un-verified) , the Integrity client(version 6.5) says that the Integrity Policy is Restricted but still the connection to the private network is not blocked(able to access the resources). However when "disconnect_when_not_verified" is set to "true" , the vpn connection is disconnected on scv check failure. I have configured to log and allow connection on SCV failure on the gateway.. My 2nd question a) Which setting blocks/disconnects the connection on SCV Failure . i.e the client does it(configured in local.scv) or the gwy does it.(configured on gwy via Policy-->Global Props-->Remote Access--->Secure Configuration Verification ---> Block Clients Connection??) Thanks |
![]() |
| Thread Tools | |
| Display Modes | |
| |