<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SMB Remote Access AD users in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13271#M308</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Local or central management?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 06 Dec 2018 13:08:00 GMT</pubDate>
    <dc:creator>Pedro_Espindola</dc:creator>
    <dc:date>2018-12-06T13:08:00Z</dc:date>
    <item>
      <title>SMB Remote Access AD users</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13267#M304</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;A customer reported that after updating the firmware from R77.20.75 to R77.20.8x on locally managed 730, RA VPN clients could no longer authenticate with AD credentials as the SMB GW did not&amp;nbsp;communicate with the AD anymore. It needed an adjustment for different parsing of&amp;nbsp;&lt;SPAN style="font-size: 11.0pt;"&gt;OUs in AD - but i could find no documentation or remark about this.&amp;nbsp;Did anyone experience the same issue ?&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Dec 2018 10:59:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13267#M304</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2018-12-06T10:59:29Z</dc:date>
    </item>
    <item>
      <title>Re: SMB Remote Access AD users</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13268#M305</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Gunther,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We had this issue, it seemed to link with the firmware upgrade but in our instance it was related to the upgrade of the MDS from R77.30 to R80.10. LDAP (TCP389/636) was not sent across the tunnel but observed being sent out the WAN interface on the SMB device. After following&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk92281&amp;amp;partition=Advanced&amp;amp;product=Security"&gt;sk92281&lt;/A&gt;&amp;nbsp;we were able to fix our issue.&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Dec 2018 12:20:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13268#M305</guid>
      <dc:creator>Mike_A</dc:creator>
      <dc:date>2018-12-06T12:20:45Z</dc:date>
    </item>
    <item>
      <title>Re: SMB Remote Access AD users</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13269#M306</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That is surely a different issue and not connected to implied rules.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Dec 2018 12:50:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13269#M306</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2018-12-06T12:50:18Z</dc:date>
    </item>
    <item>
      <title>Re: SMB Remote Access AD users</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13270#M307</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You are correct. I saw the "clients could no longer authentication with AD" and immediately thought of the issue we had. Sorry to muddy the water.&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Dec 2018 12:58:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13270#M307</guid>
      <dc:creator>Mike_A</dc:creator>
      <dc:date>2018-12-06T12:58:02Z</dc:date>
    </item>
    <item>
      <title>Re: SMB Remote Access AD users</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13271#M308</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Local or central management?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Dec 2018 13:08:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13271#M308</guid>
      <dc:creator>Pedro_Espindola</dc:creator>
      <dc:date>2018-12-06T13:08:00Z</dc:date>
    </item>
    <item>
      <title>Re: SMB Remote Access AD users</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13272#M309</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Cought me red-handed&amp;nbsp;&lt;IMG src="https://community.checkpoint.com/legacyfs/online/checkpoint/emoticons/wink.png" /&gt;&amp;nbsp;- locally managed, i added that to the question...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Dec 2018 13:39:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13272#M309</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2018-12-06T13:39:46Z</dc:date>
    </item>
    <item>
      <title>Re: SMB Remote Access AD users</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13273#M310</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Customer explained that he originally had restricted the AD to a branch containing all windows user groups needing RA VPN access.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-1 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/76248_with_R77-20-75.png" /&gt;&lt;/P&gt;&lt;P&gt;Now he had to use a OU branch containing also users from the AD VPN group.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-2 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/76249_with_R77-20-80.png" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Dec 2018 14:41:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Remote-Access-AD-users/m-p/13273#M310</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2018-12-06T14:41:20Z</dc:date>
    </item>
  </channel>
</rss>

