<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Identity Collector Single User assumption in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/192576#M35591</link>
    <description>&lt;P&gt;Multiple users are supported on Windows 10 by deploying MUHv2 to the relevant machines:&lt;BR /&gt;See:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk177024" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk177024&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;Without deploying an agent, I believe this is still an RFE that should be addressed with your local Check Point office.&lt;/P&gt;</description>
    <pubDate>Wed, 13 Sep 2023 16:44:11 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2023-09-13T16:44:11Z</dc:date>
    <item>
      <title>Identity Collector Single User assumption</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/34700#M22778</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Does Identity Collector have the ability to assume that only one user is connected per computer, as AD Query does?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I like that identity collector can ignore RDP events from the initiating computer, but I'm unsure if it has the ability to do single user assumption, or if this&amp;nbsp;is assumed by default. We have many shared computers where we want the current logged in user to be the assumed single user.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 11 Oct 2018 14:04:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/34700#M22778</guid>
      <dc:creator>NorthernNetGuy</dc:creator>
      <dc:date>2018-10-11T14:04:55Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Collector Single User assumption</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/34701#M22779</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It's partially true. Only single user is supported per IP address but the latest security event will determine user-IP association. For example, user A currently associated with IP x.x.x.x. Then this user runs an application as another user B on the same machine. That will trigger security event that will be passed onto IDC and as a result now IP x.x.x.x will be associated with user B.&lt;/P&gt;&lt;P&gt;At least that's how it works for us and is causing headaches as we have typically two user IDs on aa machine. I know that version that supports two user IDs per IP is coming out but it doesn't sound that will help you.&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.checkpoint.com/migrated-users/46230"&gt;Royi Priov&lt;/A&gt;‌ might have better comments&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 11 Oct 2018 16:40:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/34701#M22779</guid>
      <dc:creator>Kaspars_Zibarts</dc:creator>
      <dc:date>2018-10-11T16:40:33Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Collector Single User assumption</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/34702#M22780</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you saying that the Identity Collector does single user assumption? In example, the most recent user login event for an IP is the one that is associated with the IP, and previous user associations are revoked.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is the only case I need from Identity Collector, as I can make exemptions for any machines that have simultaneous remote sessions (for us would only be a few servers, all other computers only allow one user signed in at a time).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 11 Oct 2018 18:46:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/34702#M22780</guid>
      <dc:creator>NorthernNetGuy</dc:creator>
      <dc:date>2018-10-11T18:46:49Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Collector Single User assumption</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/34703#M22781</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That's correct sir!&amp;nbsp;&amp;nbsp;&amp;nbsp; I was about to suggest exclusion list but left it out. Great to hear of it works for you&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 12 Oct 2018 05:16:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/34703#M22781</guid>
      <dc:creator>Kaspars_Zibarts</dc:creator>
      <dc:date>2018-10-12T05:16:13Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Collector Single User assumption</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/34704#M22782</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A href="https://community.checkpoint.com/migrated-users/47831"&gt;Kaspars Zibarts&lt;/A&gt;‌ - thanks for tagging me.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hi David,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PDP saves only one user and machine per IP.&lt;/P&gt;&lt;P&gt;It means, that &lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;"Assume that only one user is connected per computer" option (which is configurable in AD Query) is always enabled in Identity Collector.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;I saw you have mentioned this is the desired behavior for you. If there is someone needs this to be changed (to be configurable), you are welcome to open RFE with your local office and discuss it with me.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;Thanks,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;Royi Priov - Identity Awareness R&amp;amp;D.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 14 Oct 2018 06:32:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/34704#M22782</guid>
      <dc:creator>Royi_Priov</dc:creator>
      <dc:date>2018-10-14T06:32:21Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Collector Single User assumption</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/99796#M22783</link>
      <description>&lt;P&gt;&amp;gt;At least that's how it works for us and is causing headaches as we have typically two user IDs on aa machine. I know that version that supports two user IDs per IP is coming out but it doesn't sound that will help you.&lt;/P&gt;&lt;P&gt;Did they add this? I've been searching for information today and all I was able to find was your old message.&lt;/P&gt;</description>
      <pubDate>Thu, 22 Oct 2020 08:52:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/99796#M22783</guid>
      <dc:creator>SerB</dc:creator>
      <dc:date>2020-10-22T08:52:01Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Collector Single User assumption</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/116394#M22784</link>
      <description>&lt;P&gt;Hi Royi Priov,&lt;/P&gt;&lt;P&gt;Sorry to get back on this old topic, but I need some clarifications on "Single User Assumption" on Identity Collector.&lt;/P&gt;&lt;P&gt;We were using AD query as Identity Awareness source with option "Assume that only one user is connected per computer" disabled,&lt;BR /&gt;we are currently on version R80.40.&lt;/P&gt;&lt;P&gt;Recently we decided to migrate to Identity Collector instead. It works well but we noted that now there is only one identity per IP identified by Indentity awareness, we checked Gateway and Identity collector Settings, it seems with this method there is not the prossibility to have multiple identities for on IP.&lt;/P&gt;&lt;P&gt;Do you confirm Identity Collector only works like that ?&lt;/P&gt;&lt;P&gt;Is there a hided setting to allow Multiple ID's per IP with Identity Collector ??&lt;/P&gt;&lt;P&gt;Best Regards.&lt;/P&gt;&lt;P&gt;Paulo&lt;/P&gt;</description>
      <pubDate>Tue, 20 Apr 2021 10:00:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/116394#M22784</guid>
      <dc:creator>THHQ_IT_Ops</dc:creator>
      <dc:date>2021-04-20T10:00:17Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Collector Single User assumption</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/192528#M35589</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We're in the same situation as &lt;A class="" href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/62206" target="_self"&gt;&lt;SPAN class=""&gt;THHQ_IT_Ops&lt;/SPAN&gt;&lt;/A&gt;, is there a possibility to allow more than one identity per IP when using identity collector? or should I survive with that issue?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;</description>
      <pubDate>Wed, 13 Sep 2023 12:43:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/192528#M35589</guid>
      <dc:creator>Luis_Esteban</dc:creator>
      <dc:date>2023-09-13T12:43:06Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Collector Single User assumption</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/192576#M35591</link>
      <description>&lt;P&gt;Multiple users are supported on Windows 10 by deploying MUHv2 to the relevant machines:&lt;BR /&gt;See:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk177024" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk177024&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;Without deploying an agent, I believe this is still an RFE that should be addressed with your local Check Point office.&lt;/P&gt;</description>
      <pubDate>Wed, 13 Sep 2023 16:44:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/192576#M35591</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-09-13T16:44:11Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Collector Single User assumption</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/195045#M36297</link>
      <description>&lt;P&gt;I found the solution here&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk105889" target="_blank"&gt;Identity Awareness Gateway does not recognize multiple user identities from the same IP address (checkpoint.com)&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 13 Oct 2023 11:24:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Collector-Single-User-assumption/m-p/195045#M36297</guid>
      <dc:creator>Luis_Esteban</dc:creator>
      <dc:date>2023-10-13T11:24:13Z</dc:date>
    </item>
  </channel>
</rss>

