<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: AD-query failed with Microsoft Windows Server 2022 in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135483#M25077</link>
    <description>&lt;P&gt;Thank You, PhoneBoy for your suggestion.&lt;/P&gt;&lt;P&gt;I have disabled&amp;nbsp;&lt;SPAN&gt;AD Query&amp;nbsp;for all embedded devices, and enabled them to get shared identities from those appliances, that use ID Collector.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Will see, how this will work. I was afraid, that using ID Sharing Identities will not work, it requests/traffic is not processed through GW, that is Identity source. (for example on-site local traffic between separated interfaces/subnets).&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Best Regards,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Raitis&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 03 Dec 2021 16:41:32 GMT</pubDate>
    <dc:creator>SGInfra</dc:creator>
    <dc:date>2021-12-03T16:41:32Z</dc:date>
    <item>
      <title>AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/134624#M25065</link>
      <description>&lt;P&gt;Hello CheckMates,&lt;/P&gt;
&lt;P&gt;with&amp;nbsp;Windows Server 2022 Microsoft changed the default behaviour of the RPC authentication level.&lt;/P&gt;
&lt;P&gt;Following this AD-query failed (remote login not possible, access roles not enforced etc.) Available in the knowledgebase is this article&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk176148" target="_self"&gt;Check Point response to CVE-2021-26414 - "Windows DCOM Server Security Feature Bypass"&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;There is a steatment "&lt;SPAN&gt;Check Point R&amp;amp;D is working on a permanent solution for this issue.&lt;/SPAN&gt;"&lt;/P&gt;
&lt;P&gt;Any solutions for this problem or a timeline when available?&lt;/P&gt;
&lt;P&gt;Wolfgang&lt;/P&gt;</description>
      <pubDate>Mon, 22 Nov 2021 07:55:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/134624#M25065</guid>
      <dc:creator>Wolfgang</dc:creator>
      <dc:date>2021-11-22T07:55:01Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/134632#M25066</link>
      <description>&lt;P&gt;There is a workaround in the case. Did you see the link to the MS article in the comments?&lt;/P&gt;</description>
      <pubDate>Mon, 22 Nov 2021 08:57:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/134632#M25066</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2021-11-22T08:57:25Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/134638#M25067</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt;&amp;nbsp;yes, I see. But the solution is to lowering the security on the Microsoft site. I know identity collector is the better solution but at the moment we are using only AD-query.&lt;/P&gt;</description>
      <pubDate>Mon, 22 Nov 2021 09:19:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/134638#M25067</guid>
      <dc:creator>Wolfgang</dc:creator>
      <dc:date>2021-11-22T09:19:12Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/134961#M25068</link>
      <description>&lt;P&gt;Are you sure the workaround works on server 2022 as well and not only on previous versions having the update for CVE-2021-26414 ? The MS kb article states that the workaround will not be possible anymore in some times and server 2022 is not listed. So possibly server 2022 is already in this state.&lt;/P&gt;</description>
      <pubDate>Fri, 26 Nov 2021 09:12:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/134961#M25068</guid>
      <dc:creator>JeanMarc_C</dc:creator>
      <dc:date>2021-11-26T09:12:09Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135007#M25069</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/2694"&gt;@JeanMarc_C&lt;/a&gt;&amp;nbsp; yes you're right. With 2022 this does not work. We tried this but AD query&amp;nbsp; was failing again. Reading again Microsofts knowledgebase article let us realize that it's not supported with 2022 (same as you mentioned). I forgot about it to post here. The solution is to switch to Identity Collector.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;There should be a hint in the documentation that AD query does no more work with domain controller on Microsoft Server 2022.&lt;/P&gt;</description>
      <pubDate>Fri, 26 Nov 2021 14:28:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135007#M25069</guid>
      <dc:creator>Wolfgang</dc:creator>
      <dc:date>2021-11-26T14:28:23Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135052#M25070</link>
      <description>&lt;P&gt;AD query on Microsoft Server 2022 wont never work or till Check Point will release the fix?&lt;/P&gt;</description>
      <pubDate>Fri, 26 Nov 2021 23:12:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135052#M25070</guid>
      <dc:creator>JozkoMrkvicka</dc:creator>
      <dc:date>2021-11-26T23:12:34Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135055#M25071</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Looks like you have to install&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://support.microsoft.com/en-us/topic/september-27-2021-kb5005619-os-build-20348-261-preview-d5416d34-e4b7-4680-8747-7e995515c791" target="_blank" rel="noopener"&gt;KB5005619 &lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;on Microsoft server 2022 and then you can set the mentioned registry value to disabled. But after Q2 2022 this will be no more available. Have a look at the timeline in&amp;nbsp;&lt;A href="https://support.microsoft.com/en-us/topic/kb5004442-manage-changes-for-windows-dcom-server-security-feature-bypass-cve-2021-26414-f1400b52-c141-43d2-941e-37ed901c769c" target="_blank" rel="noopener"&gt;KB5004442—Manage changes for Windows DCOM Server Security Feature Bypass (CVE-2021-26414)&lt;/A&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt;&amp;nbsp;please would you check internal regarding AD query and Microsoft Windows server 2022.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 27 Nov 2021 19:02:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135055#M25071</guid>
      <dc:creator>Wolfgang</dc:creator>
      <dc:date>2021-11-27T19:02:10Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135080#M25072</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/1447"&gt;@Wolfgang&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;Unfortunately, there is no simple fix here to adjust AD Query to work with this security enhancement.&lt;/P&gt;
&lt;P&gt;We are still investigating the amount of effort needed here, but I can say it will not take few weeks.&lt;/P&gt;
&lt;P&gt;As the SK stated, this is a problem which only AD Query suffers from, and Identity Collector which uses different method for acquiring identities works with no change.&lt;/P&gt;
&lt;P&gt;I will revise the SK with the needed info raised on this thread - thanks for sharing.&lt;/P&gt;</description>
      <pubDate>Sun, 28 Nov 2021 07:59:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135080#M25072</guid>
      <dc:creator>Royi_Priov</dc:creator>
      <dc:date>2021-11-28T07:59:35Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135131#M25073</link>
      <description>&lt;P&gt;Thanks Royi, we appreciate the transparency.&lt;/P&gt;</description>
      <pubDate>Mon, 29 Nov 2021 09:25:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135131#M25073</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2021-11-29T09:25:10Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135343#M25074</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;What solution or workaround would be for Gaia Embedded devices (15xx Appliances)? those don't have option to use Identity Collector.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ID Awareness Screenshot.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/14433i15A59A6153BB5BEF/image-size/medium?v=v2&amp;amp;px=400" role="button" title="ID Awareness Screenshot.png" alt="ID Awareness Screenshot.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt; Thanks,&lt;/P&gt;&lt;P&gt;Raitis Robeznieks&lt;/P&gt;</description>
      <pubDate>Wed, 01 Dec 2021 14:30:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135343#M25074</guid>
      <dc:creator>SGInfra</dc:creator>
      <dc:date>2021-12-01T14:30:30Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135347#M25075</link>
      <description>&lt;P&gt;Share identities from a gateway that can.&lt;BR /&gt;This could even be a two-core VM off to the side running regular Gaia.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 01 Dec 2021 16:35:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135347#M25075</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-12-01T16:35:48Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135455#M25076</link>
      <description>&lt;P&gt;I had a ticket with support for this, and there is an ETA to support server 2022 and the security strengthening according the MS KB for end of January 2022. In the meantime workaround or solution is to work with Identity collector (which is better than AD query), share identities between gateways, or use Identity Agent.&lt;/P&gt;&lt;P&gt;It is however not 100% clear if AD 2022 with the registry key change according MS KB is meant to work or not. In my case, on embedded R77.20, it does not work but change the status of the AD from "internal error" to&amp;nbsp; "bad credential".&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Dec 2021 08:36:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135455#M25076</guid>
      <dc:creator>JeanMarc_C</dc:creator>
      <dc:date>2021-12-03T08:36:22Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135483#M25077</link>
      <description>&lt;P&gt;Thank You, PhoneBoy for your suggestion.&lt;/P&gt;&lt;P&gt;I have disabled&amp;nbsp;&lt;SPAN&gt;AD Query&amp;nbsp;for all embedded devices, and enabled them to get shared identities from those appliances, that use ID Collector.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Will see, how this will work. I was afraid, that using ID Sharing Identities will not work, it requests/traffic is not processed through GW, that is Identity source. (for example on-site local traffic between separated interfaces/subnets).&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Best Regards,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Raitis&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Dec 2021 16:41:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135483#M25077</guid>
      <dc:creator>SGInfra</dc:creator>
      <dc:date>2021-12-03T16:41:32Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135632#M25078</link>
      <description>&lt;P&gt;Hi &lt;SPAN&gt;Raitis,&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/35867"&gt;@SGInfra&lt;/a&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Identity Sharing mechanism will allow more efficient way to save identities. For example, gateway which handle traffic for specific subnets, will get the identities which are part of this subnet only. This design allows each gateway to receive&amp;nbsp;the needed identities&amp;nbsp;only, and not process unneeded sessions.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Dec 2021 13:59:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135632#M25078</guid>
      <dc:creator>Royi_Priov</dc:creator>
      <dc:date>2021-12-06T13:59:22Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135903#M25079</link>
      <description>&lt;P&gt;Hi, Royi_Priov, and Thanks for Your advice.&lt;/P&gt;&lt;P&gt;Solution with Shared identities Works fine.&lt;/P&gt;&lt;P&gt;In our topology we have 4 GW running regular Gaia and 6 Gaia embedded appliances.&lt;/P&gt;&lt;P&gt;One of Regular Gaia is central GW for all other devices (sites) in star Community VPN.&lt;/P&gt;&lt;P&gt;I have pointed each Embedded device, to get shared Identities form Central GW and one other Regular Gaia device, that is related (As parrent) site for that branch.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks also to PhoneBoy for provided solution.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;B.R.&lt;/P&gt;&lt;P&gt;Raitis&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Dec 2021 11:47:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135903#M25079</guid>
      <dc:creator>SGInfra</dc:creator>
      <dc:date>2021-12-09T11:47:15Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135949#M25080</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/8232"&gt;@Royi_Priov&lt;/a&gt;,, Has SK been revised and updated?&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Thu, 09 Dec 2021 17:09:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/135949#M25080</guid>
      <dc:creator>BeaconBits</dc:creator>
      <dc:date>2021-12-09T17:09:38Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/136107#M25081</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/26453"&gt;@BeaconBits&lt;/a&gt;,&amp;nbsp;yes:&lt;/P&gt;
&lt;PRE class="lia-indent-padding-left-30px"&gt;&lt;EM&gt;To work without any functionality issues, follow the procedure in this Microsoft article:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;https://support.microsoft.com/en-us/topic/kb5004442-manage-changes-for-windows-dcom-server-security-feature-bypass-cve-2021-26414-f1400b52-c141-43d2-941e-37ed901c769c&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;&lt;STRONG&gt;A fix might be needed to apply this procedure, please check "Availability" section in the above article.&lt;/STRONG&gt;&lt;/EM&gt;&lt;/PRE&gt;
&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 12 Dec 2021 12:49:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/136107#M25081</guid>
      <dc:creator>Royi_Priov</dc:creator>
      <dc:date>2021-12-12T12:49:30Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/136234#M25082</link>
      <description>&lt;P&gt;The method of setting the registry key unfortunately makes no difference on an up to date Windows 2022 AD server. Herewith the registry entry we set:&lt;/P&gt;&lt;P class="lia-indent-padding-left-30px"&gt;&lt;FONT face="courier new,courier" size="1 2 3 4 5 6 7"&gt;Windows Registry Editor Version 5.00&lt;BR /&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P class="lia-indent-padding-left-30px"&gt;&lt;FONT face="courier new,courier" size="1 2 3 4 5 6 7"&gt;[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat]&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT face="courier new,courier" size="1 2 3 4 5 6 7"&gt;"RequireIntegrityActivationAuthenticationLevel"=dword:00000000&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hoping R&amp;amp;D can provide a fix that remediates this problem, what's happened in the 6 months since Microsoft raised awareness of this upcoming change?&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;Perhaps developers could look to see how other libraries (eg Samba) handle the requirement?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="rpc_c_authn_level_pkt_integrity.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/14542iC5FBEAE3EB0BD2D3/image-size/large?v=v2&amp;amp;px=999" role="button" title="rpc_c_authn_level_pkt_integrity.png" alt="rpc_c_authn_level_pkt_integrity.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;PS: We are running R81 with NTLMv2, LDAPS and&amp;nbsp;Kerberos encryption type aes256-cts-hmac-sha1-96.&lt;/P&gt;</description>
      <pubDate>Tue, 14 Dec 2021 09:04:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/136234#M25082</guid>
      <dc:creator>David_Herselman</dc:creator>
      <dc:date>2021-12-14T09:04:28Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/138918#M25083</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/8232"&gt;@Royi_Priov&lt;/a&gt;&amp;nbsp;do you have an update to this yet?&lt;/P&gt;</description>
      <pubDate>Wed, 19 Jan 2022 16:11:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/138918#M25083</guid>
      <dc:creator>Enyi_Ajoku</dc:creator>
      <dc:date>2022-01-19T16:11:54Z</dc:date>
    </item>
    <item>
      <title>Re: AD-query failed with Microsoft Windows Server 2022</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/141494#M25084</link>
      <description>&lt;P&gt;So, SMB clients with just Quantum Spark appliances also need to buy and maintain a license for VM GAIA just for this task?&amp;nbsp;I have not heard of any other vendor with this problem and forcing you to purchase additional licenses for a feature you are supposed to have already paid for. This is not good&lt;/P&gt;</description>
      <pubDate>Tue, 15 Feb 2022 00:17:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-query-failed-with-Microsoft-Windows-Server-2022/m-p/141494#M25084</guid>
      <dc:creator>MikeB</dc:creator>
      <dc:date>2022-02-15T00:17:07Z</dc:date>
    </item>
  </channel>
</rss>

