I'm having some trouble with a making a policy for role based access for mobile access applications.
When attempted to set the source access role as one that uses Azure AD, with the mobile access application, policy install will fail. Error shows : "MAB applications and access Roles with AzureAD entities cannot be used in the same rule"
I found this post that suggests using an inline rule to achieve the desired outcome: https://community.checkpoint.com/t5/SASE-and-Remote-Access/Access-role-azure-idp-with-mobile-access-...
I havent been able to find this restriction documented anywhere yet, only in the forum post.
I'll likely create the recommended workaround, but i'm curious as to why this restriction is in place, and if this may eventually be supported.