<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Integrating with RSA SecurID REST in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integrating-with-RSA-SecurID-REST/m-p/177743#M5200</link>
    <description>Hello Team, I would like to integrate Checkpoint with RSA SecurID REST authentication, not the SDK implementation, according to this guide &lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_SecurityManagement_AdminGuide/Topics-SECMG/Configuring-SecurID-Authentication.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_SecurityManagement_AdminGuide/Topics-SECMG/Configuring-SecurID-Authentication.htm&lt;/A&gt; I have a question in this field about the certificate in particular:- Edit the $CPDIR/conf/RSARestServer.conf file. Fill in these fields: host - The configured host name of the RSA server. port, client key, and accessid - From the RSA SecurID Authentication API window. certificate - The name of the certificate file. 1- In case the REST API FQDN is based on intermediate and Root Certificate, which format is supported in Checkpoint ? p7b or pem 2- In the Certificate field, shall I put the certificate in the same directory of conf or specify the full path in this configuration file ? Since this was not mentioned in the guide, thanks for anyone to elaborate, I appreciate it. David</description>
    <pubDate>Sun, 09 Apr 2023 18:58:29 GMT</pubDate>
    <dc:creator>david_stardust</dc:creator>
    <dc:date>2023-04-09T18:58:29Z</dc:date>
    <item>
      <title>Integrating with RSA SecurID REST</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integrating-with-RSA-SecurID-REST/m-p/177743#M5200</link>
      <description>Hello Team, I would like to integrate Checkpoint with RSA SecurID REST authentication, not the SDK implementation, according to this guide &lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_SecurityManagement_AdminGuide/Topics-SECMG/Configuring-SecurID-Authentication.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_SecurityManagement_AdminGuide/Topics-SECMG/Configuring-SecurID-Authentication.htm&lt;/A&gt; I have a question in this field about the certificate in particular:- Edit the $CPDIR/conf/RSARestServer.conf file. Fill in these fields: host - The configured host name of the RSA server. port, client key, and accessid - From the RSA SecurID Authentication API window. certificate - The name of the certificate file. 1- In case the REST API FQDN is based on intermediate and Root Certificate, which format is supported in Checkpoint ? p7b or pem 2- In the Certificate field, shall I put the certificate in the same directory of conf or specify the full path in this configuration file ? Since this was not mentioned in the guide, thanks for anyone to elaborate, I appreciate it. David</description>
      <pubDate>Sun, 09 Apr 2023 18:58:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integrating-with-RSA-SecurID-REST/m-p/177743#M5200</guid>
      <dc:creator>david_stardust</dc:creator>
      <dc:date>2023-04-09T18:58:29Z</dc:date>
    </item>
    <item>
      <title>Re: Integrating with RSA SecurID REST</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integrating-with-RSA-SecurID-REST/m-p/177748#M5201</link>
      <description>&lt;P&gt;I figured it out and it needs the certificate in the same directory as&amp;nbsp;&lt;SPAN&gt;$CPDIR/conf/ and also .pem as the extension. Now the last question would be :&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I have multiple replica servers for RSA Authentication Manager, how can I do the load balancing or try another if one fails? I tried adding comma and ; between the host entries and it never understands it. Do I need to create a separate like this one ?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;(&lt;BR /&gt;:host (7sp1.dawoud.com)&lt;BR /&gt;:port (5555)&lt;BR /&gt;:clientKey (l181du8y9sc236bmk8qdff4763t7sf360oo4i4ywt5wh46769721m66qm272o43d)&lt;BR /&gt;:accessId (rmtn51e85ljue2k2d450531kxy8ef78m385785w480rraqe22h0i034i43lw0i63)&lt;BR /&gt;:certificate (7sp1RootCA.pem)&lt;BR /&gt;)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;(&lt;BR /&gt;:host (7sp1rep.dawoud.com)&lt;BR /&gt;:port (5555)&lt;BR /&gt;:clientKey (l181du8y9sc236bmk8qdff4763t7sf360oo4i4ywt5wh46769721m66qm272o43d)&lt;BR /&gt;:accessId (rmtn51e85ljue2k2d450531kxy8ef78m385785w480rraqe22h0i034i43lw0i63)&lt;BR /&gt;:certificate (7sp1RootCA.pem)&lt;BR /&gt;)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;or how should it be done ? We can setup an API Gateway to loadbalance but asking if there is a way to add the hostnames for the other RSA Replicas in the same configuration file ?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;David&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 10 Apr 2023 00:08:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integrating-with-RSA-SecurID-REST/m-p/177748#M5201</guid>
      <dc:creator>david_stardust</dc:creator>
      <dc:date>2023-04-10T00:08:14Z</dc:date>
    </item>
    <item>
      <title>Re: Integrating with RSA SecurID REST</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integrating-with-RSA-SecurID-REST/m-p/177749#M5202</link>
      <description>&lt;P&gt;I tried space between hostnames and add like above , also tried adding comma, ; , and slashes , tried to have space between hostnames and still it doesn't work, it only works when I put 1 hostname. Can someone please help?&lt;/P&gt;&lt;P&gt;thanks.&lt;/P&gt;&lt;P&gt;David&lt;/P&gt;</description>
      <pubDate>Mon, 10 Apr 2023 00:51:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integrating-with-RSA-SecurID-REST/m-p/177749#M5202</guid>
      <dc:creator>david_stardust</dc:creator>
      <dc:date>2023-04-10T00:51:06Z</dc:date>
    </item>
    <item>
      <title>Re: Integrating with RSA SecurID REST</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integrating-with-RSA-SecurID-REST/m-p/177807#M5203</link>
      <description>&lt;P&gt;I suspect we do not allow adding multiple hosts in the relevant configuration.&lt;BR /&gt;This should be taken with the TAC and confirmed: &lt;A href="https://help.checkpoint.com" target="_blank"&gt;https://help.checkpoint.com&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 10 Apr 2023 23:18:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integrating-with-RSA-SecurID-REST/m-p/177807#M5203</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-04-10T23:18:10Z</dc:date>
    </item>
  </channel>
</rss>

