<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Identity Awareness stopped working after upgrade in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-stopped-working-after-upgrade/m-p/106911#M14309</link>
    <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;We upgraded the VSX cluster from R77.30 to R80.30, since then Identity awareness stopped working. I am not able to create a new access role where the AD is reseting the 636 packet. But AD is reachable from firewall. Is this anything to do with TLS version or any SSL setting needs to be checked after upgrading? Please suggest.&lt;/P&gt;</description>
    <pubDate>Mon, 04 Jan 2021 15:57:06 GMT</pubDate>
    <dc:creator>Sanjay_S</dc:creator>
    <dc:date>2021-01-04T15:57:06Z</dc:date>
    <item>
      <title>Identity Awareness stopped working after upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-stopped-working-after-upgrade/m-p/106911#M14309</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;We upgraded the VSX cluster from R77.30 to R80.30, since then Identity awareness stopped working. I am not able to create a new access role where the AD is reseting the 636 packet. But AD is reachable from firewall. Is this anything to do with TLS version or any SSL setting needs to be checked after upgrading? Please suggest.&lt;/P&gt;</description>
      <pubDate>Mon, 04 Jan 2021 15:57:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-stopped-working-after-upgrade/m-p/106911#M14309</guid>
      <dc:creator>Sanjay_S</dc:creator>
      <dc:date>2021-01-04T15:57:06Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness stopped working after upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-stopped-working-after-upgrade/m-p/106973#M14317</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/18584"&gt;@Sanjay_S&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;It sounds like the communication to the AD server indeed is not working. When creating an access role, the communication is between mgmt server and the AD, while Identity Awareness enforcement requires the GW to communicate with the AD server.&lt;/P&gt;
&lt;P&gt;You have mentioned port 636, which points to the fact you are probably using LDAP over SSL.&lt;/P&gt;
&lt;P&gt;Have you tried to refetch the fingerprint inside the LDAP account unit object? please do so, and install policy afterwards.&lt;/P&gt;
&lt;P&gt;If the issue still exists, I suggest contacting Check Point support.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 05 Jan 2021 07:11:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-stopped-working-after-upgrade/m-p/106973#M14317</guid>
      <dc:creator>Royi_Priov</dc:creator>
      <dc:date>2021-01-05T07:11:16Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness stopped working after upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-stopped-working-after-upgrade/m-p/106992#M14319</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;We sometimes forgot to turn on NTLMv2 support after upgrading and IA was not working. Not sure if the symptoms match.&lt;/P&gt;&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R80.40/WebAdminGuides/EN/CP_R80.40_IdentityAwareness_AdminGuide/Topics-IDAG/Configuring-Identity-Sources-Configuring-AD-Query.htm?Highlight=ntlm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R80.40/WebAdminGuides/EN/CP_R80.40_IdentityAwareness_AdminGuide/Topics-IDAG/Configuring-Identity-Sources-Configuring-AD-Query.htm?Highlight=ntlm&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 05 Jan 2021 10:26:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-stopped-working-after-upgrade/m-p/106992#M14319</guid>
      <dc:creator>Borut</dc:creator>
      <dc:date>2021-01-05T10:26:52Z</dc:date>
    </item>
  </channel>
</rss>

