<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: AD Quary to Identity collector in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254071#M49790</link>
    <description>&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/Identity_Awareness_Clients_Admin_Guide/Content/Topics-IA-Clients-AG/Identity-Collector-Requirements.htm?tocpath=Identity%20Collector%7C_____1" target="_blank"&gt;https://sc1.checkpoint.com/documents/Identity_Awareness_Clients_Admin_Guide/Content/Topics-IA-Clients-AG/Identity-Collector-Requirements.htm?tocpath=Identity%20Collector%7C_____1&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 28 Jul 2025 09:34:44 GMT</pubDate>
    <dc:creator>G_W_Albrecht</dc:creator>
    <dc:date>2025-07-28T09:34:44Z</dc:date>
    <item>
      <title>AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254067#M49789</link>
      <description>&lt;P&gt;Hi Team,&lt;/P&gt;&lt;P&gt;We are using 9100 with ClusterXL Activity and standby configuration. R81.20 with JHF 99, along with Mobile access vpn with SNX. we are facing issue with user-based policy.&lt;/P&gt;&lt;P&gt;raised the TAC ticket they suggested to go with Identity collector.&lt;/P&gt;&lt;P&gt;I required help to configure the Identity collector on my gateway on running setup.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1) Checkpoint model-9100 -R81.20, JHF 99&lt;/P&gt;&lt;P&gt;2) Management box -1smart 600 with R81.20 , JHF 99.&lt;/P&gt;&lt;P&gt;3) VPN- Mobile access vpn with SNX&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 28 Jul 2025 08:07:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254067#M49789</guid>
      <dc:creator>VIKAS1</dc:creator>
      <dc:date>2025-07-28T08:07:02Z</dc:date>
    </item>
    <item>
      <title>Re: AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254071#M49790</link>
      <description>&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/Identity_Awareness_Clients_Admin_Guide/Content/Topics-IA-Clients-AG/Identity-Collector-Requirements.htm?tocpath=Identity%20Collector%7C_____1" target="_blank"&gt;https://sc1.checkpoint.com/documents/Identity_Awareness_Clients_Admin_Guide/Content/Topics-IA-Clients-AG/Identity-Collector-Requirements.htm?tocpath=Identity%20Collector%7C_____1&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 28 Jul 2025 09:34:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254071#M49790</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-07-28T09:34:44Z</dc:date>
    </item>
    <item>
      <title>Re: AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254137#M49805</link>
      <description>&lt;P&gt;Maybe start with the how to guide and try to follow it. If you get stuck ask for help here.&lt;/P&gt;
&lt;P&gt;I can post the whole process but it is documented already.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 28 Jul 2025 19:34:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254137#M49805</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2025-07-28T19:34:56Z</dc:date>
    </item>
    <item>
      <title>Re: AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254157#M49809</link>
      <description>&lt;P&gt;thnks, i have flow the admin guide and configure the identity collector&amp;nbsp;&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;but when i run the pdc idc status below logs&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;[Expert@EMB-SJRM2-FW02:0]# pdp idc status&lt;BR /&gt;Identity Collector IP: 10.000.00.11---ip edited&lt;BR /&gt;Identity Collector status: Connected&lt;/P&gt;&lt;P&gt;Identity Sources:&lt;BR /&gt;No information about identity sources&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Jul 2025 05:26:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254157#M49809</guid>
      <dc:creator>VIKAS1</dc:creator>
      <dc:date>2025-07-29T05:26:37Z</dc:date>
    </item>
    <item>
      <title>Re: AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254184#M49812</link>
      <description>&lt;P&gt;This is a normal message that shows on all my setups with working IDC. Are there any specific issues?&lt;/P&gt;</description>
      <pubDate>Tue, 29 Jul 2025 11:47:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254184#M49812</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2025-07-29T11:47:29Z</dc:date>
    </item>
    <item>
      <title>Re: AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254188#M49813</link>
      <description>&lt;P&gt;Some time we are not getting logs for the users, also when i run the same cli command on another standby gateway then below output i will get. ..both gateway are on active and standby.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;[Expert@EMB-SJRM2-FW01:0]# pdp idc status&lt;BR /&gt;No connected Identity Collectors&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;is there any thing to be change on setting where we can reduce the sync&amp;nbsp;&lt;/P&gt;&lt;P&gt;attached some snap fyi...&lt;/P&gt;</description>
      <pubDate>Tue, 29 Jul 2025 12:28:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254188#M49813</guid>
      <dc:creator>VIKAS1</dc:creator>
      <dc:date>2025-07-29T12:28:44Z</dc:date>
    </item>
    <item>
      <title>Re: AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254205#M49816</link>
      <description>&lt;P&gt;screenshots look good. What version IDC you use? With reduce sync, do you mean if you change something in AD, for example add user to AD group, it takes long for the firewall to be aware of this change?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What version you run on GW? cpinfo -y all&lt;/P&gt;</description>
      <pubDate>Tue, 29 Jul 2025 14:05:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254205#M49816</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2025-07-29T14:05:56Z</dc:date>
    </item>
    <item>
      <title>Re: AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254238#M49819</link>
      <description>&lt;P&gt;Thanks for update, &lt;STRONG&gt;IDC version 82.126.0000,&amp;nbsp;&lt;/STRONG&gt; if you see the output below , i have highlighted on bold it's said that NEXT Ldap fath time almost more then 3hrs.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;[Expert@EMB-SJRM2-FW02:0]# pdp m user emb-kagir&lt;/P&gt;&lt;P&gt;Session:&amp;nbsp; 33a4fc74&lt;/P&gt;&lt;P&gt;Session UUID:&amp;nbsp; {9A499F46-1573-FA66-F1DC-8C7464657172}&lt;/P&gt;&lt;P&gt;Ip:&amp;nbsp; 10.199.10.116&lt;/P&gt;&lt;P&gt;Users: emb-kagir@bitel.local {1c791521}&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; LogUsername: &amp;nbsp;Kumar Giri (emb-kagir)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; Groups: All Users;LDAP;LDAP_SSL_VPN;ad_user_Kumar_Giri&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; Roles: All_Users;DMC_Teamviewer_Access;DeveloperSite_AccessGroup;Google_Drive_Access_Group;ID-Awareness;IT_Team;IT_VPN_testing;Youtube_Access_Group&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; Client Type: Identity Collector (Active Directory)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; Authentication Method: Trust&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; Distinguished Name: CN=Kumar Giri,OU=ActiveUsers,OU=bitel-Users,DC=bitel,DC=local&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; Connect Time: Tue Jul 29 12:51:55 2025&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&lt;FONT color="#FF0000"&gt; &lt;STRONG&gt;Next Reauthentication: Wed Jul 30 02:24:01 2025&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;&amp;nbsp;&amp;nbsp; Next Connectivity Check: -&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;&amp;nbsp;&amp;nbsp; Next Ldap Fetch: Tue Jul 29 15:26:14 2025&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Packet Tagging Status:&amp;nbsp; Not Active&lt;/P&gt;&lt;P&gt;Published Gateways:&amp;nbsp; Local&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;[Expert@EMB-SJRM2-FW02:0]# cpinfo -y all&lt;/P&gt;&lt;P&gt;This is Check Point CPinfo Build 914000250 for GAIA&lt;BR /&gt;[MGMT]&lt;BR /&gt;HOTFIX_R81_20_JUMBO_HF_MAIN Take: 99&lt;BR /&gt;[IDA]&lt;BR /&gt;No hotfixes..&lt;BR /&gt;[CPFC]&lt;BR /&gt;HOTFIX_TEX_ENGINE_R8120_AUTOUPDATE&lt;BR /&gt;[FW1]&lt;BR /&gt;HOTFIX_TEX_ENGINE_R8120_AUTOUPDATE&lt;BR /&gt;HOTFIX_INEXT_NANO_EGG_AUTOUPDATE&lt;BR /&gt;HOTFIX_R80_40_MAAS_TUNNEL_AUTOUPDATE&lt;BR /&gt;HOTFIX_R81_20_JUMBO_HF_MAIN Take: 99&lt;BR /&gt;HOTFIX_PUBLIC_CLOUD_CA_BUNDLE_AUTOUPDATE&lt;BR /&gt;HOTFIX_GOT_TPCONF_AUTOUPDATE&lt;/P&gt;&lt;P&gt;FW1 build number:&lt;BR /&gt;This is Check Point's software version R81.20 - Build 046&lt;BR /&gt;kernel: R81.20 - Build 053&lt;BR /&gt;[SecurePlatform]&lt;BR /&gt;HOTFIX_R81_20_JUMBO_HF_MAIN Take: 99&lt;BR /&gt;HOTFIX_GAIA_API_AUTOUPDATE&lt;BR /&gt;HOTFIX_ENDER_V17_AUTOUPDATE&lt;BR /&gt;[CPinfo]&lt;BR /&gt;No hotfixes..&lt;BR /&gt;[PPACK]&lt;BR /&gt;HOTFIX_R81_20_JUMBO_HF_MAIN Take: 99&lt;BR /&gt;[AutoUpdater]&lt;BR /&gt;HOTFIX_INFRA_CONFIG_AUTOUPDATE&lt;BR /&gt;[DIAG]&lt;BR /&gt;No hotfixes..&lt;BR /&gt;[CVPN]&lt;BR /&gt;HOTFIX_ESOD_SWS_AUTOUPDATE&lt;BR /&gt;HOTFIX_ESOD_SCANNER_AUTOUPDATE&lt;BR /&gt;HOTFIX_ESOD_CSHELL_AUTOUPDATE&lt;BR /&gt;HOTFIX_R81_20_JUMBO_HF_MAIN Take: 99&lt;BR /&gt;[core_uploader]&lt;BR /&gt;HOTFIX_CHARON_HF&lt;BR /&gt;[CPUpdates]&lt;BR /&gt;BUNDLE_TEX_ENGINE_R8120_AUTOUPDATE Take: 15&lt;BR /&gt;BUNDLE_GAIA_API_AUTOUPDATE Take: 7&lt;BR /&gt;BUNDLE_ESOD_SWS_AUTOUPDATE Take: 14&lt;BR /&gt;BUNDLE_ESOD_SCANNER_AUTOUPDATE Take: 10&lt;BR /&gt;BUNDLE_INEXT_NANO_EGG_AUTOUPDATE Take: 23&lt;BR /&gt;BUNDLE_GENERAL_AUTOUPDATE Take: 21&lt;BR /&gt;BUNDLE_INFRA_CONFIG_AUTOUPDATE Take: 10&lt;BR /&gt;BUNDLE_INFRA_AUTOUPDATE Take: 72&lt;BR /&gt;BUNDLE_DEP_INSTALLER_AUTOUPDATE Take: 31&lt;BR /&gt;BUNDLE_R80_40_MAAS_TUNNEL_AUTOUPDATE Take: 68&lt;BR /&gt;BUNDLE_ESOD_CSHELL_AUTOUPDATE Take: 20&lt;BR /&gt;BUNDLE_CPVIEWEXPORTER_AUTOUPDATE Take: 75&lt;BR /&gt;BUNDLE_QUID_AUTOUPDATE Take: 48&lt;BR /&gt;BUNDLE_CPOTLPAGENT_AUTOUPDATE Take: 115&lt;BR /&gt;BUNDLE_CPOTELCOL_AUTOUPDATE Take: 192&lt;BR /&gt;BUNDLE_ENDER_V17_AUTOUPDATE Take: 26&lt;BR /&gt;BUNDLE_R81_20_JUMBO_HF_MAIN Take: 99&lt;BR /&gt;BUNDLE_PUBLIC_CLOUD_CA_BUNDLE_AUTOUPDATE Take: 21&lt;BR /&gt;BUNDLE_HCP_AUTOUPDATE Take: 84&lt;BR /&gt;BUNDLE_GOT_TPCONF_AUTOUPDATE Take: 158&lt;BR /&gt;BUNDLE_CPSDC_AUTOUPDATE Take: 34&lt;BR /&gt;BUNDLE_CORE_FILE_UPLOADER_AUTOUPDATE Take: 23&lt;BR /&gt;[cpsdc_wrapper]&lt;BR /&gt;HOTFIX_CPSDC_AUTOUPDATE&lt;BR /&gt;[hcp_wrapper]&lt;BR /&gt;HOTFIX_HCP_AUTOUPDATE&lt;BR /&gt;[CPDepInst]&lt;BR /&gt;No hotfixes..&lt;BR /&gt;[CPotelcol]&lt;BR /&gt;HOTFIX_OTLP_GA&lt;BR /&gt;[CPotlpAgent]&lt;BR /&gt;HOTFIX_OTLP_GA&lt;BR /&gt;[CPquid]&lt;BR /&gt;HOTFIX_QUID_AUTOUPDATE&lt;BR /&gt;[CPviewExporter]&lt;BR /&gt;HOTFIX_OTLP_GA&lt;/P&gt;&lt;P&gt;[Expert@EMB-SJRM2-FW02:0]#&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am facing issue with ldap fetch time and also some time user logs are not getting.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 30 Jul 2025 05:05:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254238#M49819</guid>
      <dc:creator>VIKAS1</dc:creator>
      <dc:date>2025-07-30T05:05:35Z</dc:date>
    </item>
    <item>
      <title>Re: AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254283#M49829</link>
      <description>&lt;P&gt;LDAP fetch timer can be changed:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_IdentityAwareness_AdminGuide/Content/Topics-IDAG/CLI/pdp-timers.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_IdentityAwareness_AdminGuide/Content/Topics-IDAG/CLI/pdp-timers.htm&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;IDC collector software is good. FW software also, no open bugs for this blade.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 30 Jul 2025 19:14:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/254283#M49829</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2025-07-30T19:14:27Z</dc:date>
    </item>
    <item>
      <title>Re: AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/255120#M49941</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have gone through recent Americas Deep Dive: Identity Awareness Best Practices ,&amp;nbsp; &lt;STRONG&gt;Is it required to installed Agen in all user machine?&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 14 Aug 2025 06:19:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/255120#M49941</guid>
      <dc:creator>VIKAS1</dc:creator>
      <dc:date>2025-08-14T06:19:25Z</dc:date>
    </item>
    <item>
      <title>Re: AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/255121#M49942</link>
      <description>&lt;P&gt;The IDC itself no.&lt;/P&gt;
&lt;P&gt;The Identity Agent(s) still no, but it likely provides a better enforcement / outcome.&lt;/P&gt;</description>
      <pubDate>Thu, 14 Aug 2025 07:09:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/255121#M49942</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-08-14T07:09:20Z</dc:date>
    </item>
    <item>
      <title>Re: AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/255164#M49945</link>
      <description>&lt;P&gt;Laptop with one user on it no. Vdi machine with 10 it would be very helpful. Tip if there are more users on 1 ip an agent will be handy&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 14 Aug 2025 14:49:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/255164#M49945</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2025-08-14T14:49:35Z</dc:date>
    </item>
    <item>
      <title>Re: AD Quary to Identity collector</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/255172#M49946</link>
      <description>&lt;P&gt;Multi-user systems require an Identity Agent to differentiate traffic from different users on the same machine.&lt;BR /&gt;Without an identity agent installed, roaming users may not get their identity updated when they change locations (and thus IP address).&lt;/P&gt;</description>
      <pubDate>Thu, 14 Aug 2025 19:41:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/AD-Quary-to-Identity-collector/m-p/255172#M49946</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-08-14T19:41:41Z</dc:date>
    </item>
  </channel>
</rss>

