<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Tacacs server authentication issue in checkpoint smartconsole in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Tacacs-server-authentication-issue-in-checkpoint-smartconsole/m-p/14732#M2515</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have a tacacs server in one of my client to for the user authentication. I have done all the configuration in tacacs and it is working perfectly in other vendor product and checkpoint WEBGUI and CLI login. But in the case of smartconsole it is not authenticated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have followed this procedure for the smartconsole user authentication:&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://indeni.com/check-point-firewalls-how-to-setup-authentication-for-administrators-both-in-webuissh-and-smartdashboard-for-check-point-gaia/" title="https://indeni.com/check-point-firewalls-how-to-setup-authentication-for-administrators-both-in-webuissh-and-smartdashboard-for-check-point-gaia/"&gt;How to Setup Authentication for Admins – WebUI / SSH/ SmartDashboard – Check Point GAIA | Indeni&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, could i use same user that I have created for smartconsole login using tacacs server to the vpn user authentication by adding that user to the vpn access&amp;nbsp; user group?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is the log message&amp;nbsp; that I get in tacacs server while smartconsole authentication is failure:&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Apr 12 16:35:16 localhost tac_plus[6508]: connect from 10.10.10.250 [10.10.10.250]&lt;BR /&gt;Apr 12 16:35:16 localhost tac_plus[6508]: Error 10.10.10.250 : Invalid AUTHEN/START packet (check keys)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 12 Apr 2018 17:53:16 GMT</pubDate>
    <dc:creator>Manoj_Tiwari</dc:creator>
    <dc:date>2018-04-12T17:53:16Z</dc:date>
    <item>
      <title>Tacacs server authentication issue in checkpoint smartconsole</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Tacacs-server-authentication-issue-in-checkpoint-smartconsole/m-p/14732#M2515</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have a tacacs server in one of my client to for the user authentication. I have done all the configuration in tacacs and it is working perfectly in other vendor product and checkpoint WEBGUI and CLI login. But in the case of smartconsole it is not authenticated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have followed this procedure for the smartconsole user authentication:&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://indeni.com/check-point-firewalls-how-to-setup-authentication-for-administrators-both-in-webuissh-and-smartdashboard-for-check-point-gaia/" title="https://indeni.com/check-point-firewalls-how-to-setup-authentication-for-administrators-both-in-webuissh-and-smartdashboard-for-check-point-gaia/"&gt;How to Setup Authentication for Admins – WebUI / SSH/ SmartDashboard – Check Point GAIA | Indeni&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, could i use same user that I have created for smartconsole login using tacacs server to the vpn user authentication by adding that user to the vpn access&amp;nbsp; user group?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is the log message&amp;nbsp; that I get in tacacs server while smartconsole authentication is failure:&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Apr 12 16:35:16 localhost tac_plus[6508]: connect from 10.10.10.250 [10.10.10.250]&lt;BR /&gt;Apr 12 16:35:16 localhost tac_plus[6508]: Error 10.10.10.250 : Invalid AUTHEN/START packet (check keys)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Apr 2018 17:53:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Tacacs-server-authentication-issue-in-checkpoint-smartconsole/m-p/14732#M2515</guid>
      <dc:creator>Manoj_Tiwari</dc:creator>
      <dc:date>2018-04-12T17:53:16Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs server authentication issue in checkpoint smartconsole</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Tacacs-server-authentication-issue-in-checkpoint-smartconsole/m-p/131623#M23863</link>
      <description>&lt;P&gt;Hi Manoj,&lt;BR /&gt;&lt;BR /&gt;I am facing the same issue, how do u resolved it?&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 13 Oct 2021 06:29:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Tacacs-server-authentication-issue-in-checkpoint-smartconsole/m-p/131623#M23863</guid>
      <dc:creator>Wei_Soon_Heng</dc:creator>
      <dc:date>2021-10-13T06:29:39Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs server authentication issue in checkpoint smartconsole</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Tacacs-server-authentication-issue-in-checkpoint-smartconsole/m-p/131645#M23864</link>
      <description>&lt;P&gt;Two questions:&lt;/P&gt;&lt;P&gt;What technology are you using for authenication, ACS, ISE, TAC-Plus etc? Is it configured for TACACS or TACACS+?&lt;/P&gt;&lt;P&gt;Check keys suggests shared secrets between the two boxes are not matched.&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Wed, 13 Oct 2021 07:56:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Tacacs-server-authentication-issue-in-checkpoint-smartconsole/m-p/131645#M23864</guid>
      <dc:creator>tmorgan</dc:creator>
      <dc:date>2021-10-13T07:56:16Z</dc:date>
    </item>
  </channel>
</rss>

