<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Global Domain Install database in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/216459#M83400</link>
    <description>&lt;P&gt;Discussion here is about using Global Domain within CP Multi Domain Management environment.&amp;nbsp; Seems like you are mixing it up with AD AU?&lt;/P&gt;
&lt;P&gt;If you are using MDM to manage large single organisation, than ability to use Global Domain would remove the need to connect every single management domain (aka CMA) to AD separately.&lt;/P&gt;</description>
    <pubDate>Wed, 05 Jun 2024 06:22:11 GMT</pubDate>
    <dc:creator>Kaspars_Zibarts</dc:creator>
    <dc:date>2024-06-05T06:22:11Z</dc:date>
    <item>
      <title>Global Domain Install database</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/65535#M83391</link>
      <description>&lt;P&gt;I'm currently working on getting the &lt;A href="https://community.checkpoint.com/t5/General-Management-Topics/Multi-domain-Admin-user-authentication-to-AD/m-p/23420?search-action-id=8831845255&amp;amp;search-result-uid=23420" target="_self"&gt;AD authentication working on our MDS&lt;/A&gt;&amp;nbsp;and I have been able to setup the AD LDAP account unit in our Global domain.&lt;/P&gt;
&lt;P&gt;However the connection is not working the way it should, when I try to change anything in the account unit, I can Publish the changes but in the end I know it does not take any effect. There was a mentioning that the Install Database was automatic when you close the SmartConsole to the Global domain, however this also does not seem to work.&lt;/P&gt;
&lt;P&gt;Example of a change was to change the access to the AD servers from plain LDAP (389) to LDAPS (636). Using tcpdump to see what was sent to the AD server revealed in before and after traces that 389 was used all the time. Not even an attempt to use 636 instead.&lt;/P&gt;
&lt;P&gt;Anybody any Ideas?&lt;/P&gt;</description>
      <pubDate>Tue, 22 Oct 2019 08:24:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/65535#M83391</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-10-22T08:24:47Z</dc:date>
    </item>
    <item>
      <title>Re: Global Domain Install database</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/65822#M83392</link>
      <description>Going to ask a dumb question here: can you do an Install Database manually in the Global Domain?</description>
      <pubDate>Thu, 24 Oct 2019 17:05:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/65822#M83392</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-10-24T17:05:24Z</dc:date>
    </item>
    <item>
      <title>Re: Global Domain Install database</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/65855#M83393</link>
      <description>I wish I could, that would instantly solve issue, the problem also goes for globally installed SmartEvent servers, there I know it works by closing the Smartconsole.&lt;BR /&gt;However for AD configuration that just does not work.</description>
      <pubDate>Thu, 24 Oct 2019 21:31:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/65855#M83393</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-10-24T21:31:29Z</dc:date>
    </item>
    <item>
      <title>Re: Global Domain Install database</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/65860#M83394</link>
      <description>Is there just no GUI option for it?&lt;BR /&gt;What about fwm dbload on the CLI?</description>
      <pubDate>Fri, 25 Oct 2019 01:39:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/65860#M83394</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-10-25T01:39:04Z</dc:date>
    </item>
    <item>
      <title>Re: Global Domain Install database</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/65866#M83395</link>
      <description>Indeed there is no GUI option in the Global domain. Never tried the cli command, it's worth a try.</description>
      <pubDate>Fri, 25 Oct 2019 05:26:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/65866#M83395</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-10-25T05:26:07Z</dc:date>
    </item>
    <item>
      <title>Re: Global Domain Install database</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/66723#M83396</link>
      <description>&lt;LI-SPOILER&gt;All I remember is that we tried to use AD LDAP account unit created in Global domain in local domains for IA but it never worked and there was a thread somewhere here about it.. can't find it anymore&lt;/LI-SPOILER&gt;</description>
      <pubDate>Wed, 06 Nov 2019 22:16:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/66723#M83396</guid>
      <dc:creator>Kaspars_Zibarts</dc:creator>
      <dc:date>2019-11-06T22:16:12Z</dc:date>
    </item>
    <item>
      <title>Re: Global Domain Install database</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/216433#M83397</link>
      <description>&lt;P&gt;hello Zib&lt;/P&gt;
&lt;P&gt;is this limitation still valid? i'm tying to do same thing, but i got:&lt;/P&gt;
&lt;P&gt;An error was detected while trying to authenticate against the AD server. &lt;BR /&gt;It may be a problem of bad configuration or connectivity. &lt;BR /&gt;Please refer to the troubleshooting guide for more help&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;same LDAP AU configured locally, instead, it works&lt;/P&gt;</description>
      <pubDate>Tue, 04 Jun 2024 19:55:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/216433#M83397</guid>
      <dc:creator>CheckPointerXL</dc:creator>
      <dc:date>2024-06-04T19:55:20Z</dc:date>
    </item>
    <item>
      <title>Re: Global Domain Install database</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/216452#M83398</link>
      <description>&lt;P&gt;I'm afraid I have left my last employer and have no ability to confirm 100% but I doubt that you can connect from Global Domain. You should wait till Q3 when big news are coming regarding IA.&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/8232"&gt;@Royi_Priov&lt;/a&gt;&amp;nbsp;are there any public materials available already now about those? I don't want to steal the thunder &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 05 Jun 2024 05:22:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/216452#M83398</guid>
      <dc:creator>Kaspars_Zibarts</dc:creator>
      <dc:date>2024-06-05T05:22:16Z</dc:date>
    </item>
    <item>
      <title>Re: Global Domain Install database</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/216453#M83399</link>
      <description>&lt;P&gt;thanks or your reply!&lt;/P&gt;
&lt;P&gt;my question of course is, what is useful global LDAP AU for? it seems they cannot work properly..&lt;/P&gt;
&lt;P&gt;anyway, from logs, i can see that FW queries by LDAP the AD inside the Global LDAP AU, but no answer....&lt;/P&gt;</description>
      <pubDate>Wed, 05 Jun 2024 05:29:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/216453#M83399</guid>
      <dc:creator>CheckPointerXL</dc:creator>
      <dc:date>2024-06-05T05:29:10Z</dc:date>
    </item>
    <item>
      <title>Re: Global Domain Install database</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/216459#M83400</link>
      <description>&lt;P&gt;Discussion here is about using Global Domain within CP Multi Domain Management environment.&amp;nbsp; Seems like you are mixing it up with AD AU?&lt;/P&gt;
&lt;P&gt;If you are using MDM to manage large single organisation, than ability to use Global Domain would remove the need to connect every single management domain (aka CMA) to AD separately.&lt;/P&gt;</description>
      <pubDate>Wed, 05 Jun 2024 06:22:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/216459#M83400</guid>
      <dc:creator>Kaspars_Zibarts</dc:creator>
      <dc:date>2024-06-05T06:22:11Z</dc:date>
    </item>
    <item>
      <title>Re: Global Domain Install database</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/216491#M83401</link>
      <description>&lt;P&gt;ok sorry for the wrong thread&lt;/P&gt;
&lt;P&gt;anyway the goal here is to use Global LDAP AU from FW to perform the ldap queries to AD, and this is what is not working here&lt;/P&gt;
&lt;P&gt;TAC Case just opened&lt;/P&gt;
&lt;P&gt;ty&amp;nbsp;&lt;/P&gt;
&lt;DIV id="gtx-trans" style="position: absolute; left: 124px; top: 28px;"&gt;
&lt;DIV class="gtx-trans-icon"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Wed, 05 Jun 2024 13:35:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Global-Domain-Install-database/m-p/216491#M83401</guid>
      <dc:creator>CheckPointerXL</dc:creator>
      <dc:date>2024-06-05T13:35:35Z</dc:date>
    </item>
  </channel>
</rss>

