<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Checkpoint Firewall Radius Authentication in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47035#M9150</link>
    <description>&lt;P&gt;Which vendor you use for Radius authentication?&amp;nbsp;&lt;/P&gt;&lt;P&gt;In our case we use Gemalto and it required to create local users on gateway in order to provide really admin level access.&lt;/P&gt;</description>
    <pubDate>Fri, 15 Mar 2019 10:48:12 GMT</pubDate>
    <dc:creator>Martin_Valenta</dc:creator>
    <dc:date>2019-03-15T10:48:12Z</dc:date>
    <item>
      <title>Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47012#M9120</link>
      <description>&lt;P&gt;We were using local authentication to login to firewall till date. Now i have configured the Radius server for authentication. I am now able to authenticate but getting the below error for any of the commands i type in.&lt;/P&gt;&lt;P&gt;&amp;gt; cphaprob stat&lt;BR /&gt;/tmp/.CPprofile.sh: line 1: /opt/CPshrd-R80/scripts/cpprofile_functions.sh: Permission denied&lt;/P&gt;&lt;P&gt;Checked the tmp permission is already 1777 when checked with admin account.&lt;/P&gt;&lt;P&gt;Please let me know how to get this resolved. All radius users should have access as admin account which is currently a local account.&lt;/P&gt;&lt;P&gt;Let me know if you need any more details on this.&lt;/P&gt;</description>
      <pubDate>Fri, 15 Mar 2019 08:48:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47012#M9120</guid>
      <dc:creator>Sanjay_S</dc:creator>
      <dc:date>2019-03-15T08:48:39Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47013#M9121</link>
      <description>in order to you CLI with RADIUS users you don't do RADIUS in SmartDash making the OPSEC RADIUS Auth. scheme.&lt;BR /&gt;for local gateway (I presume HA Cluster) and clish/bash users RADIUS need to be configured in a slightly different matter, have you search this Community with a query "RADIUS CLISH"? Try &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; There is one post called "Expert mode"</description>
      <pubDate>Fri, 15 Mar 2019 08:53:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47013#M9121</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2019-03-15T08:53:51Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47024#M9131</link>
      <description>&lt;P&gt;It seems you are calling cphaprob stat form clish and not bash. try defining bash as a default shell, it will help to get to the root of the issue&lt;/P&gt;</description>
      <pubDate>Fri, 15 Mar 2019 10:16:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47024#M9131</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2019-03-15T10:16:25Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47033#M9148</link>
      <description>Val,&lt;BR /&gt;&lt;BR /&gt;cphaprob stat works also from CLISH!</description>
      <pubDate>Fri, 15 Mar 2019 10:40:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47033#M9148</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2019-03-15T10:40:35Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47034#M9149</link>
      <description>[Expert@FW:0]# clish&lt;BR /&gt;FW&amp;gt; cphaprob stat&lt;BR /&gt;&lt;BR /&gt;Cluster Mode:   High Availability (Active Up) with IGMP Membership&lt;BR /&gt;&lt;BR /&gt;Number     Unique Address  Assigned Load   State&lt;BR /&gt;&lt;BR /&gt;1 (local)  1.1.1.1         100%            Active&lt;BR /&gt;2          1.1.1.2         0%              Standby&lt;BR /&gt;&lt;BR /&gt;Local member is in current state since Thu Jan 31 11:57:41 2019&lt;BR /&gt;</description>
      <pubDate>Fri, 15 Mar 2019 10:41:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47034#M9149</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2019-03-15T10:41:57Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47035#M9150</link>
      <description>&lt;P&gt;Which vendor you use for Radius authentication?&amp;nbsp;&lt;/P&gt;&lt;P&gt;In our case we use Gemalto and it required to create local users on gateway in order to provide really admin level access.&lt;/P&gt;</description>
      <pubDate>Fri, 15 Mar 2019 10:48:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47035#M9150</guid>
      <dc:creator>Martin_Valenta</dc:creator>
      <dc:date>2019-03-15T10:48:12Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47043#M9155</link>
      <description>Hi Martin,&lt;BR /&gt;It is a free Radius we are using. So if we create local users then the radius authentication is of no use right?</description>
      <pubDate>Fri, 15 Mar 2019 11:44:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47043#M9155</guid>
      <dc:creator>Sanjay_S</dc:creator>
      <dc:date>2019-03-15T11:44:15Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47044#M9156</link>
      <description>&lt;P&gt;For FreeRadius you should follow this SK&lt;/P&gt;&lt;P&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk72940&amp;amp;partition=General&amp;amp;product=Security" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk72940&amp;amp;partition=General&amp;amp;product=Security&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Mar 2019 11:45:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47044#M9156</guid>
      <dc:creator>Martin_Valenta</dc:creator>
      <dc:date>2019-03-15T11:45:21Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47046#M9157</link>
      <description>not really Sanjay, it is all down to the configuration, please follow provided sk (from Martin) as it is explaining what it means "sequence of auth" in more or less sort of "AAA model" for Checkpoint &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;</description>
      <pubDate>Fri, 15 Mar 2019 11:47:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47046#M9157</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2019-03-15T11:47:09Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47047#M9158</link>
      <description>But Martin,&lt;BR /&gt;I am able to authenticate with Radius now. Actual problem is few of the commands are not working for example cphaprob stat.</description>
      <pubDate>Fri, 15 Mar 2019 11:54:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47047#M9158</guid>
      <dc:creator>Sanjay_S</dc:creator>
      <dc:date>2019-03-15T11:54:12Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47050#M9159</link>
      <description>&lt;P&gt;One thing is to get authenticated and other thing is to be authorized to run certain commands, that's why it's AAA( authenticate,authorize,accounting)&lt;/P&gt;</description>
      <pubDate>Fri, 15 Mar 2019 12:09:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47050#M9159</guid>
      <dc:creator>Martin_Valenta</dc:creator>
      <dc:date>2019-03-15T12:09:31Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47056#M9161</link>
      <description>Sure Jerry.&lt;BR /&gt;Will try that and get back to you guys if any issues.</description>
      <pubDate>Fri, 15 Mar 2019 12:27:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47056#M9161</guid>
      <dc:creator>Sanjay_S</dc:creator>
      <dc:date>2019-03-15T12:27:22Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint Firewall Radius Authentication</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47057#M9162</link>
      <description>Sure Martin.&lt;BR /&gt;Will try that and get back to you guys if any issues.</description>
      <pubDate>Fri, 15 Mar 2019 12:27:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Checkpoint-Firewall-Radius-Authentication/m-p/47057#M9162</guid>
      <dc:creator>Sanjay_S</dc:creator>
      <dc:date>2019-03-15T12:27:34Z</dc:date>
    </item>
  </channel>
</rss>

