<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Active directory user base policies are not working in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/229006#M11556</link>
    <description>&lt;P&gt;Which AD server do you use? (which version)&lt;/P&gt;</description>
    <pubDate>Sun, 06 Oct 2024 10:08:51 GMT</pubDate>
    <dc:creator>Dafna</dc:creator>
    <dc:date>2024-10-06T10:08:51Z</dc:date>
    <item>
      <title>Active directory user base policies are not working</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/228985#M11551</link>
      <description>&lt;P&gt;The Active Directory user-based policies are not working in the local managed firewall, although the user groups from Active Directory are displaying correctly and syncing properly. When I apply a policy to the Active Directory user group, the rule does not work; only IP-based rules are functioning. What could be the cause of this issue? I have attached an image showing the error in the user awareness session.&lt;/P&gt;</description>
      <pubDate>Sun, 06 Oct 2024 04:32:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/228985#M11551</guid>
      <dc:creator>yasindu</dc:creator>
      <dc:date>2024-10-06T04:32:00Z</dc:date>
    </item>
    <item>
      <title>Re: Active directory user base policies are not working</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/228990#M11552</link>
      <description>&lt;P&gt;Which firmware version/build is used and are you using this with the Identity Collector??&lt;/P&gt;
&lt;P&gt;You may need to investigate the issue further with TAC note also&amp;nbsp;&lt;SPAN&gt;sk105977.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 06 Oct 2024 05:16:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/228990#M11552</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2024-10-06T05:16:48Z</dc:date>
    </item>
    <item>
      <title>Re: Active directory user base policies are not working</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/228993#M11553</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Which version do you use?&lt;/P&gt;
&lt;P&gt;Can you please attach screenshot of the access rule?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp;Dafna&lt;/P&gt;</description>
      <pubDate>Sun, 06 Oct 2024 05:30:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/228993#M11553</guid>
      <dc:creator>Dafna</dc:creator>
      <dc:date>2024-10-06T05:30:36Z</dc:date>
    </item>
    <item>
      <title>Re: Active directory user base policies are not working</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/228994#M11554</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Thank you for replying. This is a Check Point 1570 security appliance, and the firmware version is R81.10.10. I have attached the access rules. According to the image, only the traffic matching rule number 5 is being processed; the other rules above it are being bypassed. Additionally, this firewall is not using an identity collector.&lt;/P&gt;</description>
      <pubDate>Sun, 06 Oct 2024 06:56:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/228994#M11554</guid>
      <dc:creator>yasindu</dc:creator>
      <dc:date>2024-10-06T06:56:49Z</dc:date>
    </item>
    <item>
      <title>Re: Active directory user base policies are not working</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/228995#M11555</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Thank you for the replying. Firmware version is&amp;nbsp;&lt;SPAN&gt;R81.10.10 and this firewall not using identity collector. Only apply policies from user groups in active directory.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 06 Oct 2024 06:58:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/228995#M11555</guid>
      <dc:creator>yasindu</dc:creator>
      <dc:date>2024-10-06T06:58:47Z</dc:date>
    </item>
    <item>
      <title>Re: Active directory user base policies are not working</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/229006#M11556</link>
      <description>&lt;P&gt;Which AD server do you use? (which version)&lt;/P&gt;</description>
      <pubDate>Sun, 06 Oct 2024 10:08:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/229006#M11556</guid>
      <dc:creator>Dafna</dc:creator>
      <dc:date>2024-10-06T10:08:51Z</dc:date>
    </item>
    <item>
      <title>Re: Active directory user base policies are not working</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/229007#M11557</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Windows Server 2016 active directory.&lt;/P&gt;</description>
      <pubDate>Sun, 06 Oct 2024 10:19:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/229007#M11557</guid>
      <dc:creator>yasindu</dc:creator>
      <dc:date>2024-10-06T10:19:34Z</dc:date>
    </item>
    <item>
      <title>Re: Active directory user base policies are not working</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/229026#M11558</link>
      <description>&lt;P&gt;What it he method of the user auth?&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk178604" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk178604&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Bear in mind: Identity Agent is not supported on 1500, 1600, and 1800 Quantum Spark Appliances.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;On a Locally Managed appliances, there is no Identity Awareness option to add Active Directory (AD) users/ Organization Units inside the source column in policy rules. There is an Identity Awareness option to add Active Directory (AD) groups, but not to add specific users. The&amp;nbsp;&lt;STRONG&gt;Users&lt;/STRONG&gt;&amp;nbsp;tab on the left contains only internal users, which are not from Active Directory. See&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk105977" target="_blank" rel="noopener"&gt;sk105977&lt;/A&gt;.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;Akos&lt;/P&gt;</description>
      <pubDate>Mon, 07 Oct 2024 06:12:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Active-directory-user-base-policies-are-not-working/m-p/229026#M11558</guid>
      <dc:creator>AkosBakos</dc:creator>
      <dc:date>2024-10-07T06:12:31Z</dc:date>
    </item>
  </channel>
</rss>

