- Products
- Learn
- Local User Groups
- Partners
- More
Step Into the Future of
AI-Powered Cyber Security
When the Agents Attack
A Live Look at Agentic Exposure Validation
Bridge the CAASM Gap
with Exposure Management
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
Call For Papers
Your Expertise. Our Stage
CheckMates Go:
CheckMates Fest
HI All,
The customer currently has a requirement for two-step verification when connecting through Endpoint Security VPN. The first step requires entering the on-premises AD username and password, and the second step involves integrating Azure AD's MFA, using Microsoft Authenticator to enter a token. Is this achievable?
GW:R81.20
Thanks
Do you have sync enabled between on-prem AD and Azure AD?
Hi George,
Yes
So long as users and passwords are sync'd you can configure SAML auth directly to Azure AD. There are two ways to hit Azure AD, one directly with SAML, the other with standing up a RADIUS server in the middle. We chose the SAML method, less moving parts. Depending on your M365 license levels you can add also on conditional access policies.
Hi George,
I want to use SAML for authentication. Could you please provide the setup method and steps?
Hi Rock,
Can I use Check Point without the NPS Extension for Azure MFA? Is it possible to integrate using Check Point’s IDP object via SAML?
I think so.
We went with SAML as mentioned above, less moving parts. Though I've read here on previous posts there may be a couple Checkpoint SMB models that may not support SAML depending on what you have.
Hi George,
I am using the Check Point 3800 appliance, not the Check Point SMB
See sk172909 for SAML config though I think there's a better SK if I remember gave better step by step instructions.
Thats it.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 3 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Thu 04 Jun 2026 @ 07:00 PM (IDT)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - AmericaThu 04 Jun 2026 @ 10:00 AM (PDT)
AI Security Masters E9: READY OR NOT: Securing the AI Enterprise 1/5 - AI Agent SecurityWed 10 Jun 2026 @ 01:00 PM (EDT)
Deep Dive: When the Agents Attack: A Live Look at Agentic Exposure ValidationThu 11 Jun 2026 @ 11:00 AM (EDT)
Tips and Tricks 2026 #8: Say Yes to AI Without Saying Yes to RiskFri 12 Jun 2026 @ 10:00 AM (CEST)
CheckMates Live Netherlands - Sessie 47: Continuous Threat Exposure ManagementThu 04 Jun 2026 @ 07:00 PM (IDT)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - AmericaThu 04 Jun 2026 @ 10:00 AM (PDT)
AI Security Masters E9: READY OR NOT: Securing the AI Enterprise 1/5 - AI Agent SecurityWed 10 Jun 2026 @ 01:00 PM (EDT)
Deep Dive: When the Agents Attack: A Live Look at Agentic Exposure ValidationThu 11 Jun 2026 @ 11:00 AM (EDT)
Tips and Tricks 2026 #8: Say Yes to AI Without Saying Yes to RiskFri 12 Jun 2026 @ 10:00 AM (CEST)
CheckMates Live Netherlands - Sessie 47: Continuous Threat Exposure ManagementTue 16 Jun 2026 @ 05:00 PM (CEST)
Under the Hood: Check Point SASE | Internet Access Optimization & Performance TuningAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY