Some users experienced an immediate logout from Mobile Access. Checking the AD we noticed that:
Within Active Directory, there are Organizational Units (OUs) that contain special characters (as shown in the Figure 1), which are causing issues when Check Point parses the DN. As a result, even if the user successfully authenticates against Active Directory, the identity cannot be properly constructed within the gateway, preventing the evaluation of groups and, consequently, authorization for applications.
As can be seen in Figure 2, the problem lies with the DNs, which are not being interpreted correctly.
Is there anything that can be done to interpret these special characters specific to Spanish?
Regards.