Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
patrick2
Explorer

SMB integrate AD issue

Hi there,

I am currently encountering an AD issue at a client’s site. I would like to know if anyone else has experienced the following:

  1. I integrated SMB with AD and added a user account in AD with domain admin and schema admin permissions.
  2. I created a new group in AD.
  3. I added a remote access user in SMB, but the newly created group in AD cannot be found. Interestingly, existing groups can be found.

It seems like an AD issue. Are there any additional settings required in AD?

0 Kudos
2 Replies
AkosBakos
Advisor

Hi @patrick2 

To get closer to the issue:

  • Do you use Identity Collecor, or how do you connect the SMB to the AD?

If you want to browse the whole tree in the Access Role object, you can find all ot the groups, except the newly created one?

Here:

2024-08-15 09_40_13-Cloud Demo Server [ID_531263718]-R81.20-SmartConsole.png

 

Ad Query is not a supported way as earlier was. Check Point recommends to use Identity Collector as the Identity Source instead of AD Query

There is an sk: https://support.checkpoint.com/results/sk/sk106133 maybe it can help to start the investigation way.

 

Akos

0 Kudos
PhoneBoy
Admin
Admin

What firmware version?
Sounds like a caching issue. 
This may require a TAC case.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events