Network Access Control

 View Only
  • 1.  Using SNAC Gateway Enforcer with CheckPoint VPN-1 Client

    Posted Mar 01, 2010 11:27 AM
    Hi All

    Currently we are using SymSentry to check if out virus defs are up to date before allowing a VPN connection via the CheckPoint VNP-1 client.  We are also running SAV 10 AV clients.

    We are wanting to upgrade to SEP and have discovered that SymSentry is not compatible with the SEP av client and have been advised that we need to purchase a licence/licences for Symantec Network Access Control (SNAC).  I have trying to find documents on the internet on how to configure SNAC and to be honest I am overwhelemd with the amount of (mainly irrelevant) information.

    Please could someone advice on how to install and configure SNAC to use with CheckPoint VPN-1 clients.  Ideally we would like to be able to check the foolowing bfore clients are allowed to get a VPN connection:-
    • SEP is running
    • SEP definitions are up to date (e.g. no more than 4 days old)
    • Screensaver is set to come on automatically no longer than 10 minutes
    • Screensaver is password protected.
    Is the above possible using SNAC?  Do I need to use the gateway enforcer?  Are there some installation/configuration instructons that are relevant to this?

    Thanks in advance.


  • 2.  RE: Using SNAC Gateway Enforcer with CheckPoint VPN-1 Client

    Posted Mar 01, 2010 04:47 PM
    There was an issue with an older build (pre MR4MP2) that was causing BSOD's with Checkpoint VPN clients. I believe it was addressed in MR4 MP2.
    I am not an expert on SNAC,  but there are several useful links on this page (see link below) that may answer your SNAC related questions.



    https://www-secure.symantec.com/connect/articles/few-helpful-articles-read-snac-get-better-understanding-product