156-215.80 · Question #258
Which of the following is NOT a valid option when configuring access for Captive Portal?
The correct answer is A. From the Internet. Captive Portal supports only internal-facing access configurations - 'From the Internet' is not a valid option because exposing Captive Portal directly to the internet is not a supported design.
Question
Which of the following is NOT a valid option when configuring access for Captive Portal?
Options
- AFrom the Internet
- BThrough internal interfaces
- CThrough all interfaces
- DAccording to the Firewall Policy
How the community answered
(47 responses)- A89% (42)
- B6% (3)
- C2% (1)
- D2% (1)
Why each option
Captive Portal supports only internal-facing access configurations - 'From the Internet' is not a valid option because exposing Captive Portal directly to the internet is not a supported design.
Captive Portal is designed for authenticating users on internal or controlled network segments. Check Point's configuration UI offers 'Through internal interfaces,' 'Through all interfaces,' and 'According to the Firewall Policy' as valid access options, but 'From the Internet' does not exist as a selectable option because internet-facing deployment of Captive Portal is not a supported or safe configuration.
'Through internal interfaces' is a valid and commonly used Captive Portal access option for internal network segments.
'Through all interfaces' is a valid option that enables Captive Portal on every interface of the gateway.
'According to the Firewall Policy' is a valid option that delegates Captive Portal access control to the existing policy rules.
Concept tested: Check Point Identity Awareness Captive Portal access configuration options
Source: https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_IdentityAwareness_AdminGuide/Content/Topics-IDAG/Captive-Portal-for-Unidentified-Devices.htm
Topics
Community Discussion
No community discussion yet for this question.