<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Integration FreeIPA and Checkpoint Security Gateway in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176339#M32280</link>
    <description>&lt;P&gt;You can try asking the TAC about this.&lt;BR /&gt;However, you are ultimately trying to integrate with an LDAP directory we don't support.&lt;BR /&gt;Which means even if you do somehow make this work, if and when it breaks again, it won't be formally supported.&lt;/P&gt;
&lt;P&gt;If this is a business requirement, your best bet is to work with the local Check Point office on an RFE.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 27 Mar 2023 16:54:57 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2023-03-27T16:54:57Z</dc:date>
    <item>
      <title>Integration FreeIPA and Checkpoint Security Gateway</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176053#M32176</link>
      <description>&lt;P&gt;Hello Everyone,&lt;/P&gt;&lt;P&gt;Me and my team from few days are trying to integrate Checkpoint Security Gateway with FreeIPA.&lt;/P&gt;&lt;P&gt;We have integration with Microsoft AD by LDAP Unit Object which is works.&lt;/P&gt;&lt;P&gt;Unfortunately, FreeIPA haven't "samAccountName" object class in directory schema, so when we try to add some users to Checkpoint Access Role we receive only blank directory tree.&lt;/P&gt;&lt;P&gt;We try to change Profile in FreeIPA Ldap Unit from Microsoft AD to OPSEC and Create LDAP Group with some option "Only Group in branch (DN prefix)", where we paste uid path to specific group, but log in to VPN was without success.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Somebody have any idea how to integrate this to systems?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;&lt;P&gt;Jakub&lt;/P&gt;</description>
      <pubDate>Fri, 24 Mar 2023 11:10:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176053#M32176</guid>
      <dc:creator>jakmic</dc:creator>
      <dc:date>2023-03-24T11:10:04Z</dc:date>
    </item>
    <item>
      <title>Re: Integration FreeIPA and Checkpoint Security Gateway</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176085#M32184</link>
      <description>&lt;P&gt;Generic LDAP definitions should work.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 24 Mar 2023 13:56:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176085#M32184</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2023-03-24T13:56:38Z</dc:date>
    </item>
    <item>
      <title>Re: Integration FreeIPA and Checkpoint Security Gateway</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176099#M32187</link>
      <description>&lt;P&gt;Yes, we thought the same, but no.&lt;/P&gt;&lt;P&gt;User Object Class in FreeIPA is "uid". We try to use another User Directory Profile, but without success to log in.&lt;/P&gt;&lt;P&gt;From another site, when we use old Dashboard, with attribute "uid", we receive good results.&lt;/P&gt;&lt;P&gt;Maybe custom User Directory Profile, but how can we create it? Only by database edit?&lt;/P&gt;</description>
      <pubDate>Fri, 24 Mar 2023 14:42:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176099#M32187</guid>
      <dc:creator>jakmic</dc:creator>
      <dc:date>2023-03-24T14:42:26Z</dc:date>
    </item>
    <item>
      <title>Re: Integration FreeIPA and Checkpoint Security Gateway</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176146#M32214</link>
      <description>&lt;P&gt;Presumably through guidbedit, it might be possible.&lt;/P&gt;</description>
      <pubDate>Fri, 24 Mar 2023 20:20:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176146#M32214</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-03-24T20:20:23Z</dc:date>
    </item>
    <item>
      <title>Re: Integration FreeIPA and Checkpoint Security Gateway</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176229#M32234</link>
      <description>&lt;P&gt;Is there any manual or KB where this is described?&lt;/P&gt;</description>
      <pubDate>Mon, 27 Mar 2023 06:07:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176229#M32234</guid>
      <dc:creator>jakmic</dc:creator>
      <dc:date>2023-03-27T06:07:40Z</dc:date>
    </item>
    <item>
      <title>Re: Integration FreeIPA and Checkpoint Security Gateway</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176339#M32280</link>
      <description>&lt;P&gt;You can try asking the TAC about this.&lt;BR /&gt;However, you are ultimately trying to integrate with an LDAP directory we don't support.&lt;BR /&gt;Which means even if you do somehow make this work, if and when it breaks again, it won't be formally supported.&lt;/P&gt;
&lt;P&gt;If this is a business requirement, your best bet is to work with the local Check Point office on an RFE.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Mar 2023 16:54:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176339#M32280</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-03-27T16:54:57Z</dc:date>
    </item>
    <item>
      <title>Re: Integration FreeIPA and Checkpoint Security Gateway</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176392#M32293</link>
      <description>&lt;P&gt;Finally, we integrated FreeIPA with Checkpoint&lt;/P&gt;&lt;P&gt;Profile: Netscape_DS - this profile has good user info mapping&lt;/P&gt;&lt;P&gt;First: We are integrating two environments, so we forgot about routes - all traffic were from WAN interface (on first environment traffic were accepted, on second environment traffic were drop from WAN or not occur)&lt;/P&gt;&lt;P&gt;Second: To use this object, we need to use LDAP Group, where important is to use good LDAP Filter&lt;/P&gt;&lt;P&gt;Thank you for help, for me this post/issue is solved&lt;/P&gt;</description>
      <pubDate>Tue, 28 Mar 2023 06:56:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Integration-FreeIPA-and-Checkpoint-Security-Gateway/m-p/176392#M32293</guid>
      <dc:creator>jakmic</dc:creator>
      <dc:date>2023-03-28T06:56:27Z</dc:date>
    </item>
  </channel>
</rss>

