<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Azure SAML for checkpoint web vpn in Mobile</title>
    <link>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/168131#M936</link>
    <description>&lt;P&gt;The SSO session with the provider remains logged in based on the SSO providers settings. This is a massive benefit of use MFA and SSO. You are logging in on the device with the username / password / MFA. That device retains the authentication based on the SSO setting (one of my clients is 30 days). This means if they reconnect from the same device with the same user within 30 days they will no be re-prompted for anything and the VPN will connect and advise the session has been authenticated by the provider. It's GREAT for them!&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 17 Jan 2023 21:36:41 GMT</pubDate>
    <dc:creator>nzmatto1</dc:creator>
    <dc:date>2023-01-17T21:36:41Z</dc:date>
    <item>
      <title>Azure SAML for checkpoint web vpn</title>
      <link>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/147605#M808</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How do we implement&amp;nbsp; Azure SAML SSO&amp;nbsp; for check point mobile VPN?.&amp;nbsp; &amp;nbsp;There are guides available for Remote Access VPN with Azure SAML SSO.&amp;nbsp; &amp;nbsp;But not available for mobile VPN.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can some one help?.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;BR /&gt;Ramesh M.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 02 May 2022 13:50:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/147605#M808</guid>
      <dc:creator>rameshm18</dc:creator>
      <dc:date>2022-05-02T13:50:35Z</dc:date>
    </item>
    <item>
      <title>Re: Azure SAML for checkpoint web vpn</title>
      <link>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/147862#M813</link>
      <description>&lt;P&gt;Please specify in details, what you are trying to do, including the version and use and at least some information about the setup&lt;/P&gt;</description>
      <pubDate>Wed, 04 May 2022 14:22:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/147862#M813</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-05-04T14:22:10Z</dc:date>
    </item>
    <item>
      <title>Re: Azure SAML for checkpoint web vpn</title>
      <link>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/147864#M814</link>
      <description>&lt;P&gt;That said, please look into&amp;nbsp;&lt;SPAN&gt;sk171501 to see if the described issue is the one you are having.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 04 May 2022 14:23:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/147864#M814</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-05-04T14:23:19Z</dc:date>
    </item>
    <item>
      <title>Re: Azure SAML for checkpoint web vpn</title>
      <link>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/148295#M815</link>
      <description>&lt;P&gt;Hi Val,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is not related to&amp;nbsp;&lt;SPAN&gt;sk171501.&amp;nbsp; &amp;nbsp;There is no guide available for Azure SAML SSO implementation for Mobile Access VPN Portal.&amp;nbsp; &amp;nbsp;How ever i see&amp;nbsp; there is guide available for RA VPN. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;In the Azure portal, default gallery based builit in application available for RA VPN and not available for mobile access vpn.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I have created a custom - non gallery application and filled in the SAML settings with Sign on and reply URL.&amp;nbsp; But not sure what to fill in&amp;nbsp; Logout URL.&amp;nbsp; &amp;nbsp; &amp;nbsp;Some how, mobile Access VPN is now working with Azure MFA with SAML SSO.&amp;nbsp; &amp;nbsp;but when i try to log out from Mobile Access portal it says "Signing out from Check Point Mobile does not automatically sign out from your Identity Provider's session."&amp;nbsp; &amp;nbsp;if i close the browser and open the browser and try to relogin, it just logged in without asking MFA.&amp;nbsp; &amp;nbsp;It behaves like that till 60 minutes.&amp;nbsp; &amp;nbsp;after that it becomes normal.&amp;nbsp; &amp;nbsp;Not sure this related to 'logout URL' not filled in the application.&amp;nbsp; dont know how to format the 'Logout URL'.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Refer the attached image.&amp;nbsp; &amp;nbsp; &amp;nbsp; Any advise would be helpful.&amp;nbsp; &amp;nbsp; &amp;nbsp; Thanks&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2022 10:30:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/148295#M815</guid>
      <dc:creator>rameshm18</dc:creator>
      <dc:date>2022-05-10T10:30:14Z</dc:date>
    </item>
    <item>
      <title>Re: Azure SAML for checkpoint web vpn</title>
      <link>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/168062#M934</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/73576"&gt;@rameshm18&lt;/a&gt;&amp;nbsp;, I'm in the same case. Do you find a solution? Thank you in advance for your answer&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jan 2023 13:08:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/168062#M934</guid>
      <dc:creator>DRuser</dc:creator>
      <dc:date>2023-01-17T13:08:14Z</dc:date>
    </item>
    <item>
      <title>Re: Azure SAML for checkpoint web vpn</title>
      <link>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/168125#M935</link>
      <description>&lt;P&gt;It's the same product (thus the same guide).&lt;BR /&gt;That assume we're talking about Check Point Mobile installed on Windows (versus Capsule VPN where this is not currently supported).&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jan 2023 21:22:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/168125#M935</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-01-17T21:22:32Z</dc:date>
    </item>
    <item>
      <title>Re: Azure SAML for checkpoint web vpn</title>
      <link>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/168131#M936</link>
      <description>&lt;P&gt;The SSO session with the provider remains logged in based on the SSO providers settings. This is a massive benefit of use MFA and SSO. You are logging in on the device with the username / password / MFA. That device retains the authentication based on the SSO setting (one of my clients is 30 days). This means if they reconnect from the same device with the same user within 30 days they will no be re-prompted for anything and the VPN will connect and advise the session has been authenticated by the provider. It's GREAT for them!&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jan 2023 21:36:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/168131#M936</guid>
      <dc:creator>nzmatto1</dc:creator>
      <dc:date>2023-01-17T21:36:41Z</dc:date>
    </item>
    <item>
      <title>Re: Azure SAML for checkpoint web vpn</title>
      <link>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/168172#M937</link>
      <description>&lt;P&gt;I need to re-authenticate every time.&lt;/P&gt;&lt;P&gt;In Azure, Conditional Access, you can only type a sign-in frequency of 1 Hour.&lt;/P&gt;&lt;P&gt;is there a workaround for my need?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When my client disconnect his VPN, he have the information "your session is keeping in the IDP".&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jan 2023 09:07:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/168172#M937</guid>
      <dc:creator>DRuser</dc:creator>
      <dc:date>2023-01-18T09:07:27Z</dc:date>
    </item>
    <item>
      <title>Re: Azure SAML for checkpoint web vpn</title>
      <link>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/202135#M1063</link>
      <description>&lt;P&gt;I have the same issue - I would like that each time a RA VPN Session is terminated, the Azure token must be released\expire immediately so that if another session is established, the whole MFA is (re)initiated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For me the fact that Azure token is valid for minimum 60minutes is a security "red flag" because the session remains active with the IDP.&lt;/P&gt;</description>
      <pubDate>Wed, 03 Jan 2024 21:46:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Mobile/Azure-SAML-for-checkpoint-web-vpn/m-p/202135#M1063</guid>
      <dc:creator>Realeboga_Mashi</dc:creator>
      <dc:date>2024-01-03T21:46:32Z</dc:date>
    </item>
  </channel>
</rss>

