<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Integration with Azure AD for remote access VPN in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173770#M5407</link>
    <description>&lt;P&gt;I had customer try that with different domains couple of years ago and we must have spent 10 + hours with TAC and MS support on it, without success. I want to be positive and tell you it would work, but Im also being brutally honest when I say its highly unlikely it will work. Just my feedback about it.&lt;/P&gt;</description>
    <pubDate>Mon, 06 Mar 2023 23:59:00 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2023-03-06T23:59:00Z</dc:date>
    <item>
      <title>Integration with Azure AD for remote access VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173475#M5403</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Dear all,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;We would like to integrate our Checkpoint cluster with Azure AD.&lt;/P&gt;&lt;P&gt;At the time our client-based remote access vpn users are authenticated via on-premise AD.&amp;nbsp;Client's version is&amp;nbsp;E86.50. We would like to add O365 MFA to the vpn users. For this reason&amp;nbsp; we have to integrate our Checkpoint cluster (6400 appliances, R81.10 version) with Azure AD in order to authenticate remote users. I read a similar case in the community but our on-premise AD and the Azure AD are not synchronized (we have different domains). Also the solution of SAML authentication is not suitable for us.&lt;/P&gt;&lt;P&gt;Is there any way to implement this scenario?&lt;/P&gt;&lt;P&gt;Thank you in advance for your answers.&lt;/P&gt;&lt;P&gt;Ioannis&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Mar 2023 09:15:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173475#M5403</guid>
      <dc:creator>ikokkoris</dc:creator>
      <dc:date>2023-03-03T09:15:26Z</dc:date>
    </item>
    <item>
      <title>Re: Integration with Azure AD for remote access VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173565#M5404</link>
      <description>&lt;P&gt;If you do not want to do SAML, the only other option is to integrate with RADIUS.&lt;BR /&gt;That means setting up a Network Policy Server:&amp;nbsp;&lt;A href="https://learn.microsoft.com/en-us/azure/active-directory/fundamentals/auth-radius" target="_blank"&gt;https://learn.microsoft.com/en-us/azure/active-directory/fundamentals/auth-radius&lt;/A&gt;&lt;BR /&gt;It also means entering your fixed password plus your MFA number in the same password field.&lt;BR /&gt;The SAML approach is much more user friendly.&lt;/P&gt;</description>
      <pubDate>Sat, 04 Mar 2023 00:19:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173565#M5404</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-03-04T00:19:33Z</dc:date>
    </item>
    <item>
      <title>Re: Integration with Azure AD for remote access VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173647#M5405</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Thank you for the reply. My concern for the scenario about NPS, is the usage of different domains in local and Azure AD environments. Do you think that it can still work?&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 08:49:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173647#M5405</guid>
      <dc:creator>ikokkoris</dc:creator>
      <dc:date>2023-03-06T08:49:10Z</dc:date>
    </item>
    <item>
      <title>Re: Integration with Azure AD for remote access VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173753#M5406</link>
      <description>&lt;P&gt;Theoretically, you can set both up as authentication methods and use the Multiple Authentication Schemes.&lt;BR /&gt;See: &lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_MobileAccess_AdminGuide/Content/Topics-MABG/Multiple-Login-Options.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_MobileAccess_AdminGuide/Content/Topics-MABG/Multiple-Login-Options.htm&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;How this will work in practice is a separate question.&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 17:46:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173753#M5406</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-03-06T17:46:18Z</dc:date>
    </item>
    <item>
      <title>Re: Integration with Azure AD for remote access VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173770#M5407</link>
      <description>&lt;P&gt;I had customer try that with different domains couple of years ago and we must have spent 10 + hours with TAC and MS support on it, without success. I want to be positive and tell you it would work, but Im also being brutally honest when I say its highly unlikely it will work. Just my feedback about it.&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 23:59:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173770#M5407</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-03-06T23:59:00Z</dc:date>
    </item>
    <item>
      <title>Re: Integration with Azure AD for remote access VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173794#M5408</link>
      <description>&lt;P&gt;Appreciate your answer. My first thought was to integrate Azure AD with CP cluster and then users authenticate (through vpn Client) with O365 credentials but I am not sure it works.&lt;/P&gt;</description>
      <pubDate>Tue, 07 Mar 2023 07:58:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173794#M5408</guid>
      <dc:creator>ikokkoris</dc:creator>
      <dc:date>2023-03-07T07:58:44Z</dc:date>
    </item>
    <item>
      <title>Re: Integration with Azure AD for remote access VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173797#M5409</link>
      <description>&lt;P&gt;I will try that and come back with feedback. Thanx&lt;/P&gt;</description>
      <pubDate>Tue, 07 Mar 2023 07:59:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/173797#M5409</guid>
      <dc:creator>ikokkoris</dc:creator>
      <dc:date>2023-03-07T07:59:41Z</dc:date>
    </item>
    <item>
      <title>Re: Integration with Azure AD for remote access VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/174185#M5410</link>
      <description>&lt;P&gt;I remember month ago that putting user/groups fetched from Azure AD object didn't worked. Is this fixed now?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thank you&lt;/P&gt;</description>
      <pubDate>Thu, 09 Mar 2023 08:37:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Integration-with-Azure-AD-for-remote-access-VPN/m-p/174185#M5410</guid>
      <dc:creator>CheckPointerXL</dc:creator>
      <dc:date>2023-03-09T08:37:53Z</dc:date>
    </item>
  </channel>
</rss>

