[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] RE: [FW1] ERROR ON SECURE REMOTE
To expand on the replies so far: One reason you may receive this error message: If you are authenticating users for the topo download, and the user they use to authenticate for the topo download is NOT in the group assigned to receive the Secure Client Policy you will receive this message. You can add this user to the group and this should push the policy down to the client. However, if you are using Hybrid Mode IKE and authenticating users another way (i.e. Radius, SecurID ACE, etc.) vs. the topo download, then adding the user to the group may not be what you want to do. In this case, have the user perform an Explicit Login to the Policy server by selecting Policy -> Login to Policy Server -> (server). This will require the user to login and download the appropriate policy using their own credentials. To keep users from having to do this, configure a client, copy its userc.C to the distribution package of Secure Client (overwrite the userc.C that is with the Installation files with the one you copied). With this, the user's Secure Client is pre-configured with the site information when they perform the installation. The only exception of course is if your topology changes, the user will need to do an Update for the site and enter the topo username/password. Just make sure you design this right from the start... Amin Tora, CISSP ePlus Technology http://www.eplus.com NASDAQ: PLUS -----Original Message----- From: GARRIDO, MANUEL [mailto:[email protected]] Sent: Tuesday, March 27, 2001 4:31 AM To: [email protected] Subject: [FW1] ERROR ON SECURE REMOTE Hi All We have a problem on Secure Remote configuration. When the Secure Client authenticates a remote user attached through Firewall to the corporative Network, and the authentication is OK, in the welcome window, below of the welcome message appears a message in red that says: "You are using an innappropriate policy Load a new policy form your Policy Server" could somebody help me, please? Thanks ============================================================================ ==== To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ============================================================================ ==== ================================================================================ To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================================================
|