<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Different Multiple Login Options for different user groups in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/90786#M10202</link>
    <description>&lt;P&gt;Thanks &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/8232"&gt;@Royi_Priov&lt;/a&gt; for the answer.&lt;/P&gt;&lt;P&gt;Looking forward to SAML for RA VPN clients (including Securemote).&lt;/P&gt;&lt;P&gt;The RADIUS option is not really an option, since one of the reasons for the request is to license only a subset of users to the MFA service. If the RADIUS/MFA service is involved in the authentication decision, then all users would need a license for that.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 07 Jul 2020 14:15:10 GMT</pubDate>
    <dc:creator>Eli_Faskha</dc:creator>
    <dc:date>2020-07-07T14:15:10Z</dc:date>
    <item>
      <title>Different Multiple Login Options for different user groups</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/90544#M10199</link>
      <description>&lt;P&gt;We have seen a large increase in the use of multifactor authentication for VPN access (endpoint, not portal). However, clients are saying that they don't need MFA for all users, only for certain groups of users (VIPs, admins, etc). They're part of the same AD, but some should be required to login with MFA, others only user/pw or only certificates.&lt;/P&gt;&lt;P&gt;We haven't found a way to do that with Multiple Login Options. We need to use the same Account Unit (multiple Units to the same domain cause conflicts), we cannot use a different VS for different group (overkill and not feasible).&lt;BR /&gt;We needan option in the User Directories of the Multiple Login Options, to be a specific LDAP group, or a specific usergroup within an LDAP Account Unit.&lt;/P&gt;&lt;P&gt;Anyone can think of another way to do this?&lt;/P&gt;&lt;P&gt;&lt;LI-PRODUCT title="Remote Access VPN" id="remote-access-vpn"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;LI-PRODUCT title="Identity Awareness" id="identity-awareness"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 04 Jul 2020 21:15:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/90544#M10199</guid>
      <dc:creator>Eli_Faskha</dc:creator>
      <dc:date>2020-07-04T21:15:36Z</dc:date>
    </item>
    <item>
      <title>Re: Different Multiple Login Options for different user groups</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/90743#M10200</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/9"&gt;@Eli_Faskha&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You might be able to delegate this ability to a RADIUS server to decide which factors the users needs to go through.&lt;/P&gt;
&lt;P&gt;Adding SAML support for RA VPN clients is on our short term roadmap, and Identity Provider certainly support such option.&lt;/P&gt;</description>
      <pubDate>Tue, 07 Jul 2020 06:31:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/90743#M10200</guid>
      <dc:creator>Royi_Priov</dc:creator>
      <dc:date>2020-07-07T06:31:17Z</dc:date>
    </item>
    <item>
      <title>Re: Different Multiple Login Options for different user groups</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/90750#M10201</link>
      <description>I (and I'm sure a lot of others) are very excited about the upcoming SAML support!</description>
      <pubDate>Tue, 07 Jul 2020 07:19:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/90750#M10201</guid>
      <dc:creator>Ruan_Kotze</dc:creator>
      <dc:date>2020-07-07T07:19:10Z</dc:date>
    </item>
    <item>
      <title>Re: Different Multiple Login Options for different user groups</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/90786#M10202</link>
      <description>&lt;P&gt;Thanks &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/8232"&gt;@Royi_Priov&lt;/a&gt; for the answer.&lt;/P&gt;&lt;P&gt;Looking forward to SAML for RA VPN clients (including Securemote).&lt;/P&gt;&lt;P&gt;The RADIUS option is not really an option, since one of the reasons for the request is to license only a subset of users to the MFA service. If the RADIUS/MFA service is involved in the authentication decision, then all users would need a license for that.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Jul 2020 14:15:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/90786#M10202</guid>
      <dc:creator>Eli_Faskha</dc:creator>
      <dc:date>2020-07-07T14:15:10Z</dc:date>
    </item>
    <item>
      <title>Re: Different Multiple Login Options for different user groups</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/91330#M10203</link>
      <description>&lt;P&gt;do you think this feature can be added in a Jumbo on r80.30 or only after r80.40 release ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thank in advance, we are waiting MFA/SAML for RA client for a long time.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;</description>
      <pubDate>Mon, 13 Jul 2020 13:16:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/91330#M10203</guid>
      <dc:creator>Xavier_FIQUET</dc:creator>
      <dc:date>2020-07-13T13:16:28Z</dc:date>
    </item>
    <item>
      <title>Re: Different Multiple Login Options for different user groups</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/91346#M10204</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/12256"&gt;@Xavier_FIQUET&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'm happy to get this feedback.&lt;/P&gt;
&lt;P&gt;We are still in internal discussion about the availability, but it's too soon to publish anything - we will do our best.&lt;/P&gt;</description>
      <pubDate>Mon, 13 Jul 2020 14:36:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Different-Multiple-Login-Options-for-different-user-groups/m-p/91346#M10204</guid>
      <dc:creator>Royi_Priov</dc:creator>
      <dc:date>2020-07-13T14:36:00Z</dc:date>
    </item>
  </channel>
</rss>

