<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic export certificate for ldap user remote access in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246307#M41144</link>
    <description>&lt;P&gt;Hello team&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm so sorry for my question&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;so&lt;/P&gt;&lt;P&gt;For remote access vpn need auth certificate + password for &lt;STRONG&gt;ldap user&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;how to export *.p12 file for LDAP user from smartdashboard -&amp;gt; mobile access -&amp;gt; client certifiactes ??&lt;/P&gt;&lt;P&gt;or another way to get *.p12 file for &lt;STRONG&gt;ldap user&lt;/STRONG&gt; ??&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thx&lt;/P&gt;</description>
    <pubDate>Sat, 12 Apr 2025 15:10:14 GMT</pubDate>
    <dc:creator>dkurochkin</dc:creator>
    <dc:date>2025-04-12T15:10:14Z</dc:date>
    <item>
      <title>export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246307#M41144</link>
      <description>&lt;P&gt;Hello team&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm so sorry for my question&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;so&lt;/P&gt;&lt;P&gt;For remote access vpn need auth certificate + password for &lt;STRONG&gt;ldap user&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;how to export *.p12 file for LDAP user from smartdashboard -&amp;gt; mobile access -&amp;gt; client certifiactes ??&lt;/P&gt;&lt;P&gt;or another way to get *.p12 file for &lt;STRONG&gt;ldap user&lt;/STRONG&gt; ??&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thx&lt;/P&gt;</description>
      <pubDate>Sat, 12 Apr 2025 15:10:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246307#M41144</guid>
      <dc:creator>dkurochkin</dc:creator>
      <dc:date>2025-04-12T15:10:14Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246310#M41145</link>
      <description>&lt;P&gt;I know it can be done using ICA mgmt tool, but will check tomorrow using smart console in the lab.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sat, 12 Apr 2025 16:59:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246310#M41145</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-04-12T16:59:40Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246311#M41146</link>
      <description>&lt;P&gt;I totally forgot I upgraded my lab mgmt to R82, but either way, those options are bit different, I cant see anywhere that lets you export the cert from smart console. Maybe someone else can confirm for you.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sat, 12 Apr 2025 17:35:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246311#M41146</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-04-12T17:35:12Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246312#M41147</link>
      <description>&lt;P&gt;Thanks for your answer&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But how to for ldap user use 2 factor auth with password + certificate ?&lt;/P&gt;</description>
      <pubDate>Sat, 12 Apr 2025 22:23:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246312#M41147</guid>
      <dc:creator>dkurochkin</dc:creator>
      <dc:date>2025-04-12T22:23:33Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246313#M41148</link>
      <description>&lt;P&gt;I will do some more tests Sunday and let you know.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sat, 12 Apr 2025 22:42:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246313#M41148</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-04-12T22:42:39Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246317#M41149</link>
      <description>&lt;P&gt;Hey, sorry for the delay, will check this later today.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sun, 13 Apr 2025 14:58:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246317#M41149</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-04-13T14:58:40Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246325#M41150</link>
      <description>&lt;P&gt;Im really struggling to find a way to do this from smart console (not even sure if its possible)...&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sun, 13 Apr 2025 18:58:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246325#M41150</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-04-13T18:58:14Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246328#M41151</link>
      <description>&lt;P&gt;Thanks for your answer&lt;/P&gt;&lt;P&gt;M.b. another way ?&lt;/P&gt;&lt;P&gt;Not by smartconsole?&lt;/P&gt;&lt;P&gt;R81.20&lt;/P&gt;</description>
      <pubDate>Sun, 13 Apr 2025 23:05:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246328#M41151</guid>
      <dc:creator>dkurochkin</dc:creator>
      <dc:date>2025-04-13T23:05:32Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246329#M41152</link>
      <description>&lt;P&gt;Maybe this?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk179785" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk179785&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 13 Apr 2025 23:08:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246329#M41152</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-04-13T23:08:02Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246341#M41155</link>
      <description>&lt;P&gt;way like&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk179785" target="_blank" rel="noopener noreferrer"&gt;sk179785&lt;/A&gt;&amp;nbsp;not work in this case&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;becouse&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk179785" target="_blank" rel="noopener noreferrer"&gt;sk179785&lt;/A&gt;&amp;nbsp;get me &lt;STRONG&gt;GW certificate&amp;nbsp;&lt;/STRONG&gt; (in smartConsole gw and servers -&amp;gt; gw -&amp;gt; IPSec VPN -&amp;gt; Repository of certificates available to the gateway)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;but I'm need p12 file for &lt;STRONG&gt;LDAP user&lt;/STRONG&gt; (&lt;SPAN&gt;smartdashboard -&amp;gt; mobile access -&amp;gt; client certifiactes)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;need second factor like certificate for remote acces in client for ldap user&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;how to do it ?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 14 Apr 2025 07:42:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246341#M41155</guid>
      <dc:creator>dkurochkin</dc:creator>
      <dc:date>2025-04-14T07:42:31Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246418#M41169</link>
      <description>&lt;P&gt;ok&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;vpn client do it (get cert from gw) automatic when enroll cert by first connect&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;but if in enroll procedure cert wasnt installed, dont now how to export p12 file&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;need recreate new certificate and its work&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Mon, 14 Apr 2025 14:37:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246418#M41169</guid>
      <dc:creator>dkurochkin</dc:creator>
      <dc:date>2025-04-14T14:37:22Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246429#M41171</link>
      <description>&lt;P&gt;I assume the enrollment process actually generates the certificate on the client itself.&lt;BR /&gt;Which means there is nothing to export from the management.&lt;BR /&gt;&lt;BR /&gt;If the enrollment process fails, you will need to issue another enrollment to the user.&lt;BR /&gt;If that process continues to fail, please consult with TAC.&lt;/P&gt;</description>
      <pubDate>Mon, 14 Apr 2025 16:49:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246429#M41171</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-04-14T16:49:55Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246475#M41180</link>
      <description>&lt;P&gt;some about p12 file&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;smartdashboard -&amp;gt; mobile access -&amp;gt; client certifiactes&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;after double click on certificate -&amp;gt; windows about p12 file&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;so p12 file exists, we don't know how to get it&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Apr 2025 09:05:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246475#M41180</guid>
      <dc:creator>dkurochkin</dc:creator>
      <dc:date>2025-04-15T09:05:41Z</dc:date>
    </item>
    <item>
      <title>Re: export certificate for ldap user remote access</title>
      <link>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246519#M41189</link>
      <description>&lt;P&gt;All that means is the management has the user's public key, which is expected.&lt;BR /&gt;Without the private key, which is generated and stored only on the client itself, it is not useful to provide an export.&lt;BR /&gt;Storing these private certificates centrally presents an unnecessary security risk.&lt;/P&gt;
&lt;P&gt;Even in cases where we have to manage a private key (e.g.&amp;nbsp;Site-to-Site VPNs authenticated with certificates), a new certificate can easily be generated as needed.&lt;BR /&gt;To maintain security, when a new certificate is generated, the old one is marked as revoked in the CRL.&lt;BR /&gt;As such, we do not permit&amp;nbsp;export of certificates after the initial generation.&lt;/P&gt;</description>
      <pubDate>Tue, 15 Apr 2025 13:27:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/export-certificate-for-ldap-user-remote-access/m-p/246519#M41189</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-04-15T13:27:57Z</dc:date>
    </item>
  </channel>
</rss>

