Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
David_Herselman
Advisor

Recursive group membership not working for Office Mode

We defined an LDAP group referencing our AD:

Name: AD_vpn_access

Account Unit: ad.lair.co.za__AD

Group's scope: Only group in branch (DN prefix)

Prefix: CN=vpn_access,OU=Firewall,OU=Security Groups,OU=Syrex

We then link this through to the Mobile Access Office Mode settings:

Nested LDAP groups work perfectly for security policy firewall rules but VPN access is not granted unless members are direct members of the vpn_access AD security group.

Is this a bug, known limitation or is there a setting I should be changing somewhere?

0 Kudos
3 Replies
PhoneBoy
Admin
Admin

David_Herselman
Advisor

Hi Dameon,

Would you possibly know where we can go to have this logged as a feature request? The internal components to recursively resolve nested LDAP group memberships is in the code base already...

0 Kudos
G_W_Albrecht
Legend Legend
Legend

Here you go:http://www.checkpoint.com/rfe/rfe.htm Smiley Happy

CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events