- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Announcing Quantum R82.10!
Learn MoreOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
We expose our SmartConsole on the management server to specific colleagues so they can consult the firewall logs.
Is there a way to default the login for Web SmartConsole to the IDP option for SSO sign-in?
Note: we only want it for the read-only colleagues using the Web SmartConsole. For us admins on the client, it should not change.
Default:
Desired:
This default is just for when adding a new administrator. It gives you a shortcut so you don’t have do the same clicks each time.
What you request is not possible. How can the login form know what default to present for different potential, but as yet unknown, users? If they had the full SmartConsole client, this will be set after their first login.
The only way the web console can do this is via a locally stored browser cookie (what they were originally designed to do). You’ll likely have to do a TAC case and/or RFE for that. Achieving this is a 100% server side operation.
@bacim Forgot to add, though this goes without saying, you need to have IDP object listed to use this.
Andy
Hi Andy,
Many thanks for your feedback.
We use only the EID integrated group, so no administrator profiles (except for us RADIUS admins as fallback).
It seems I cannot set the default authentication method on such groups:
Changing it here would change the default for everyone, right? Can we then still do a fallback in the web/client GUI to RADIUS as admins?
I see what you are saying. Let me play around with it in the lab, I dont care if it breaks, haha. Well, I do care (sort of), but not hard to fix. I will also check R82 lab as well.
Andy
Actually, this got me thinking if there is a way to set as per below options, but for group defined users, rather than generic. Maybe someone else can confirm, but I would also open TAC case to see if they may know for sure.
Andy
This default is just for when adding a new administrator. It gives you a shortcut so you don’t have do the same clicks each time.
What you request is not possible. How can the login form know what default to present for different potential, but as yet unknown, users? If they had the full SmartConsole client, this will be set after their first login.
The only way the web console can do this is via a locally stored browser cookie (what they were originally designed to do). You’ll likely have to do a TAC case and/or RFE for that. Achieving this is a 100% server side operation.
I tend to agree with that @Duane_Toler . I also checked on PAN and Fortigate and does not appear something like this is possible at the moment.
Andy
Thanks for the feedback.
It was more of a QoL feature for our end users so not really worth putting in this much effort.
I was really curious about this and wanted to double check if its possible on other vendors, but my colleagues told me its definitely not.
But certainly something to consider for the future I would say, so you can always submit an RFE.
Andy
https://support.checkpoint.com/results/sk/sk71840
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 21 | |
| 15 | |
| 7 | |
| 6 | |
| 5 | |
| 5 | |
| 4 | |
| 4 | |
| 4 | |
| 4 |
Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY