<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: central managed  SMB Appliance 1900 and Azure Entra ID for RAS VPN in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/253679#M1763</link>
    <description>&lt;P&gt;It should not break anything with LDAP.&lt;/P&gt;</description>
    <pubDate>Tue, 22 Jul 2025 13:12:30 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2025-07-22T13:12:30Z</dc:date>
    <item>
      <title>central managed  SMB Appliance 1900 and Azure Entra ID for RAS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/253427#M1759</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;we have&amp;nbsp;central managed SMB Appliance 1900&amp;nbsp;R81.10.17 and I try to configure Azure Entra ID for RAS VPN&lt;BR /&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="0:8"&gt;During&lt;/SPAN&gt;&lt;SPAN&gt; the &lt;/SPAN&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="19:8"&gt;policy&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="9:9"&gt;installation&lt;/SPAN&gt;&lt;SPAN&gt;, &lt;/SPAN&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="28:1"&gt;I&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="30:7"&gt;received&lt;/SPAN&gt;&lt;SPAN&gt; an &lt;/SPAN&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="48:9"&gt;error&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="38:9"&gt;message&lt;/SPAN&gt;:&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;VPN Clients -&amp;gt; Authentication -&amp;gt; Multiple Authentication Clients Settings section cannot contain Multiple Login Option object (Azure_Entra_ID) that uses an Identity Provider as an authentication method. R81.10 and below Gateways are not supported with Identity Providers for VPN Clients Authentication. Please refer to sk172909&lt;/LI-CODE&gt;
&lt;P&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="0:6"&gt;One&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="7:11"&gt;official&lt;/SPAN&gt; &lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_RemoteAccessVPN_AdminGuide/Topics-VPNRG/SAML-Support-for-Remote-Access-VPN.htm" target="_self"&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="19:9"&gt;source&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="29:8"&gt;says&lt;/SPAN&gt;&lt;/A&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="39:3"&gt;that&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="43:3"&gt;SMBs&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="47:6"&gt;do&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="54:2"&gt;not&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="57:12"&gt;support&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="70:5"&gt;Entra&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="76:2"&gt;ID&lt;/SPAN&gt;&lt;SPAN&gt; at all:&lt;/SPAN&gt;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;Quantum Spark Appliances with Gaia Embedded OS are not supported.&lt;/LI-CODE&gt;
&lt;P&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="0:2"&gt;But&lt;/SPAN&gt;&lt;SPAN&gt; the &lt;/SPAN&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk172909" target="_self"&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="3:2"&gt;SK&lt;/SPAN&gt;&amp;nbsp;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="6:9"&gt;indicated&lt;/SPAN&gt;&lt;/A&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="16:1"&gt;in&lt;/SPAN&gt;&lt;SPAN&gt; the &lt;/SPAN&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="18:6"&gt;error&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="25:7"&gt;says&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="34:3"&gt;that&lt;/SPAN&gt;&lt;SPAN&gt; it is &lt;/SPAN&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="38:5"&gt;possible&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="44:3"&gt;under&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="48:9"&gt;certain&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="58:8"&gt;conditions&lt;/SPAN&gt;&lt;SPAN&gt;:&lt;/SPAN&gt;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;For Quantum Spark Appliances (Gaia Embedded) 
R81.10.15 Firmware (R81.20 Management server required)&lt;/LI-CODE&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="10:2"&gt;Did&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="13:1"&gt;I&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="15:5"&gt;understand&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="0:9"&gt;correctly&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="22:3"&gt;that&lt;/SPAN&gt; you &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="54:5"&gt;can&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="26:8"&gt;enable&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="45:5"&gt;Entra&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="51:2"&gt;ID&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="35:9"&gt;support&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="62:7"&gt;using&lt;/SPAN&gt; a &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="70:7"&gt;script&lt;/SPAN&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="77:1"&gt;?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;5. Script to Add SAML
Note, for Quantum Spark Appliances (Gaia Embedded) devices, you may be required to re-run the script on the Management Server.&lt;/LI-CODE&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="77:1"&gt;If yes, will it break the current LDAP authentication on the other gateway because the script runs on the management server?&amp;nbsp;It's really very important to me.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="77:1"&gt;Thank you in advance!&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Jul 2025 11:41:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/253427#M1759</guid>
      <dc:creator>Exonix</dc:creator>
      <dc:date>2025-07-18T11:41:25Z</dc:date>
    </item>
    <item>
      <title>Re: central managed  SMB Appliance 1900 and Azure Entra ID for RAS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/253428#M1760</link>
      <description>&lt;P&gt;Per&amp;nbsp;&lt;SPAN&gt;sk178604 did you change the default port for remote access?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Which Management Versions &amp;amp; Jumbo take?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Jul 2025 12:17:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/253428#M1760</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-07-18T12:17:38Z</dc:date>
    </item>
    <item>
      <title>Re: central managed  SMB Appliance 1900 and Azure Entra ID for RAS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/253429#M1761</link>
      <description>&lt;P&gt;No, I can't even begin authentication because I can't apply the new policy changes and enable it. A&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="0:3"&gt;t&lt;/SPAN&gt;&lt;SPAN&gt; the same time, &lt;/SPAN&gt;&lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="9:1"&gt;I&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="11:4"&gt;can&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="16:6"&gt;see&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="37:5"&gt;Azure&lt;/SPAN&gt; &lt;SPAN class="aNeGP0gI0B9AV8JaHPyH" data-src-align="23:13"&gt;users in the management Server&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Jul 2025 11:57:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/253429#M1761</guid>
      <dc:creator>Exonix</dc:creator>
      <dc:date>2025-07-18T11:57:48Z</dc:date>
    </item>
    <item>
      <title>Re: central managed  SMB Appliance 1900 and Azure Entra ID for RAS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/253433#M1762</link>
      <description>&lt;P&gt;Did you follow this process or something else?&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/SMB_R81.10.X/AdminGuides_Centrally_Managed/EN/Content/Topics/Configuring-SAML-Identity-Provider-Centrally-Managed.htm?Highlight=SAML" target="_blank"&gt;https://sc1.checkpoint.com/documents/SMB_R81.10.X/AdminGuides_Centrally_Managed/EN/Content/Topics/Configuring-SAML-Identity-Provider-Centrally-Managed.htm?Highlight=SAML&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Jul 2025 12:30:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/253433#M1762</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-07-18T12:30:03Z</dc:date>
    </item>
    <item>
      <title>Re: central managed  SMB Appliance 1900 and Azure Entra ID for RAS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/253679#M1763</link>
      <description>&lt;P&gt;It should not break anything with LDAP.&lt;/P&gt;</description>
      <pubDate>Tue, 22 Jul 2025 13:12:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/253679#M1763</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-07-22T13:12:30Z</dc:date>
    </item>
    <item>
      <title>Re: central managed  SMB Appliance 1900 and Azure Entra ID for RAS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/254100#M1764</link>
      <description>&lt;P&gt;thanks, it works!&lt;/P&gt;</description>
      <pubDate>Mon, 28 Jul 2025 14:08:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/central-managed-SMB-Appliance-1900-and-Azure-Entra-ID-for-RAS/m-p/254100#M1764</guid>
      <dc:creator>Exonix</dc:creator>
      <dc:date>2025-07-28T14:08:56Z</dc:date>
    </item>
  </channel>
</rss>

