- Products
- Learn
- Local User Groups
- Partners
- More
Step Into the Future of
AI-Powered Cyber Security
The State of Ransomware Q1 2026
Key Trends and Their Impact
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
CheckMates Go:
CheckMates Fest
Hello Checkpoint Checkmates Forum,
Im new in this solution, but have similar experience with another firewall product.
According to my topic, I recently had a question from a customer about the Checkpoint Firewall's ability to restrict concurrent user authentication, whether local users or AD integration are used. Does Checkpoint Firewall support this?
The use case is similar with this for other product : https://community.fortinet.com/t5/FortiGate/Technical-Tip-Limiting-concurrent-user-authentication/ta...
For example : we have user "CheckPoint", so this user only permitted to use a maximum of 5 devices for a captive portal or vpn.
Thank you 🙂
In what precise context are we discussing authentication?
For example, in Remote Access, there's a Global Property that specifically disallows a user from connecting to the gateway more than once.
In other contexts...not sure.
@Royi_Priov do we have some way to prevent a single user from showing up on multiple IPs?
Excellent question! Honestly, I never thought about it in all these years, but now that you mentioned it, Im also cusious to see if there is a way. I looked everywhere in global properties, gateway settings and cant find setting related to number or re-authentications.
I also checked guidbedit as well, but not sure if there is something there, but will keep looking.
Hi @the_rock
Yes i also looked at sk document, but found nothing. May this feature will be available on the next new OS?
hi @the_rock
Yes i also looked at sk document, but found nothing. May this feature will be available on the next new OS? Thanks!
In what precise context are we discussing authentication?
For example, in Remote Access, there's a Global Property that specifically disallows a user from connecting to the gateway more than once.
In other contexts...not sure.
@Royi_Priov do we have some way to prevent a single user from showing up on multiple IPs?
Hm, totally missed that option today in my lab, will verify again tomorrow.
Hi @PhoneBoy is it alao applicable for Captive Portal?
Captive Portal is part of Identity Awareness, and the above only applies to Remote Access VPN.
While we have mechanisms to filter out users that appear on multiple computers, that requires R81.20.
This doesn't "restrict" a user to, say, 5 logins, but it invalidates ALL sessions for any user that exceeds whatever you've configured the threshholds for.
This is also not the specific use case for this feature (it's designed for Service accounts specifically), so it may not work for that purpose.
Assuming you're using an external identity source like Active Directly, it should be possible to configure such login limits there.
For locally defined users where the password is defined in the Check Point management, there is no way to prevent them from logging in multiple times; this would be an RFE.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 25 | |
| 12 | |
| 11 | |
| 7 | |
| 7 | |
| 6 | |
| 6 | |
| 6 | |
| 6 | |
| 5 |
Tue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceWed 13 May 2026 @ 11:00 AM (EDT)
TechTalk: The State of Ransomware Q1 2026: Key Trends and Their ImpactThu 14 May 2026 @ 07:00 PM (EEST)
Under the Hood: Presentando Check Point Cloud Firewall como ServicioTue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY