<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How does Identity awareness match user groups in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/How-does-Identity-awareness-match-user-groups/m-p/86206#M17301</link>
    <description>&lt;P&gt;Our observations are the opposite way around.&lt;/P&gt;&lt;P&gt;If I define an access role with specific user groups and I put User Group A, B and C in there, then a user MUST be member of all 3 groups in order for the rule to match.&lt;/P&gt;&lt;P&gt;If I define an access role with just one user group A, then the user needs to be just member of group A in order for the rule to match.&lt;/P&gt;</description>
    <pubDate>Mon, 25 May 2020 09:59:39 GMT</pubDate>
    <dc:creator>peter_schumache</dc:creator>
    <dc:date>2020-05-25T09:59:39Z</dc:date>
    <item>
      <title>How does Identity awareness match user groups</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-does-Identity-awareness-match-user-groups/m-p/86038#M17258</link>
      <description>&lt;P&gt;When I define a&amp;nbsp; Identity Awareness access role with users --&amp;gt; specific users/groups and I define several AD groups there, how is the decision for the access rule been made. Must a specific user be member of just ONE of these groups or ALL of these groups?&lt;/P&gt;</description>
      <pubDate>Fri, 22 May 2020 06:42:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-does-Identity-awareness-match-user-groups/m-p/86038#M17258</guid>
      <dc:creator>peter_schumache</dc:creator>
      <dc:date>2020-05-22T06:42:57Z</dc:date>
    </item>
    <item>
      <title>Re: How does Identity awareness match user groups</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-does-Identity-awareness-match-user-groups/m-p/86068#M17270</link>
      <description>&lt;P&gt;Just one group/user will cause a match on the "Users" tab of the Access Role, but the other two tabs (Network, Machines) must match as well.&amp;nbsp; So within the context of a specific Access Role tab (Network, Users, Machines) it is an OR, but it is an AND between all three tabs of the Access Role to be considered a match.&lt;/P&gt;</description>
      <pubDate>Fri, 22 May 2020 12:50:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-does-Identity-awareness-match-user-groups/m-p/86068#M17270</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2020-05-22T12:50:39Z</dc:date>
    </item>
    <item>
      <title>Re: How does Identity awareness match user groups</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-does-Identity-awareness-match-user-groups/m-p/86206#M17301</link>
      <description>&lt;P&gt;Our observations are the opposite way around.&lt;/P&gt;&lt;P&gt;If I define an access role with specific user groups and I put User Group A, B and C in there, then a user MUST be member of all 3 groups in order for the rule to match.&lt;/P&gt;&lt;P&gt;If I define an access role with just one user group A, then the user needs to be just member of group A in order for the rule to match.&lt;/P&gt;</description>
      <pubDate>Mon, 25 May 2020 09:59:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-does-Identity-awareness-match-user-groups/m-p/86206#M17301</guid>
      <dc:creator>peter_schumache</dc:creator>
      <dc:date>2020-05-25T09:59:39Z</dc:date>
    </item>
  </channel>
</rss>

