<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Identity awareness deployment for Non-AD Member in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Identity-awareness-deployment-for-Non-AD-Member/m-p/129746#M23637</link>
    <description>&lt;P&gt;Here's the scenario - the customer management would like to restrict the corporate users on using non-domain laptops when connecting to the corporate network. Only domain managed devices can be allowed, non-domain laptop should be restricted even the corporate user entered the correct corporate domain credentials to the captive portal, their access should be denied because the device is unmanaged by the AD.&lt;/P&gt;&lt;P&gt;Can we implement this kind of use case? are there any option on Identity Awareness that can we install like an agent and check the user endpoint if part of AD or not?&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 20 Sep 2021 07:39:58 GMT</pubDate>
    <dc:creator>snowball14</dc:creator>
    <dc:date>2021-09-20T07:39:58Z</dc:date>
    <item>
      <title>Identity awareness deployment for Non-AD Member</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-awareness-deployment-for-Non-AD-Member/m-p/129746#M23637</link>
      <description>&lt;P&gt;Here's the scenario - the customer management would like to restrict the corporate users on using non-domain laptops when connecting to the corporate network. Only domain managed devices can be allowed, non-domain laptop should be restricted even the corporate user entered the correct corporate domain credentials to the captive portal, their access should be denied because the device is unmanaged by the AD.&lt;/P&gt;&lt;P&gt;Can we implement this kind of use case? are there any option on Identity Awareness that can we install like an agent and check the user endpoint if part of AD or not?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 20 Sep 2021 07:39:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-awareness-deployment-for-Non-AD-Member/m-p/129746#M23637</guid>
      <dc:creator>snowball14</dc:creator>
      <dc:date>2021-09-20T07:39:58Z</dc:date>
    </item>
    <item>
      <title>Re: Identity awareness deployment for Non-AD Member</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-awareness-deployment-for-Non-AD-Member/m-p/129753#M23639</link>
      <description>&lt;P&gt;Yes, e.g. by SSO:&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/R80.30/WebAdminGuides/EN/CP_R80.30_IdentityAwareness_AdminGuide/62838.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R80.30/WebAdminGuides/EN/CP_R80.30_IdentityAwareness_AdminGuide/62838.htm&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 20 Sep 2021 08:13:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-awareness-deployment-for-Non-AD-Member/m-p/129753#M23639</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-09-20T08:13:41Z</dc:date>
    </item>
    <item>
      <title>Re: Identity awareness deployment for Non-AD Member</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-awareness-deployment-for-Non-AD-Member/m-p/129801#M23645</link>
      <description>&lt;P&gt;Access Roles can include machine identity, which will only exist for machines in AD.&lt;BR /&gt;This should allow you to create more restrictive rules for users on machines not on AD.&lt;/P&gt;</description>
      <pubDate>Mon, 20 Sep 2021 16:00:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-awareness-deployment-for-Non-AD-Member/m-p/129801#M23645</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-09-20T16:00:54Z</dc:date>
    </item>
  </channel>
</rss>

