<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Blocking  two-factor authentication on Check Point Mobile in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Blocking-two-factor-authentication-on-Check-Point-Mobile/m-p/135174#M20352</link>
    <description>&lt;P&gt;I suspect it may be trying both authentication methods and only confirming you matched both at the end.&lt;BR /&gt;It's possible this is a bug and you should contact the TAC.&lt;/P&gt;</description>
    <pubDate>Mon, 29 Nov 2021 20:14:54 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2021-11-29T20:14:54Z</dc:date>
    <item>
      <title>Blocking  two-factor authentication on Check Point Mobile</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Blocking-two-factor-authentication-on-Check-Point-Mobile/m-p/134232#M20093</link>
      <description>&lt;P&gt;We have dual user authentication configured through an external SMS gateway that sends SMS messages to pass the second authentication for access via Check Point Mobile.&lt;BR /&gt;We need to restrict SMS texting to users who are not in the LDAP Remote Users group.&lt;/P&gt;&lt;P&gt;We explicitly set the LDAP group in the Access Role, User Group, LDAP Group in the Check Point rule, and we also specified the LDAP group in the Remote Access object.&lt;/P&gt;&lt;P&gt;But users still get text messages and after entering a text message, access via Check Point Mobile disappears "Negotiation with site failed". Is there an option at Check Point to check the LDAP group first and if the user is found in the LDAP group, then an SMS message is sent to him afterwards?&lt;/P&gt;</description>
      <pubDate>Wed, 17 Nov 2021 09:18:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Blocking-two-factor-authentication-on-Check-Point-Mobile/m-p/134232#M20093</guid>
      <dc:creator>Hllrdm</dc:creator>
      <dc:date>2021-11-17T09:18:02Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking  two-factor authentication on Check Point Mobile</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Blocking-two-factor-authentication-on-Check-Point-Mobile/m-p/134532#M20172</link>
      <description>&lt;P&gt;You need to define multiple login options: one that just does the LDAP lookup, and one that does both LDAP plus SMS.&lt;BR /&gt;The client will be able to choose which authentications scheme to use.&lt;BR /&gt;Refer to the&amp;nbsp;Configuring Multiple Log-in Options section of:&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_MobileAccess_AdminGuide/Topics-MABG/User-Authentication.htm?Highlight=Configuring%20Multiple%20Log-in%20Options" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_MobileAccess_AdminGuide/Topics-MABG/User-Authentication.htm?Highlight=Configuring%20Multiple%20Log-in%20Options&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Nov 2021 17:50:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Blocking-two-factor-authentication-on-Check-Point-Mobile/m-p/134532#M20172</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-11-19T17:50:53Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking  two-factor authentication on Check Point Mobile</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Blocking-two-factor-authentication-on-Check-Point-Mobile/m-p/135129#M20346</link>
      <description>&lt;P&gt;We only need to use two-factor authorization. The first factor is LDAP, the second SMS.&lt;BR /&gt;No LDAP/two-factor authentication option.&lt;BR /&gt;Is this option available to solve the original problem?&lt;/P&gt;</description>
      <pubDate>Mon, 29 Nov 2021 08:56:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Blocking-two-factor-authentication-on-Check-Point-Mobile/m-p/135129#M20346</guid>
      <dc:creator>Hllrdm</dc:creator>
      <dc:date>2021-11-29T08:56:43Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking  two-factor authentication on Check Point Mobile</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Blocking-two-factor-authentication-on-Check-Point-Mobile/m-p/135174#M20352</link>
      <description>&lt;P&gt;I suspect it may be trying both authentication methods and only confirming you matched both at the end.&lt;BR /&gt;It's possible this is a bug and you should contact the TAC.&lt;/P&gt;</description>
      <pubDate>Mon, 29 Nov 2021 20:14:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Blocking-two-factor-authentication-on-Check-Point-Mobile/m-p/135174#M20352</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-11-29T20:14:54Z</dc:date>
    </item>
  </channel>
</rss>

