<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Identity Awareness in-depth explanation? in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-in-depth-explanation/m-p/35886#M7597</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Markus,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would recommend starting with Identity Awareness admin guide&lt;/P&gt;&lt;P&gt;R80.10 guide:&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://sc1.checkpoint.com/documents/R80.10/WebAdminGuides/EN/CP_R80.10_IdentityAwareness_AdminGuide/html_frameset.htm" title="https://sc1.checkpoint.com/documents/R80.10/WebAdminGuides/EN/CP_R80.10_IdentityAwareness_AdminGuide/html_frameset.htm"&gt;Identity Awareness R80.10 Administration Guide&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your questions are regarding Identity Sharing and I suggest reading more about it.&lt;/P&gt;&lt;P&gt;In few words, Identity Awareness is divided into 3 main entities:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Identity Source - responsible to acquire the identity information from an external resource.&lt;/LI&gt;&lt;LI&gt;PDP - responsible to communicate with the identity source, performs LDAP query to get the identity group membership, access roles matching and sharing with PEP.&lt;/LI&gt;&lt;LI&gt;PEP - responsible to the identity enforcement part.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The protocol which transfer identities between PDP to PEP is the "Identity Sharing".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Royi Priov&lt;/P&gt;&lt;P&gt;Team Leader, Identity Awareness R&amp;amp;D.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 17 Oct 2018 07:10:37 GMT</pubDate>
    <dc:creator>Royi_Priov</dc:creator>
    <dc:date>2018-10-17T07:10:37Z</dc:date>
    <item>
      <title>Identity Awareness in-depth explanation?</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-in-depth-explanation/m-p/35885#M7596</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I wonder is there any in-depth explanation available of Identity Awareness - especially in respect how PDP and PEP work together, how the Identity Sharing actually works?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When you use pdp/pep commands, you have some output, but is somewhere explained what it means? Eg. what about the "network to PDP mapping table" and the "network registrations table"?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To have documentation of this would make troubleshooting IA issues much easier.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Markus&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Oct 2018 15:57:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-in-depth-explanation/m-p/35885#M7596</guid>
      <dc:creator>Markus_Marquard</dc:creator>
      <dc:date>2018-10-16T15:57:58Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness in-depth explanation?</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-in-depth-explanation/m-p/35886#M7597</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Markus,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would recommend starting with Identity Awareness admin guide&lt;/P&gt;&lt;P&gt;R80.10 guide:&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://sc1.checkpoint.com/documents/R80.10/WebAdminGuides/EN/CP_R80.10_IdentityAwareness_AdminGuide/html_frameset.htm" title="https://sc1.checkpoint.com/documents/R80.10/WebAdminGuides/EN/CP_R80.10_IdentityAwareness_AdminGuide/html_frameset.htm"&gt;Identity Awareness R80.10 Administration Guide&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your questions are regarding Identity Sharing and I suggest reading more about it.&lt;/P&gt;&lt;P&gt;In few words, Identity Awareness is divided into 3 main entities:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Identity Source - responsible to acquire the identity information from an external resource.&lt;/LI&gt;&lt;LI&gt;PDP - responsible to communicate with the identity source, performs LDAP query to get the identity group membership, access roles matching and sharing with PEP.&lt;/LI&gt;&lt;LI&gt;PEP - responsible to the identity enforcement part.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The protocol which transfer identities between PDP to PEP is the "Identity Sharing".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Royi Priov&lt;/P&gt;&lt;P&gt;Team Leader, Identity Awareness R&amp;amp;D.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 17 Oct 2018 07:10:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-in-depth-explanation/m-p/35886#M7597</guid>
      <dc:creator>Royi_Priov</dc:creator>
      <dc:date>2018-10-17T07:10:37Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Awareness in-depth explanation?</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-in-depth-explanation/m-p/35887#M7598</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Some other valuable articles I have come across over the years &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://community.checkpoint.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk86441" title="https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk86441"&gt;ATRG: Identity Awareness&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk88520" title="https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk88520"&gt;Best Practices - Identity Awareness Large Scale Deployment&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk65404" title="https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk65404"&gt;Establishing SIC trust between Identity Awareness entities managed by different Security Management Servers / Domain Man…&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk113747" title="https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk113747"&gt;How to troubleshoot Identity Awareness AD Query connectivity issues&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 17 Oct 2018 08:17:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Awareness-in-depth-explanation/m-p/35887#M7598</guid>
      <dc:creator>Kaspars_Zibarts</dc:creator>
      <dc:date>2018-10-17T08:17:49Z</dc:date>
    </item>
  </channel>
</rss>

