<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Checkpoint Identity Agent: UserName Identification Problem on specific Users in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/135453#M23271</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;currently we deploy checkpoint identity Agent in our enviroment.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;On most Users it's working like expected but on some users only Machine Information will be set after user login but the user account won't be detected:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="cp-ida-issue.JPG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/14441i6F66B67C86E76571/image-size/medium?v=v2&amp;amp;px=400" role="button" title="cp-ida-issue.JPG" alt="cp-ida-issue.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If I logon on the same computer with another ActiveDirectory User Account then this user account will be detected from the agent.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What can be the problem there and how can I debug this issue?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Florian&lt;/P&gt;</description>
    <pubDate>Fri, 03 Dec 2021 08:18:34 GMT</pubDate>
    <dc:creator>Us4r</dc:creator>
    <dc:date>2021-12-03T08:18:34Z</dc:date>
    <item>
      <title>Checkpoint Identity Agent: UserName Identification Problem on specific Users</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/135453#M23271</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;currently we deploy checkpoint identity Agent in our enviroment.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;On most Users it's working like expected but on some users only Machine Information will be set after user login but the user account won't be detected:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="cp-ida-issue.JPG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/14441i6F66B67C86E76571/image-size/medium?v=v2&amp;amp;px=400" role="button" title="cp-ida-issue.JPG" alt="cp-ida-issue.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If I logon on the same computer with another ActiveDirectory User Account then this user account will be detected from the agent.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What can be the problem there and how can I debug this issue?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Florian&lt;/P&gt;</description>
      <pubDate>Fri, 03 Dec 2021 08:18:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/135453#M23271</guid>
      <dc:creator>Us4r</dc:creator>
      <dc:date>2021-12-03T08:18:34Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Identity Agent: UserName Identification Problem on specific Users</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/135462#M23272</link>
      <description>&lt;P&gt;This issue looks like in&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk120838&amp;amp;partition=Advanced&amp;amp;product=Identity" target="_blank"&gt;sk120838: Sometimes, output of "pep show user all" command does &lt;STRONG&gt;not&lt;/STRONG&gt; show &lt;STRONG&gt;username&lt;/STRONG&gt; in the "Username@Machine" column&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Further info:&lt;/P&gt;
&lt;P&gt;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk86441&amp;amp;partition=Advanced&amp;amp;product=Identity" target="_blank" rel="noopener"&gt;sk86441: ATRG: &lt;STRONG&gt;Identity&lt;/STRONG&gt; Awareness&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk113232&amp;amp;partition=Advanced&amp;amp;product=Identity" target="_blank" rel="noopener"&gt;sk113232: &lt;STRONG&gt;Identity&lt;/STRONG&gt; Awareness &lt;STRONG&gt;Agent&lt;/STRONG&gt;: Network Communication and Process Summary&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Dec 2021 10:16:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/135462#M23272</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-12-03T10:16:16Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Identity Agent: UserName Identification Problem on specific Users</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/135598#M23273</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;it looks like it's really a specific Problem of the active directory UserAccount. If this useraccount tries to logon on another compuer also the user won't be authenticated using kerberos.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Anything else how I can debug this issue? Can this be something like a permission problem on the user Account in the active directory?&lt;/P&gt;</description>
      <pubDate>Mon, 06 Dec 2021 10:16:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/135598#M23273</guid>
      <dc:creator>Us4r</dc:creator>
      <dc:date>2021-12-06T10:16:55Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Identity Agent: UserName Identification Problem on specific Users</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/146510#M23274</link>
      <description>&lt;P&gt;Hi!&lt;/P&gt;&lt;P&gt;I'm deploying Identity Agent in our environment (VSX HA cluster in R81.10) and we're having exactly the same issue.&lt;/P&gt;&lt;P&gt;Did you managed to have a closure for this?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanx!&lt;/P&gt;</description>
      <pubDate>Tue, 19 Apr 2022 16:43:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/146510#M23274</guid>
      <dc:creator>David_M_Almas</dc:creator>
      <dc:date>2022-04-19T16:43:50Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Identity Agent: UserName Identification Problem on specific Users</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/164216#M29391</link>
      <description>&lt;P&gt;We had same issues has probably something to do with Kerberos ticket size for some users, in the pdp logs you might see PDPD (TD::Critical)] pdp::NACUrlProtocol::DataReceived: data length: 48578 ,exceeds the maximum of: 40974, try adjusting &lt;STRONG&gt;ccc_max_msg_size &lt;/STRONG&gt;with DBedit tool, follow sk66087 &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk66087&amp;amp;partition=Advanced&amp;amp;product=Identity" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk66087&amp;amp;partition=Advanced&amp;amp;product=Identity&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Dec 2022 16:57:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/164216#M29391</guid>
      <dc:creator>dehaasm</dc:creator>
      <dc:date>2022-12-05T16:57:00Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Identity Agent: UserName Identification Problem on specific Users</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/166931#M30097</link>
      <description>&lt;P&gt;For future reference.&lt;/P&gt;&lt;P&gt;-----------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;After reporting this issue to TAC, they noticed this error in the IA Agent logs:&lt;STRONG&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;[PDPD (TD::Critical)] pdp::NACUrlProtocol::DataReceived: data length: 9923 ,exceeds the maximum of: 8196&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We then proceeded to increase the value ccc_max_msg_size using the following procedure (as always, please don't forget to perform a backup):&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Connect with SmartConsole to the Security Management Server / Domain Management Server.&lt;/LI&gt;&lt;LI&gt;In the top left corner, click&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Menu&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;&amp;gt;&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Database Revision Control&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;&amp;gt; create a revision snapshot.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;Note: Database Revision Control is not supported for VSX objects (&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk65420" target="_blank"&gt;sk65420&lt;/A&gt;) and Endpoint Security Servers. Instead, if running SMS/DMS in a virtual machine perform a snapshot prior to the following procedure.&lt;/P&gt;&lt;P&gt;In addition, refer to:&lt;/P&gt;&lt;OL&gt;&lt;UL&gt;&lt;LI&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk108902" target="_blank"&gt;sk108902 - Best Practices - Backup on Gaia OS&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk91400" target="_blank"&gt;sk91400 - System Backup and Restore feature in Gaia&lt;/A&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/OL&gt;&lt;P&gt;Close&amp;nbsp;&lt;STRONG&gt;all&lt;/STRONG&gt;&amp;nbsp;SmartConsole windows.&lt;/P&gt;&lt;P&gt;Verify by running the "&lt;EM&gt;cpstat mg&lt;/EM&gt;" command on Security Management Server / in the context of&amp;nbsp;&lt;EM&gt;each&lt;/EM&gt;&amp;nbsp;Domain Management Server.&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Connect with&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk13009" target="_blank"&gt;GuiDBedit Tool&lt;/A&gt;&amp;nbsp;to the Security Management Server / Domain Management Server.&lt;/LI&gt;&lt;LI&gt;In the upper left pane, go to&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Table&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;&amp;gt;&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Network Objects&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;&amp;gt;&amp;nbsp;&lt;STRONG&gt;network_objects&lt;/STRONG&gt;.&lt;/LI&gt;&lt;LI&gt;In the upper right pane, select the relevant Gateway or Cluster object.&lt;/LI&gt;&lt;LI&gt;Press CTRL+F (or go to&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Search&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;menu &amp;gt;&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Find&lt;/EM&gt;&lt;/STRONG&gt;) &amp;gt; paste&amp;nbsp;&lt;STRONG&gt;ccc_max_msg_size&amp;nbsp;&lt;/STRONG&gt;&amp;gt; click&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Find Next&lt;/EM&gt;&lt;/STRONG&gt;.&lt;/LI&gt;&lt;LI&gt;In the lower pane, right-click on the&amp;nbsp;&lt;STRONG&gt;ccc_max_msg_size&amp;nbsp;&lt;/STRONG&gt;&amp;gt; select&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Edit&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;&amp;gt; select "&lt;STRONG&gt;&lt;EM&gt;65535&lt;/EM&gt;&lt;/STRONG&gt;" &amp;gt; click&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;OK&lt;/EM&gt;&lt;/STRONG&gt;.&lt;/LI&gt;&lt;LI&gt;Save the changes: go to the&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;File&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;menu &amp;gt; click&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;Save All&lt;/EM&gt;&lt;/STRONG&gt;.&lt;/LI&gt;&lt;LI&gt;Close the GuiDBedit Tool.&lt;/LI&gt;&lt;LI&gt;Connect with SmartConsole to the Security Management Server / Domain Management Server.&lt;/LI&gt;&lt;LI&gt;Install the Security Policy onto the applicable Security Gateway / Cluster / VSX Virtual System object.&lt;/LI&gt;&lt;/OL&gt;</description>
      <pubDate>Fri, 06 Jan 2023 14:11:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-Identity-Agent-UserName-Identification-Problem-on/m-p/166931#M30097</guid>
      <dc:creator>David_M_Almas</dc:creator>
      <dc:date>2023-01-06T14:11:29Z</dc:date>
    </item>
  </channel>
</rss>

