<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Identity Awareness question in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/83116#M22698</link>
    <description>Chris,&lt;BR /&gt;sorry that bothering you again, two days tried to implement different solutions. First of all, LDAP doesnt work, authentication works (same like Radius), but still nothing in logs (except Windows machines, even if they are not part of domain, i see them and usernames). Your solution, i tried to implement it but, still dont understand how it should works. WLC, i configured an accounting server is CheckPoint, on checkpoint side i configured WLC like Radius Client, i think its wrong. I guess, in my configuration, i have Windows NPS, and turned on Radius accounting there , and WLC and CHeckpoint have to use it like Radius server, no? CHeckpoint support advised to use Captive portal for access to wireless ... but i am not sure... in this case i have to provide open access to wireless corp, and next check users, then they will try to get access to network via checkpoint policy...</description>
    <pubDate>Sat, 25 Apr 2020 00:13:42 GMT</pubDate>
    <dc:creator>Sergo89</dc:creator>
    <dc:date>2020-04-25T00:13:42Z</dc:date>
    <item>
      <title>Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82342#M22683</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hi All,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Could you advise how to solve this issue. We have Cisco WLC (wireless controller) with RADIUS authentication, everything works fine, users can use own AD credentials and get IPs from Windows DHCP and access finally. CheckPoint uses Identity Awareness blade and get info from AD, i see computer name and username in CheckPoint's logs. Unfortunately it works only with Windows clients, for Linux/Android/Mac/iOS i see only IPs. i know why its happen, Windows automatically register in DNS and it has association with username, but for other OS it doesnt work. do you have any ideas/advises how to solve it?&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;THANKS&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 19 Apr 2020 00:12:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82342#M22683</guid>
      <dc:creator>Sergo89</dc:creator>
      <dc:date>2020-04-19T00:12:33Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82343#M22684</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;Is Identity Awareness configured for only ADquery,&amp;nbsp; Radius Accounting or both?&lt;/P&gt;</description>
      <pubDate>Sun, 19 Apr 2020 01:11:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82343#M22684</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2020-04-19T01:11:09Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82345#M22685</link>
      <description>AD query via LDAP, radius not configured. do they can works together?</description>
      <pubDate>Sun, 19 Apr 2020 01:36:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82345#M22685</guid>
      <dc:creator>Sergo89</dc:creator>
      <dc:date>2020-04-19T01:36:59Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82350#M22686</link>
      <description>Should be able to also configure RADIUS Accounting as an identity source as well.</description>
      <pubDate>Sun, 19 Apr 2020 02:05:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82350#M22686</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-04-19T02:05:03Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82637#M22687</link>
      <description>Sorry guys, how it should works? i configured Radius in Identity Awareness, but it doesnt work (not sure, maybe it was configured not properly, because Radius config is tricky). Cisco WLC use Radius for auth, and checkpoint use same Radius?</description>
      <pubDate>Tue, 21 Apr 2020 14:56:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82637#M22687</guid>
      <dc:creator>Sergo89</dc:creator>
      <dc:date>2020-04-21T14:56:34Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82647#M22688</link>
      <description>&lt;P&gt;WLC will send a copy of Radius Accounting packets to Check Point gateway and we will obtain user/IP info from this based on the field mappings that you define within IA config.&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2020 15:21:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82647#M22688</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2020-04-21T15:21:43Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82650#M22689</link>
      <description>Define "not work."&lt;BR /&gt;It's also possible machine ID is not something RADIUS communicates at all.</description>
      <pubDate>Tue, 21 Apr 2020 15:33:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82650#M22689</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-04-21T15:33:33Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82654#M22690</link>
      <description>I dont see any changes in CP logs, still IPs no usernames. Also it can be stealth rule (just thinking right now), radius traffic (i guess) not included to Implied rules ..</description>
      <pubDate>Tue, 21 Apr 2020 16:07:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82654#M22690</guid>
      <dc:creator>Sergo89</dc:creator>
      <dc:date>2020-04-21T16:07:49Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82682#M22691</link>
      <description>Chris, do i have to configure something on WLC side?</description>
      <pubDate>Tue, 21 Apr 2020 21:27:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82682#M22691</guid>
      <dc:creator>Sergo89</dc:creator>
      <dc:date>2020-04-21T21:27:45Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82693#M22692</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Unless your Radius server has the ability to "proxy" accounting records onto Check Point you will need to configure/specify Check Point as an Radius Accounting server on the WLC side yes.&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2020 23:47:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82693#M22692</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2020-04-21T23:47:53Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82777#M22693</link>
      <description>Hi Chris,&lt;BR /&gt;sorry, still not clear for me, how to configure it... i want to try change Radius to LDAP on WLC...</description>
      <pubDate>Wed, 22 Apr 2020 14:22:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82777#M22693</guid>
      <dc:creator>Sergo89</dc:creator>
      <dc:date>2020-04-22T14:22:56Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82789#M22694</link>
      <description>&lt;P&gt;If the WLC is already using Radius you need to configure an additional Accounting server entry which is the Check Point IP. (We've not been discussing LDAP here.)&lt;/P&gt;
&lt;P&gt;In case it is still unclear I will point you to a similar guide in a separate post soon.&lt;/P&gt;</description>
      <pubDate>Wed, 22 Apr 2020 15:16:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82789#M22694</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2020-04-22T15:16:31Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82793#M22695</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;These guides show different Radius Accounting implementations for Identity Awareness. Depending upon your setup it may be much simpler to have the WLC send the Radius Accounting directly as discussed.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.arubanetworks.com/Documentation/tabid/77/DMXModule/512/Command/Core_Download/Default.aspx?EntryId=33265" target="_blank"&gt;https://support.arubanetworks.com/Documentation/tabid/77/DMXModule/512/Command/Core_Download/Default.aspx?EntryId=33265&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-RADIUS-Accounting-mode/m-p/15108#M2559" target="_blank"&gt;https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-RADIUS-Accounting-mode/m-p/15108#M2559&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Apr 2020 15:36:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82793#M22695</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2020-04-22T15:36:33Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82794#M22696</link>
      <description>Thanks Chris! will try it today</description>
      <pubDate>Wed, 22 Apr 2020 15:46:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82794#M22696</guid>
      <dc:creator>Sergo89</dc:creator>
      <dc:date>2020-04-22T15:46:38Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82851#M22697</link>
      <description>&lt;P&gt;FYI, note the steps may be version dependent in which case you should seek assistance from Cisco but please refer:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/other-wireless-mobility-subjects/how-to-configure-wlc-to-send-accounting-message-to-radius-server/td-p/3307846" target="_blank"&gt;https://community.cisco.com/t5/other-wireless-mobility-subjects/how-to-configure-wlc-to-send-accounting-message-to-radius-server/td-p/3307846&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Apr 2020 23:29:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/82851#M22697</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2020-04-22T23:29:33Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/83116#M22698</link>
      <description>Chris,&lt;BR /&gt;sorry that bothering you again, two days tried to implement different solutions. First of all, LDAP doesnt work, authentication works (same like Radius), but still nothing in logs (except Windows machines, even if they are not part of domain, i see them and usernames). Your solution, i tried to implement it but, still dont understand how it should works. WLC, i configured an accounting server is CheckPoint, on checkpoint side i configured WLC like Radius Client, i think its wrong. I guess, in my configuration, i have Windows NPS, and turned on Radius accounting there , and WLC and CHeckpoint have to use it like Radius server, no? CHeckpoint support advised to use Captive portal for access to wireless ... but i am not sure... in this case i have to provide open access to wireless corp, and next check users, then they will try to get access to network via checkpoint policy...</description>
      <pubDate>Sat, 25 Apr 2020 00:13:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/83116#M22698</guid>
      <dc:creator>Sergo89</dc:creator>
      <dc:date>2020-04-25T00:13:42Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/83508#M22699</link>
      <description>Fixed it! it works!!!</description>
      <pubDate>Tue, 28 Apr 2020 16:00:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-question/m-p/83508#M22699</guid>
      <dc:creator>Sergo89</dc:creator>
      <dc:date>2020-04-28T16:00:42Z</dc:date>
    </item>
  </channel>
</rss>

