<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: LDAP groups in Remote Access VPN Rules in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14521#M2476</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Since you are still using R77.30, which you should have mentioned in your first post, you need to remove the RemoteAccess VPN group from the VPN column.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 10 Dec 2018 08:22:07 GMT</pubDate>
    <dc:creator>Danny</dc:creator>
    <dc:date>2018-12-10T08:22:07Z</dc:date>
    <item>
      <title>LDAP groups in Remote Access VPN Rules</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14518#M2473</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear Mates&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have been searching around, and so far I was not able to find an answer to the issue that I am facing.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have currently migrated our VPN solution to Check Point RA VPN, but I am having an issue when it comes to create rules for remote access users. Each group has permissions to access different machines remotely, so I have requested the creation of specific LDAP groups to be used for remote access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Unfornatunately, when a use an LDAP group in the Source field of the policy, users are not being able to authenticate. The authentication only works when I select the option "&lt;STRONG&gt;All Account Unit´s Users".&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any idea on how this issue could be overcomed? or a workaround perhaps?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 09 Dec 2018 22:57:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14518#M2473</guid>
      <dc:creator>Di_Junior</dc:creator>
      <dc:date>2018-12-09T22:57:40Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP groups in Remote Access VPN Rules</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14519#M2474</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Try using Access Roles instead of LDAP group and select the desired AD group under "Users" section of the role:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG class="image-1 jive-image" src="https://community.checkpoint.com/legacyfs/online/checkpoint/76304_pastedImage_1.png" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG class="image-2 jive-image" src="https://community.checkpoint.com/legacyfs/online/checkpoint/76305_pastedImage_2.png" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 09 Dec 2018 23:36:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14519#M2474</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2018-12-09T23:36:40Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP groups in Remote Access VPN Rules</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14520#M2475</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Vladimir,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When I try that I get the following error during policy verification:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"&lt;/P&gt;&lt;P&gt;Firewall and Address Translation Policy Verification:&lt;BR /&gt;Verifier warnings: Rule 32: Only User Groups are allowed as Source in VPN and Client Authentication Rules&lt;/P&gt;&lt;P&gt;"&lt;/P&gt;&lt;P&gt;Note: I am still using R77.30.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Dec 2018 06:30:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14520#M2475</guid>
      <dc:creator>Di_Junior</dc:creator>
      <dc:date>2018-12-10T06:30:17Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP groups in Remote Access VPN Rules</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14521#M2476</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Since you are still using R77.30, which you should have mentioned in your first post, you need to remove the RemoteAccess VPN group from the VPN column.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Dec 2018 08:22:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14521#M2476</guid>
      <dc:creator>Danny</dc:creator>
      <dc:date>2018-12-10T08:22:07Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP groups in Remote Access VPN Rules</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14522#M2477</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI Danny&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your contribution, and sorry about not mentioning that I am using R77.30 later.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would like to know why you suggested ti remove the RemoteAccess VPN group from the VPN Column since I want the users to connect using the Remote Access Community.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks once again&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Dec 2018 09:33:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14522#M2477</guid>
      <dc:creator>Di_Junior</dc:creator>
      <dc:date>2018-12-10T09:33:10Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP groups in Remote Access VPN Rules</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14523#M2478</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Have a look into&amp;nbsp;&lt;A class="" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk64400&amp;amp;partition=General&amp;amp;product=Security"&gt;sk64400: Policy Verification Error: "Only User Groups are allowed as Source in &lt;STRONG&gt;VPN&lt;/STRONG&gt; and Client Authentication Rules"&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Dec 2018 15:42:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/14523#M2478</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2018-12-10T15:42:44Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP groups in Remote Access VPN Rules</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/58519#M11795</link>
      <description>&lt;P&gt;Hi there!&lt;/P&gt;&lt;P&gt;I have the same issue.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I´ve added a access role with a AD user in a firewall rule with "any traffic" in "VPN", but I can´t connect using "Endpoint Security".&lt;BR /&gt;&lt;BR /&gt;In Smartlog I receive the message from blade Mobile Access,&amp;nbsp; "User does not belong to the Remote Access Community,"&lt;/P&gt;&lt;P&gt;System version R77.30&lt;/P&gt;&lt;P&gt;Endpoint Security E80.80.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jul 2019 20:32:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/58519#M11795</guid>
      <dc:creator>Rick_Rodrix</dc:creator>
      <dc:date>2019-07-18T20:32:49Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP groups in Remote Access VPN Rules</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/78484#M15977</link>
      <description>&lt;P&gt;Valdimir, Is this example for R80.30 ? I am on R80.10 and do not see the "+" option, only the manual input&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 16 Mar 2020 19:45:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/78484#M15977</guid>
      <dc:creator>Andy_Van_Horn</dc:creator>
      <dc:date>2020-03-16T19:45:00Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP groups in Remote Access VPN Rules</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/78499#M15983</link>
      <description>Looks like it's there in the R80.10 UI for me when I go to look.&lt;BR /&gt;A screenshot of what exactly you're seeing might help.</description>
      <pubDate>Tue, 17 Mar 2020 01:02:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-groups-in-Remote-Access-VPN-Rules/m-p/78499#M15983</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-03-17T01:02:45Z</dc:date>
    </item>
  </channel>
</rss>

