<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: LDAP Account unit in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248603#M41564</link>
    <description>&lt;P&gt;See if below discussion helps. Also, I believe ldap account unit is needed regardless, as thats how users are pulled no matter what method you use.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/Security-Gateways/New-IA-Implementation/m-p/185851#M34184" target="_blank"&gt;https://community.checkpoint.com/t5/Security-Gateways/New-IA-Implementation/m-p/185851#M34184&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 12 May 2025 00:24:08 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2025-05-12T00:24:08Z</dc:date>
    <item>
      <title>LDAP Account unit</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248577#M41554</link>
      <description>&lt;P class=""&gt;I've been studying Identity Awareness and digging deeper to close some knowledge gaps. So I've been reading guides, SKs, and also using ChatGPT Plus to clarify some questions and research a few things based on the files and information I shared with it.&lt;/P&gt;&lt;P class=""&gt;One of the questions I asked was:&lt;/P&gt;&lt;P class=""&gt;&lt;STRONG&gt;Which Identity Awareness options (Browser-authentication, AD Query, Identity Agent, Terminal Server, Identity Collector, RADIUS Accounting, Identity Web API, and Remote Access) actually require an LDAP Account Unit to work, and which ones don't?&lt;/STRONG&gt;&lt;/P&gt;&lt;P class=""&gt;And it replied:&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;P class=""&gt;"Almost all identity sources require the LDAP Account Unit — not for authentication, but for authorization, meaning to associate users with groups used in Access Roles."&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P class=""&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="identity-agent-ldap-account-uni-chatgpt.jpeg" style="width: 981px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/30451iF5AC6E87C5D7A61F/image-size/large?v=v2&amp;amp;px=999" role="button" title="identity-agent-ldap-account-uni-chatgpt.jpeg" alt="identity-agent-ldap-account-uni-chatgpt.jpeg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P class=""&gt;&amp;nbsp;&lt;/P&gt;&lt;P class=""&gt;I found that really useful. What do you think?&lt;/P&gt;</description>
      <pubDate>Sun, 11 May 2025 08:26:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248577#M41554</guid>
      <dc:creator>israelfds95</dc:creator>
      <dc:date>2025-05-11T08:26:08Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP Account unit</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248578#M41555</link>
      <description>&lt;P&gt;&lt;SPAN&gt;I found that really useful. What do you think?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 11 May 2025 08:35:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248578#M41555</guid>
      <dc:creator>israelfds95</dc:creator>
      <dc:date>2025-05-11T08:35:08Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP Account unit</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248579#M41556</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;There are more blades using the LDAP account unit.&amp;nbsp; Please refer to:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk101372" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk101372&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;"&lt;SPAN&gt;Additionally, LDAP Account Units are used in the SmartDashboard, when opening, editing or fetching LDAP attributes."&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;With this they mean the access roles (that you can use for example an ad group in a firewall rule).&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 11 May 2025 08:59:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248579#M41556</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2025-05-11T08:59:18Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP Account unit</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248603#M41564</link>
      <description>&lt;P&gt;See if below discussion helps. Also, I believe ldap account unit is needed regardless, as thats how users are pulled no matter what method you use.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/Security-Gateways/New-IA-Implementation/m-p/185851#M34184" target="_blank"&gt;https://community.checkpoint.com/t5/Security-Gateways/New-IA-Implementation/m-p/185851#M34184&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 00:24:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248603#M41564</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-05-12T00:24:08Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP Account unit</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248614#M41565</link>
      <description>&lt;P&gt;&lt;SPAN&gt;This is fully explained in&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk86441" target="_blank" rel="noopener"&gt;&lt;SPAN&gt;sk86441: ATRG: &lt;STRONG&gt;Identity Awareness&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 07:38:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248614#M41565</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-05-12T07:38:04Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP Account unit</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248645#M41569</link>
      <description>&lt;P&gt;SK&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21294"&gt;@G_W_Albrecht&lt;/a&gt;&amp;nbsp;sent is the answer, for sure.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 11:33:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-Account-unit/m-p/248645#M41569</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-05-12T11:33:17Z</dc:date>
    </item>
  </channel>
</rss>

