<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Identity Awareness issue in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-issue/m-p/48853#M87101</link>
    <description>&lt;P&gt;Hi Stuart,&lt;/P&gt;
&lt;P&gt;The entity which reports the identity to SmartLog is the PEP, while the MUH agent is connecting to the PDP.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please verify where the issue falls with these commands:&lt;/P&gt;
&lt;P&gt;# pdp m ip &amp;lt;MUH IP&amp;gt;&lt;/P&gt;
&lt;P&gt;# pep sh u q cid &amp;lt;MUH IP&amp;gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;do you see the relevant user(s) on both sides?&lt;/P&gt;
&lt;P&gt;I believe it won't be on the PEP.&lt;/P&gt;
&lt;P&gt;In case it's shown on PDP side - it might be identity sharing problem.&lt;/P&gt;
&lt;P&gt;Otherwise - need to focus on MUH&amp;lt;-&amp;gt;PDP communication.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Anyhow, as written here, it sounds like an issue to be raised with TAC.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Royi.&lt;/P&gt;</description>
    <pubDate>Wed, 27 Mar 2019 14:45:34 GMT</pubDate>
    <dc:creator>Royi_Priov</dc:creator>
    <dc:date>2019-03-27T14:45:34Z</dc:date>
    <item>
      <title>Identity Awareness issue</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-issue/m-p/48094#M87099</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Strange issue on a customer site with R80.20 cluster (latest JHF) and the logging of User Identities from a Citrix MUH Host. &amp;nbsp;Current version on the Citrix Hosts is R80.102.0000.&lt;/P&gt;&lt;P&gt;The MUH Agent is showing as being connected and users are shown in the window but nothing shows in SmartLog for user identity.&lt;/P&gt;&lt;P&gt;Failing the cluster over to the standby member brings the identities back and then failing back to the primary sees identities consistently being tagged in SmartLog.&lt;/P&gt;&lt;P&gt;Is there a new version of the MUH Agent for R80.20? &amp;nbsp;Is the MUH Agent at fault or is this a firewall process causing the issue?&lt;/P&gt;</description>
      <pubDate>Thu, 21 Mar 2019 12:17:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-issue/m-p/48094#M87099</guid>
      <dc:creator>Stuart_Green</dc:creator>
      <dc:date>2019-03-21T12:17:00Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness issue</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-issue/m-p/48201#M87100</link>
      <description>If you’re on the latest jumbo, sounds like it’s worth a TAC case.</description>
      <pubDate>Fri, 22 Mar 2019 04:38:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-issue/m-p/48201#M87100</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-03-22T04:38:49Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness issue</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-issue/m-p/48853#M87101</link>
      <description>&lt;P&gt;Hi Stuart,&lt;/P&gt;
&lt;P&gt;The entity which reports the identity to SmartLog is the PEP, while the MUH agent is connecting to the PDP.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please verify where the issue falls with these commands:&lt;/P&gt;
&lt;P&gt;# pdp m ip &amp;lt;MUH IP&amp;gt;&lt;/P&gt;
&lt;P&gt;# pep sh u q cid &amp;lt;MUH IP&amp;gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;do you see the relevant user(s) on both sides?&lt;/P&gt;
&lt;P&gt;I believe it won't be on the PEP.&lt;/P&gt;
&lt;P&gt;In case it's shown on PDP side - it might be identity sharing problem.&lt;/P&gt;
&lt;P&gt;Otherwise - need to focus on MUH&amp;lt;-&amp;gt;PDP communication.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Anyhow, as written here, it sounds like an issue to be raised with TAC.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Royi.&lt;/P&gt;</description>
      <pubDate>Wed, 27 Mar 2019 14:45:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-issue/m-p/48853#M87101</guid>
      <dc:creator>Royi_Priov</dc:creator>
      <dc:date>2019-03-27T14:45:34Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness issue</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-issue/m-p/51644#M87102</link>
      <description>&lt;P&gt;Hi Royi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We had some major issues with Identity Awareness when we upgraded a customers cluster to R80.20 (there are other clusters with R80.10 etc all working 100%) .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We were advised by TAC to upgrade to the Jumbo Hotfix Take 73 (I see it is now superceded by JHF 74) and this fixed our issues.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope this helps if your issue persists..&lt;/P&gt;</description>
      <pubDate>Wed, 24 Apr 2019 08:58:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-Awareness-issue/m-p/51644#M87102</guid>
      <dc:creator>Darren_Fine</dc:creator>
      <dc:date>2019-04-24T08:58:44Z</dc:date>
    </item>
  </channel>
</rss>

