<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: MULTIPLE DOMAINS IN REMOTE ACCESS VPN in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190550#M4615</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;The configuration is the same with screenshots.&lt;/P&gt;&lt;P&gt;I also tried connect to the site with FQDN and IP address.&lt;/P&gt;&lt;P&gt;Also attached the log message from the failed connection, policy action is Key Install.&lt;/P&gt;</description>
    <pubDate>Fri, 25 Aug 2023 08:02:55 GMT</pubDate>
    <dc:creator>spantazis</dc:creator>
    <dc:date>2023-08-25T08:02:55Z</dc:date>
    <item>
      <title>MULTIPLE DOMAINS IN REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190237#M4608</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;We have a cluster of 6400 firewalls. Client based Remote access VPN is enabled for our remote users.&lt;/P&gt;&lt;P&gt;In the beginning, all our users belonged in one domain (on premise AD, not Azure AD). So we configured rules properly (access roles based on OUs in AD, LDAP Groups, etc) for our remote access users.&lt;/P&gt;&lt;P&gt;However we want users from another domain to participate in the remote access VPN configuration. We created all the previous (access roles based on OUs in the other AD, LDAP Groups, etc) but when we try to enter credentials from the 2nd domain we receive the error "Negotiation with site failed".&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Ioannis&lt;/P&gt;</description>
      <pubDate>Wed, 23 Aug 2023 06:05:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190237#M4608</guid>
      <dc:creator>spantazis</dc:creator>
      <dc:date>2023-08-23T06:05:44Z</dc:date>
    </item>
    <item>
      <title>Re: MULTIPLE DOMAINS IN REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190276#M4609</link>
      <description>&lt;P&gt;Do you have multiple LDAP account units configured and what username format are the users attempting to authenticate with?&lt;/P&gt;</description>
      <pubDate>Wed, 23 Aug 2023 12:45:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190276#M4609</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-08-23T12:45:32Z</dc:date>
    </item>
    <item>
      <title>Re: MULTIPLE DOMAINS IN REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190283#M4610</link>
      <description>&lt;P&gt;We have configured two LDAP account units. The username format is the user logon name in the AD. This works for users located in one of the LDAP account units but not working for the other one.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Aug 2023 13:08:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190283#M4610</guid>
      <dc:creator>spantazis</dc:creator>
      <dc:date>2023-08-23T13:08:22Z</dc:date>
    </item>
    <item>
      <title>Re: MULTIPLE DOMAINS IN REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190286#M4611</link>
      <description>&lt;P&gt;Usually, that error negotiation with site failed would refer to IP or fqdn not responding from user's machine. Can you have them try with IP address instead of fqdn and see if same problem is there? Also, check the logs in smart console when they try connetc, it should give some clues.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 23 Aug 2023 13:17:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190286#M4611</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-08-23T13:17:50Z</dc:date>
    </item>
    <item>
      <title>Re: MULTIPLE DOMAINS IN REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190296#M4612</link>
      <description>&lt;P&gt;Did you already try the configuration according to these screenshots to include all LDAP directories?&amp;nbsp;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-08-23 153655.png" style="width: 910px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/22181i0537C82F77E6EEAB/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot 2023-08-23 153655.png" alt="Screenshot 2023-08-23 153655.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-08-23 153819.png" style="width: 447px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/22182i5FD09D0E1478926F/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot 2023-08-23 153819.png" alt="Screenshot 2023-08-23 153819.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Aug 2023 13:40:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190296#M4612</guid>
      <dc:creator>Daniel_3</dc:creator>
      <dc:date>2023-08-23T13:40:14Z</dc:date>
    </item>
    <item>
      <title>Re: MULTIPLE DOMAINS IN REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190297#M4613</link>
      <description>&lt;P&gt;It looks like your GW is failing to authenticate the user, check VPN logs on the GW side.&lt;/P&gt;</description>
      <pubDate>Wed, 23 Aug 2023 13:43:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190297#M4613</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2023-08-23T13:43:43Z</dc:date>
    </item>
    <item>
      <title>Re: MULTIPLE DOMAINS IN REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190298#M4614</link>
      <description>&lt;P&gt;Now, show User Directories please&lt;/P&gt;</description>
      <pubDate>Wed, 23 Aug 2023 13:44:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190298#M4614</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2023-08-23T13:44:31Z</dc:date>
    </item>
    <item>
      <title>Re: MULTIPLE DOMAINS IN REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190550#M4615</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;The configuration is the same with screenshots.&lt;/P&gt;&lt;P&gt;I also tried connect to the site with FQDN and IP address.&lt;/P&gt;&lt;P&gt;Also attached the log message from the failed connection, policy action is Key Install.&lt;/P&gt;</description>
      <pubDate>Fri, 25 Aug 2023 08:02:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/MULTIPLE-DOMAINS-IN-REMOTE-ACCESS-VPN/m-p/190550#M4615</guid>
      <dc:creator>spantazis</dc:creator>
      <dc:date>2023-08-25T08:02:55Z</dc:date>
    </item>
  </channel>
</rss>

