- Products
- Learn
- Local User Groups
- Partners
-
More
Celebrate the New Year
With CheckMates!
Value of Security
Vendor Self-Awareness
Join Us for CPX 360
23-24 February 2021
Important certificate update to CloudGuard Controller, CME,
and Azure HA Security Gateways
How to Remediate Endpoint & VPN
Issues (in versions E81.10 or earlier)
Mobile Security
Buyer's Guide Out Now
Important! R80 and R80.10
End Of Support around the corner (May 2021)
Hello everybody,
I configured a Unit Account with profile "Domino_DS" and added it to User Directory (VPN Clients > Authentication > Multiple Authentication Clients Settings) since I want to use LDAP accounts (email addresses) to allow users to connect in VPN.
I mapped the email address as UID.
The connection using Check Point Mobile client under Windows works well, but SNX under Linux cannot authenticate:
If I use a local VPN account with SNX, then it works.
What am I doing wrong?
Thanks,
Francesco
Do a packet capture between the gateway and the ldap server and check if its connecting. First make sure the connection is successful. Then look at the ldap conversation to see if its correct.
Could be
Firewall can't connect to ldap server.
Firewall can't login to ldap to generate a query.
Ldap server is rejecting login request for client.
I will say I don't think I've seen many people using none MS AD ldap so possible bug but check the other things first.
Thank you for your reply. I will check that. Anyway, if the problem is connection between Gateway and LDAP (I'm sure it isn't), the Windows Endpoint shouldn't work, but it works.
About CheckMates
Learn Check Point
Advanced Learning
WELCOME TO THE FUTURE OF CYBER SECURITY