VPN – Check Point

In this topic, you will learn how to configure the Check Point Smart Console to work together with Portnox™ Cloud and 802.1X RADIUS authentication for VPN connections.

Important:
This guide gives general instructions for integrating Portnox Cloud with specific third-party devices. We try to provide useful examples for common models, but settings can differ between manufacturers, models, and environments. Because of this, we cannot guarantee these steps will work in every case. For questions or problems with RADIUS setup – which is an industry standard and not specific to Portnox – or with device-specific settings and troubleshooting, we recommend checking the device manufacturer’s documentation and contacting their support team. Portnox Support can help when possible, but detailed setup of third-party devices is usually best handled by the manufacturer. We also recommend updating your NAS device firmware to the latest version, as old firmware can cause issues.
Important:
All values in this configuration are examples. Make sure to adjust the configuration to your individual profile names, RADIUS server addresses, ports, and keys by replacing the values that are presented as underlined italics.
Warning:
This topic contains documentation prepared by our support agents more than 12 months ago. It may not cover the newest models or the newest interfaces of NAS devices. We’re working on bringing you updated documentation for NAS devices in the near future. However, the methods of setting up third-party devices may still change when the manufacturers update their firmware or release new models.
  1. Add a custom RADIUS service:
    1. Navigate to: New > More > Service > UDP

    2. In the new UDP service window, in Protocol type radius and select Radius.

    3. In the Port field, add your Cloud RADIUS authentication port.

  2. Create a RADIUS server object to match Cloud RADIUS details and configure the Protocol as MS-CHAP v2.

  3. Open the Check Point Gateway object and verify that Mobile Access is enabled.

  4. Under Mobile Access, enable Web - SSL VPN with web browsers.

  5. Under Mobile Access Authentication, choose the RADIUS authentication method and point to the Cloud RADIUS object created earlier.