<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Problems with using UPN for remote access in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144002#M7112</link>
    <description>&lt;P&gt;hi,&amp;nbsp;&lt;/P&gt;&lt;P&gt;i believe so, but can always get a verification from the customer on this one.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 17 Mar 2022 07:34:04 GMT</pubDate>
    <dc:creator>KM1895</dc:creator>
    <dc:date>2022-03-17T07:34:04Z</dc:date>
    <item>
      <title>Problems with using UPN for remote access</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/143409#M7110</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;I am currently trying to assist a customer with changing login name from SAM to UPN for their remote access environments.&lt;/P&gt;&lt;P&gt;I have changed the CustomLoginAttr to&amp;nbsp; |(sAMAccountName=&amp;lt;&amp;lt;&amp;gt;&amp;gt;)(UserPrincipalName=&amp;lt;&amp;lt;&amp;gt;&amp;gt;) and changed lookup_type to custom.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are still getting "unknown user" when they try to log in.&lt;/P&gt;&lt;P&gt;As they are using access roles, i changed the same settings for all IA settings here as well, but no success.&lt;/P&gt;&lt;P&gt;I believe something on the firewall is blocking this, as we dont get any hits on the nps server, and tcpdumps show no traffic on port 1812 when they attempt to log in.&lt;/P&gt;&lt;P&gt;Are there any more settings that needs to be done, in order to get UPN to work?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 10 Mar 2022 10:55:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/143409#M7110</guid>
      <dc:creator>KM1895</dc:creator>
      <dc:date>2022-03-10T10:55:55Z</dc:date>
    </item>
    <item>
      <title>Re: Problems with using UPN for remote access</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/143413#M7111</link>
      <description>&lt;P&gt;Did you make sure auth method under gateway office mode properties is correct?&lt;/P&gt;</description>
      <pubDate>Thu, 10 Mar 2022 12:50:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/143413#M7111</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-03-10T12:50:30Z</dc:date>
    </item>
    <item>
      <title>Re: Problems with using UPN for remote access</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144002#M7112</link>
      <description>&lt;P&gt;hi,&amp;nbsp;&lt;/P&gt;&lt;P&gt;i believe so, but can always get a verification from the customer on this one.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Mar 2022 07:34:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144002#M7112</guid>
      <dc:creator>KM1895</dc:creator>
      <dc:date>2022-03-17T07:34:04Z</dc:date>
    </item>
    <item>
      <title>Re: Problems with using UPN for remote access</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144003#M7113</link>
      <description>&lt;P&gt;hi, again&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;All the settings for authentication appear to be correct. it is currently set to default on ldap lookup type. If i change it to UPN, it still gives the same result, as in nothing hitting the nps server.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The radius authentication is working for SAM, but when changing to UPN, we dont see anything.&lt;/P&gt;&lt;P&gt;The users will connect, and the radius traffic is then sent over vpn to another site. But here, we dont see anything when testing, so this is leading me to suspect an issue on the checkpoint, rather than the radius setup. Even if the radius was the issue, we would have still seen the requests come in when doing a tcpdump on the relevant gateways.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could this be a possible TAC case?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Mar 2022 07:47:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144003#M7113</guid>
      <dc:creator>KM1895</dc:creator>
      <dc:date>2022-03-17T07:47:13Z</dc:date>
    </item>
    <item>
      <title>Re: Problems with using UPN for remote access</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144004#M7114</link>
      <description>&lt;P&gt;I am confused. Do you mean VPN, maybe?&lt;/P&gt;</description>
      <pubDate>Thu, 17 Mar 2022 08:07:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144004#M7114</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-03-17T08:07:05Z</dc:date>
    </item>
    <item>
      <title>Re: Problems with using UPN for remote access</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144012#M7115</link>
      <description>&lt;P&gt;hi, Val&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Im slightly confused by this case myself.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As it stands today, users log on to their Remote Access using their SAM, with Azure MFA enabled. This works just fine.&lt;/P&gt;&lt;P&gt;When switching to UPN, we dont get anywhere. No requests is sent to the radius servers(over site2site vpn). They use MUH, and i have tried changing the settings here as well, but still get the same result.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As for now, i will contact TAC, to see if they can assist further as well, as the customer wants this up and running.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Mar 2022 08:29:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144012#M7115</guid>
      <dc:creator>KM1895</dc:creator>
      <dc:date>2022-03-17T08:29:31Z</dc:date>
    </item>
    <item>
      <title>Re: Problems with using UPN for remote access</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144064#M7116</link>
      <description>&lt;P&gt;Sorry, it seems I originally misread your post.&amp;nbsp;&lt;SPAN&gt;UserPrincipalName authentication should work. &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Look into sk110858. It is not your case, but please check the mentioned parameters anyway, specifically&lt;EM&gt;UserLoginAttr.&lt;/EM&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;If it is as ti should be, open a TAC case.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Mar 2022 14:38:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144064#M7116</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-03-17T14:38:50Z</dc:date>
    </item>
    <item>
      <title>Re: Problems with using UPN for remote access</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144080#M7117</link>
      <description>&lt;P&gt;I second what&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt;&amp;nbsp;told you. That sk seems pretty details, so hopefully it helps. If not, then TAC would be your best bet.&lt;/P&gt;</description>
      <pubDate>Thu, 17 Mar 2022 15:53:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/144080#M7117</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-03-17T15:53:24Z</dc:date>
    </item>
    <item>
      <title>Re: Problems with using UPN for remote access</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/165549#M7118</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Got solution.?&lt;/P&gt;</description>
      <pubDate>Mon, 19 Dec 2022 09:41:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Problems-with-using-UPN-for-remote-access/m-p/165549#M7118</guid>
      <dc:creator>Shira</dc:creator>
      <dc:date>2022-12-19T09:41:00Z</dc:date>
    </item>
  </channel>
</rss>

