- CheckMates
- :
- Products
- :
- General Topics
- :
- Re: Error retrieving results
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Error retrieving results
Hi,
I have a issue when I want create un access role.
I installed Identity collector on my Active Directory Server Windows 2022.
In Identity Sources:
The second one is the Active Directory Server backup.
In Gateways:
We can see all is connected.
I already saw this kb "Error retrieving results" while fetching AD users with an existing Access Role (checkpoint.com) but the result was not conclusive.
My firewall and SMS are both in r81.10
Sorry for the lack of information I can provide, I'm a beginner.
Best Regards,
Bastien
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Can you please clarify if issue is with access role itself or something else? Im not really clear on that from your post.
Regards,
Andy
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes it's a issue with access role
As say I already saw this kb "Error retrieving results" while fetching AD users with an existing Access Role (checkpoint.com) but the result was not conclusive.
Best Regards,
Bastien
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The issue in the SK you linked relates to the LDAPS certificate.
Have you confirmed the certificate in this case is, in fact, not expired?
You should also try troubleshooting per: https://support.checkpoint.com/results/sk/sk113747
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
The certificate is no expired.
I followed the sk and I have a problem with adlog a dc :
Adlog is not enabled, therefore cannot display domain controllers status
I saw you said to contact TAC Identity Awareness stopped working - Check Point CheckMates
So I’m gonna do this.
Otherwise, impossible to contact LDAP server
Best Regards,
Bastien
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Do you have an LDAP account unit set up so that the mgmt server can talk to the AD servers?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I use the default account Administrator of the Active Directory for communicate with de mgmt
Best Regards,
Bastien
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
It might be worth doing remote with TAC, so they can verify all this.
Andy
