Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Tecki0815
Explorer

Identity Collector not receiving events after MS "Defender For Identity" was installed

Hello,

we have installed Microsoft "Defender For Identity" on Domain Controllers.

Since then, the Check Point Identity Collector, which is used für Identity-Based access rules is not getting login/logout events any more.

Before the Microsoft "Defender For Identity" installation every thing worked fine.

 

And is it "normal" that the SMO has connected Identity controllers ?

Jut one SGM (we have just 2 and one group) has conneced Identity controllers

 

[Expert@SMO:0]# pdp idc status
No connected Identity Collectors

[Expert@SMO:0]#

 

Does any one have any idea how to fix this ?

Thanks

0 Kudos
3 Replies
PhoneBoy
Admin
Admin

0 Kudos
Chris_Atkinson
Employee Employee
Employee

Which version of IDC is being used in the environment?

CCSM R77/R80/ELITE
0 Kudos
Tecki0815
Explorer

the IDC version is R82.120

but most probably it is not related to sk183573 as I do not see any log containing "Win32 Error: Thread::Start "
and I have already CPIdentityCollector_R81.120.0291.msi.7z

which is beeing installed soon, but like already stated, this is most probbably not the root cause

Best Regards

0 Kudos