- Products
- Learn
- Local User Groups
- Partners
- More
Firewall Uptime, Reimagined
How AIOps Simplifies Operations and Prevents Outages
Introduction to Lakera:
Securing the AI Frontier!
Check Point Named Leader
2025 Gartner® Magic Quadrant™ for Hybrid Mesh Firewall
HTTPS Inspection
Help us to understand your needs better
CheckMates Go:
SharePoint CVEs and More!
This feature is available for R80.10 Gateways and above.
The new Identity Tag object gives you tag-based identification in your Access Control Policy.
Supported tag sources:
Step 1: Create a new Identity Tag in SmartConsole
Step 2: Create an Access Role object and select this Identity Tag
Step 3: Use this Access Role object in your Access Control Policy.
Step 4: Publish your changes, and Install Policy.
Tell us what you think about this new feature in the comments below.
Wow cool! When's this going to be available for chassis?
Sorry can you elaborate on that? Is this something Management Server tag orchestration can solve?
Not exactly but thanks anyways Tomer! We are eagerly awaiting for R80 on chassis so that might resolve quite a few challenges
Hi Kaspars,
We can offer you to join our R80.20SP EA (R80.20 for Scalable Platform) program.
If you are interested, please contact me to discuss the details.
Nice post, if users want a deeper view of our integration with Cisco ISE, see this tech brief on Check Point and Cisco Context Aware Security.
Hi Tomer,
Is any additional configuration required on GW/MGMT/Identity Collector for the SGT-to-IP mapping to show up in pdp database? I'm having a little trouble with this scenario... I managed to connect ISE to Identity Collector and I'm receiving AD User to IP mapping but SGT-to-IP just doesn't seem to work for me. Maybe there's something wrong with the configuration ISE side though...
Maybe there's some extended documentation on the CheckPoint-ISE integration?
Hi Tomer,
Do I understand this correct if I say the the Data Center object is used to retrive SGT's from ISE and Identity Collector is used for population the SGT's on Check Point?
@elie wrote:
Hi
Just to be sure the feature is indeed working on R80.10 Gateways?
Thanks
This feature is available for R80.10 Gateways and above.
Old thread but I'm taking my chances...
Looking at this and reading the SmartConsole R81 Help I struggle to figure out how to use this through the IA API.
According to the SmartConsole R81 Help I should be able to define "A custom tag (defined on a third party product) acquired through the Check Point Identity Web API." but when I look at the IA API I find no reference to a tag...
How do I add an IP-address through the IA API that match my defined tag?
Cheers
Hello!
I am working in the integration of a third party (Clearpass) via IA API, and I cannot find the way of creating the tag in the Clearpass side. I have been searching in the IA API guide but I have not found any references to create this tags that will be sent to Check Point to match Check Point tags.
Any ideas? Would any attribute sent via api match with the Identity Tag if the string matches?
Thanks!
How do i list all the populated identities on the tag ? any commands that can help ?
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
User | Count |
---|---|
26 | |
16 | |
4 | |
4 | |
3 | |
3 | |
3 | |
3 | |
3 | |
2 |
Tue 07 Oct 2025 @ 10:00 AM (CEST)
Cloud Architect Series: AI-Powered API Security with CloudGuard WAFThu 09 Oct 2025 @ 10:00 AM (CEST)
CheckMates Live BeLux: Discover How to Stop Data Leaks in GenAI Tools: Live Demo You Can’t Miss!Thu 09 Oct 2025 @ 10:00 AM (CEST)
CheckMates Live BeLux: Discover How to Stop Data Leaks in GenAI Tools: Live Demo You Can’t Miss!Wed 22 Oct 2025 @ 11:00 AM (EDT)
Firewall Uptime, Reimagined: How AIOps Simplifies Operations and Prevents OutagesAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY