<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Indentity awareness for users with credentials in Firewall &amp; Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Indentity-awareness-for-users-with-credentials/m-p/27902#M98103</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Eric,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There will not be any impact but make sure that specific rules&amp;nbsp;should be on top.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 07 Feb 2018 17:51:43 GMT</pubDate>
    <dc:creator>Gaurav_Pandya</dc:creator>
    <dc:date>2018-02-07T17:51:43Z</dc:date>
    <item>
      <title>Indentity awareness for users with credentials</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Indentity-awareness-for-users-with-credentials/m-p/27901#M98102</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;In our retail stores we have users that need access to specific sites that we allow with a source of any. On that blade we have not enabled identity awareness. We have some users that need access to sites used by an HR group we have. To allow just that group on the one rule I have to enable identity awareness. Will that affect the other rules that have any as he source. These rules are on the application layer of the policy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Eric Speake&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Feb 2018 17:28:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Indentity-awareness-for-users-with-credentials/m-p/27901#M98102</guid>
      <dc:creator>Eric_Speake</dc:creator>
      <dc:date>2018-02-07T17:28:12Z</dc:date>
    </item>
    <item>
      <title>Re: Indentity awareness for users with credentials</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Indentity-awareness-for-users-with-credentials/m-p/27902#M98103</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Eric,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There will not be any impact but make sure that specific rules&amp;nbsp;should be on top.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Feb 2018 17:51:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Indentity-awareness-for-users-with-credentials/m-p/27902#M98103</guid>
      <dc:creator>Gaurav_Pandya</dc:creator>
      <dc:date>2018-02-07T17:51:43Z</dc:date>
    </item>
    <item>
      <title>Re: Indentity awareness for users with credentials</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Indentity-awareness-for-users-with-credentials/m-p/27903#M98104</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Whebn using ia with rules think about the access roles as any other object you can put on the source of the rule.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As long as you wont block any one they wont be blocked.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The access role is onlty there to translate user identity data from multiple source into "ip" addresses.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Remember that the fw is still a fw so when a packet goes by it does not know it it's user x or user y .. It relies on logs it collects from domain controller for example to understand that user x logs into a machine that has the ip 1.1.1.1 and when it tries to match a packet with ip that has a user mapped to it he will check the access roles also&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Feb 2018 21:31:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Indentity-awareness-for-users-with-credentials/m-p/27903#M98104</guid>
      <dc:creator>Dor_Marcovitch</dc:creator>
      <dc:date>2018-02-07T21:31:31Z</dc:date>
    </item>
  </channel>
</rss>

