<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Identity Awareness for Remote Access Users in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-for-Remote-Access-Users/m-p/64352#M12325</link>
    <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;We have enabled Identity Awareness blade yesterday, This has been enabled mainly for the Remote Access VPN users. I am able to fetch the details from AD and created the Access role for the specific group in the AD and provided ANY access for that particular group. But it doesn't seem to be working. User able to connect to Remote Access(Ex: User Bob logs in to RA i can see the identity awareness blade shows the login and logout details but the problem is it is not hitting the Any rule configured. So the users are not able to have complete access which they required. Please let me know how to proceed further on this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Below are the details:&lt;/P&gt;&lt;P&gt;GW: R77.30 Take 225&lt;/P&gt;&lt;P&gt;MDS: R80.10 Take 121&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Let me know if you need anymore details on this.&lt;/P&gt;&lt;P&gt;Thank you in advance.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 04 Oct 2019 09:23:24 GMT</pubDate>
    <dc:creator>Sanjay_S</dc:creator>
    <dc:date>2019-10-04T09:23:24Z</dc:date>
    <item>
      <title>Identity Awareness for Remote Access Users</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-for-Remote-Access-Users/m-p/64352#M12325</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;We have enabled Identity Awareness blade yesterday, This has been enabled mainly for the Remote Access VPN users. I am able to fetch the details from AD and created the Access role for the specific group in the AD and provided ANY access for that particular group. But it doesn't seem to be working. User able to connect to Remote Access(Ex: User Bob logs in to RA i can see the identity awareness blade shows the login and logout details but the problem is it is not hitting the Any rule configured. So the users are not able to have complete access which they required. Please let me know how to proceed further on this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Below are the details:&lt;/P&gt;&lt;P&gt;GW: R77.30 Take 225&lt;/P&gt;&lt;P&gt;MDS: R80.10 Take 121&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Let me know if you need anymore details on this.&lt;/P&gt;&lt;P&gt;Thank you in advance.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 04 Oct 2019 09:23:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-for-Remote-Access-Users/m-p/64352#M12325</guid>
      <dc:creator>Sanjay_S</dc:creator>
      <dc:date>2019-10-04T09:23:24Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness for Remote Access Users</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-for-Remote-Access-Users/m-p/64366#M12326</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;First of all make sure that Identity Awareness blade is active on your firewall.&lt;/P&gt;&lt;P&gt;Please look into the logs and see which rule is hitting that access. You can also use packet mode to test your policy:&amp;nbsp;&lt;A href="https://community.checkpoint.com/t5/Policy-Management/Packet-Mode-a-new-way-of-searching-through-your-security-policy/td-p/3810" target="_self"&gt;Packet mode&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;___&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 04 Oct 2019 12:49:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-for-Remote-Access-Users/m-p/64366#M12326</guid>
      <dc:creator>FedericoMeiners</dc:creator>
      <dc:date>2019-10-04T12:49:49Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness for Remote Access Users</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-for-Remote-Access-Users/m-p/64881#M12327</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Based on the information you have provided, I would try to identify the firewall rule that does match the interesting traffic. You could achieve that by doing either of the following:&lt;/P&gt;&lt;P&gt;- Consult the logs on the manager&lt;/P&gt;&lt;P&gt;- Run fw ctl zdebug | grep &amp;lt;ip address of the remote acess user you test with&amp;gt; on the gateway and see what policy is dropping the traffic&lt;/P&gt;&lt;P&gt;Failing the above, you can place the Identity Awareness firewall rule right at the top of the rule base just for testing purposes and try again.&lt;/P&gt;&lt;P&gt;Once you have done the above, please share with us your findings along with the error encountered on the client side if any.&lt;/P&gt;&lt;P&gt;I hope this helps.&lt;/P&gt;</description>
      <pubDate>Sat, 12 Oct 2019 17:41:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-for-Remote-Access-Users/m-p/64881#M12327</guid>
      <dc:creator>Nick_Doropoulos</dc:creator>
      <dc:date>2019-10-12T17:41:24Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness for Remote Access Users</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-for-Remote-Access-Users/m-p/64900#M12328</link>
      <description>Could it be that you have a desktop policy that does not allow the traffic, in other words is the traffic reaching the gateway at all?</description>
      <pubDate>Sun, 13 Oct 2019 17:29:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-for-Remote-Access-Users/m-p/64900#M12328</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-10-13T17:29:47Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness for Remote Access Users</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-for-Remote-Access-Users/m-p/66356#M12329</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;We found the issue, we should have communication from our jump server from where we manage the smart console to the customer AD. After getting the access allowed from Jump server to customer AD on all High Ports the IA blade started working as expected. Thank you all for looking into it and suggesting.&lt;/P&gt;</description>
      <pubDate>Thu, 31 Oct 2019 14:30:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-for-Remote-Access-Users/m-p/66356#M12329</guid>
      <dc:creator>Sanjay_S</dc:creator>
      <dc:date>2019-10-31T14:30:51Z</dc:date>
    </item>
  </channel>
</rss>

