- CheckMates
- :
- Products
- :
- Harmony
- :
- Mobile
- :
- Capsule vs SNX for LDAP authentication
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Capsule vs SNX for LDAP authentication
Hey all,
We're trying to configure capsule connect to allow smartphones to build a VPN tunnel and want the users to authenticate using their active directory account. We've previously configured SNX and have successfully used our active directory account to authenticate and build the ssl VPN tunnel, but whenever we try to use our AD account on capsule, it fails saying wrong user/pass. Using capsule with a local account (local to Checkpoint) works fine, but it's when we try our AD account is when it fails.
We're running unified policy.
Anyone have any ideas or run into this themselves?
- Tags:
- capsule
- mobile access
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Nevermind, I solved it myself.
Turned out we needed to change a setting with our LDAP account unit object. Under the authentication tab, we needed to have 'Users default value' > 'Default Authentication Scheme' checked and set to checkpoint password. No idea why this would affect only Capsule, and only Capsule LDAP auth, but there it is.
Leaving this up in case others experience the same problem.
