<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Checkpoint identity collector and Cisco ISE integration in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-identity-collector-and-Cisco-ISE-integration/m-p/99568#M10396</link>
    <description>&lt;P&gt;&amp;nbsp;Hi,&lt;/P&gt;&lt;P&gt;We are trying to integrate cisco ISE with identity collector. We can see 'certificate unknown' log in tcpdump captures. Below snapshot FYR.&lt;/P&gt;&lt;P&gt;where, 10.10.1.37 is identity collector server and 172.24.16.40 is cisco ISE.&lt;/P&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture.PNG" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/8500iD4D8B87B0FB21A2C/image-size/large?v=v2&amp;amp;px=999" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Identity collector activity log&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="MicrosoftTeams-image.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/8503iD21AA2EBCEF7DC2D/image-size/large?v=v2&amp;amp;px=999" role="button" title="MicrosoftTeams-image.png" alt="MicrosoftTeams-image.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;In identity collector status show 'pending for administrator approval' but we don't see a request in ISE webui. We have followed the document below.&lt;/P&gt;&lt;P&gt;&lt;A title="Identity Collector and Cisco ISE Integration document" href="https://community.checkpoint.com/fyrhh23835/attachments/fyrhh23835/general-topics/10644/1/Check%20Point%20and%20ISE%20Intergration%20White%20Paper.pdf" target="_self"&gt;https://community.checkpoint.com/fyrhh23835/attachments/fyrhh23835/general-topics/10644/1/Check%20Point%20and%20ISE%20Intergration%20White%20Paper.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;We used below default self signed certificate from ISE&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Untitled.png" style="width: 603px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/8504iA8994CE4D23D31ED/image-size/large?v=v2&amp;amp;px=999" role="button" title="Untitled.png" alt="Untitled.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Can someone, who has done it successfully, let us know the exact steps that were followed and the certificate that need to be exported from ISE? We have followed the above document for 3 times but every time we are getting the same issue.&lt;/P&gt;</description>
    <pubDate>Tue, 20 Oct 2020 10:06:23 GMT</pubDate>
    <dc:creator>Rohit_Raut</dc:creator>
    <dc:date>2020-10-20T10:06:23Z</dc:date>
    <item>
      <title>Checkpoint identity collector and Cisco ISE integration</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-identity-collector-and-Cisco-ISE-integration/m-p/99568#M10396</link>
      <description>&lt;P&gt;&amp;nbsp;Hi,&lt;/P&gt;&lt;P&gt;We are trying to integrate cisco ISE with identity collector. We can see 'certificate unknown' log in tcpdump captures. Below snapshot FYR.&lt;/P&gt;&lt;P&gt;where, 10.10.1.37 is identity collector server and 172.24.16.40 is cisco ISE.&lt;/P&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture.PNG" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/8500iD4D8B87B0FB21A2C/image-size/large?v=v2&amp;amp;px=999" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Identity collector activity log&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="MicrosoftTeams-image.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/8503iD21AA2EBCEF7DC2D/image-size/large?v=v2&amp;amp;px=999" role="button" title="MicrosoftTeams-image.png" alt="MicrosoftTeams-image.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;In identity collector status show 'pending for administrator approval' but we don't see a request in ISE webui. We have followed the document below.&lt;/P&gt;&lt;P&gt;&lt;A title="Identity Collector and Cisco ISE Integration document" href="https://community.checkpoint.com/fyrhh23835/attachments/fyrhh23835/general-topics/10644/1/Check%20Point%20and%20ISE%20Intergration%20White%20Paper.pdf" target="_self"&gt;https://community.checkpoint.com/fyrhh23835/attachments/fyrhh23835/general-topics/10644/1/Check%20Point%20and%20ISE%20Intergration%20White%20Paper.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;We used below default self signed certificate from ISE&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Untitled.png" style="width: 603px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/8504iA8994CE4D23D31ED/image-size/large?v=v2&amp;amp;px=999" role="button" title="Untitled.png" alt="Untitled.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Can someone, who has done it successfully, let us know the exact steps that were followed and the certificate that need to be exported from ISE? We have followed the above document for 3 times but every time we are getting the same issue.&lt;/P&gt;</description>
      <pubDate>Tue, 20 Oct 2020 10:06:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-identity-collector-and-Cisco-ISE-integration/m-p/99568#M10396</guid>
      <dc:creator>Rohit_Raut</dc:creator>
      <dc:date>2020-10-20T10:06:23Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint identity collector and Cisco ISE integration</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-identity-collector-and-Cisco-ISE-integration/m-p/99602#M10397</link>
      <description>&lt;P&gt;Did you consult &lt;A href="https://sc1.checkpoint.com/documents/R80.40/WebAdminGuides/EN/CP_R80.40_IdentityAwareness_AdminGuide/Default.htm" target="_self"&gt;Identity Awareness R80.40 Administration Guide&lt;/A&gt; p.86 ? I find that very valuable, same is true of &lt;A class="cp_link sc_ellipsis" style="max-width: 840px;" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk108235&amp;amp;partition=Basic&amp;amp;product=Identity" target="_blank"&gt;sk108235: &lt;STRONG&gt;Identity&lt;/STRONG&gt; &lt;STRONG&gt;Collector&lt;/STRONG&gt; - Technical Overview.&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 20 Oct 2020 14:23:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-identity-collector-and-Cisco-ISE-integration/m-p/99602#M10397</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2020-10-20T14:23:16Z</dc:date>
    </item>
  </channel>
</rss>

