Support Center > Search Results > SecureKnowledge Details
Check Point response to SecuRemote Topology Service Hostname Disclosure Technical Level
Symptoms
Solution

The claim is: "By sending a pre-authentication topology request to the VPN SecuRemote service, it is possible to obtain the firewall hostname and logging or management station (such as SmartCenter) name."

The SmartCenter and Security Gateway names are part of the gateway certificate that is presented for authentication in many scenarios. The gateway name is in the Subject field of the certificate and the SmartCenter name is in the Issuer field, since Internal CA runs on the SmartCenter. Certificate owner name and CA names are considered public information.

Give us Feedback
Please rate this document
[1=Worst,5=Best]
Comment