<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Smart-1 Cloud SAML VPN do_ldap_fetch and do_internal_fetch in Portal</title>
    <link>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257126#M496</link>
    <description>&lt;P&gt;Sorry I did not take video, because of customer's info, but screenshots helped, glad to hear.&lt;/P&gt;
&lt;P&gt;Do NOT feel like a dork, happens man, we are here to help one another and yes, you can change that value you mentioned, but depends on your identity provider.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_RemoteAccessVPN_AdminGuide/Topics-VPNRG/SAML-Support-for-Remote-Access-VPN.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_RemoteAccessVPN_AdminGuide/Topics-VPNRG/SAML-Support-for-Remote-Access-VPN.htm&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Thu, 11 Sep 2025 18:28:35 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2025-09-11T18:28:35Z</dc:date>
    <item>
      <title>Smart-1 Cloud SAML VPN do_ldap_fetch and do_internal_fetch</title>
      <link>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257118#M492</link>
      <description>&lt;P&gt;Hey all,&lt;/P&gt;
&lt;P&gt;For customers with Smart-1 Cloud, are we somehow able to use GUIDBedit to modify internal parameters like the ones for SAML VPN? &amp;nbsp;AFAIK, GUIDBedit won't use the Infinity Portal token login like SmartConsole.&lt;/P&gt;
&lt;P&gt;Does anyone know what would be the right way to set parameters like do_ldap_fetch and do_internal_fetch for SAML?&lt;/P&gt;
&lt;P&gt;Thanks!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 11 Sep 2025 16:29:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257118#M492</guid>
      <dc:creator>Duane_Toler</dc:creator>
      <dc:date>2025-09-11T16:29:54Z</dc:date>
    </item>
    <item>
      <title>Re: Smart-1 Cloud SAML VPN do_ldap_fetch and do_internal_fetch</title>
      <link>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257121#M493</link>
      <description>&lt;P&gt;You can use guidbedit, I will send the video later &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 11 Sep 2025 17:14:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257121#M493</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-09-11T17:14:28Z</dc:date>
    </item>
    <item>
      <title>Re: Smart-1 Cloud SAML VPN do_ldap_fetch and do_internal_fetch</title>
      <link>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257122#M494</link>
      <description />
      <pubDate>Thu, 11 Sep 2025 17:20:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257122#M494</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-09-11T17:20:59Z</dc:date>
    </item>
    <item>
      <title>Re: Smart-1 Cloud SAML VPN do_ldap_fetch and do_internal_fetch</title>
      <link>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257123#M495</link>
      <description>&lt;P&gt;Oh geez.. 🤦🏻‍&lt;span class="lia-unicode-emoji" title=":male_sign:"&gt;♂️&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;I feel like a dork. &lt;span class="lia-unicode-emoji" title=":face_with_tears_of_joy:"&gt;😂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 11 Sep 2025 17:34:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257123#M495</guid>
      <dc:creator>Duane_Toler</dc:creator>
      <dc:date>2025-09-11T17:34:49Z</dc:date>
    </item>
    <item>
      <title>Re: Smart-1 Cloud SAML VPN do_ldap_fetch and do_internal_fetch</title>
      <link>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257126#M496</link>
      <description>&lt;P&gt;Sorry I did not take video, because of customer's info, but screenshots helped, glad to hear.&lt;/P&gt;
&lt;P&gt;Do NOT feel like a dork, happens man, we are here to help one another and yes, you can change that value you mentioned, but depends on your identity provider.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_RemoteAccessVPN_AdminGuide/Topics-VPNRG/SAML-Support-for-Remote-Access-VPN.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_RemoteAccessVPN_AdminGuide/Topics-VPNRG/SAML-Support-for-Remote-Access-VPN.htm&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 11 Sep 2025 18:28:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257126#M496</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-09-11T18:28:35Z</dc:date>
    </item>
    <item>
      <title>Re: Smart-1 Cloud SAML VPN do_ldap_fetch and do_internal_fetch</title>
      <link>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257139#M497</link>
      <description>&lt;P&gt;Btw, here is what it says online..&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-huuid="3371323345351622406"&gt;To correctly set&amp;nbsp;&lt;CODE class="mv6bHd"&gt;do_ldap_fetch&lt;/CODE&gt;&amp;nbsp;and&amp;nbsp;&lt;CODE class="mv6bHd"&gt;do_internal_fetch&lt;/CODE&gt;&amp;nbsp;parameters for SAML, you should set&amp;nbsp;&lt;CODE class="mv6bHd"&gt;do_generic_fetch&lt;/CODE&gt;&amp;nbsp;to&amp;nbsp;&lt;CODE class="mv6bHd"&gt;false&lt;/CODE&gt;&amp;nbsp;if using an on-premises LDAP directory to use the SAML identity provider for fetching user attributes, and set&amp;nbsp;&lt;CODE class="mv6bHd"&gt;do_internal_fetch&lt;/CODE&gt;&amp;nbsp;to&amp;nbsp;&lt;CODE class="mv6bHd"&gt;false&lt;/CODE&gt;&amp;nbsp;if you are not using an on-premises LDAP and instead rely solely on the identity provider.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-huuid="3371323345351620043"&gt;The key is to disable the general fetch or the internal fetch to ensure the SAML information is the primary source for user data.&lt;SPAN class="pjBG2e" data-cid="ba4447f1-1cd4-4acf-bb18-c90a6bbb7896"&gt;&lt;SPAN class="UV3uM"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 12 Sep 2025 00:04:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257139#M497</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-09-12T00:04:59Z</dc:date>
    </item>
    <item>
      <title>Re: Smart-1 Cloud SAML VPN do_ldap_fetch and do_internal_fetch</title>
      <link>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257141#M498</link>
      <description>&lt;P&gt;Yep! &amp;nbsp;I’ll be configuring this with a customer that doesn’t have a Windows AD nor internal LDAP server for any user directory info. They only have Entra ID and O365 user accounts. I plan to use identity agent on their PCs and locally defined groups and access roles.&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;VPN users will use SAML for Azure MFA.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;It’s going to be quite an interesting configuration! Might even end up with some Identity API scripts on some internal-only Linux hosts. &amp;nbsp;&lt;span class="lia-unicode-emoji" title=":grinning_squinting_face:"&gt;😆&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 12 Sep 2025 00:16:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257141#M498</guid>
      <dc:creator>Duane_Toler</dc:creator>
      <dc:date>2025-09-12T00:16:42Z</dc:date>
    </item>
    <item>
      <title>Re: Smart-1 Cloud SAML VPN do_ldap_fetch and do_internal_fetch</title>
      <link>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257142#M499</link>
      <description>&lt;P&gt;O yea, go for it!&lt;/P&gt;</description>
      <pubDate>Fri, 12 Sep 2025 00:28:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Portal/Smart-1-Cloud-SAML-VPN-do-ldap-fetch-and-do-internal-fetch/m-p/257142#M499</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-09-12T00:28:40Z</dc:date>
    </item>
  </channel>
</rss>

