Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
minhhaivietnam
Collaborator

AD Query failed after upgrading patch KB5014702 on Active Directory

Jump to solution

Hi friends,

Has anyone got this problem after uprading patch KB5014702 on AD:

After MS 2016 upgrade above patch, Identity Awareness says "bad credentials" when call to AD

Untitled.png

Then I create new password on AD, and update this password on Checkpoint => this alarm  disappear.

But then I re-enable blade "Identity Awareness", it says this account is not administrator (but it actually is Domain Admin)

standard user.png

 

Had anyone got this issue ? and how to overcome it.

Thank you!!

 

0 Kudos
1 Solution

Accepted Solutions
minhhaivietnam
Collaborator

My Workaroud is uninstalling patch KB5014702  on AD, then everything is fine again.

Thank you!!

View solution in original post

0 Kudos
5 Replies
Sorin_Gogean
Advisor

hey,

 

You have another topic on the same problem, so was at solved or ?

 

Ty,

0 Kudos
minhhaivietnam
Collaborator

Hi Mr Sorin,

My previuos post, I create new password for user on AD and checkpoint, and alarm "bad credential " disappears . I post this for error " the user is not administrator account", (but my account is Domain admin actually)

Thank u.

0 Kudos
PhoneBoy
Admin
Admin

To debug, we’d probably need a TAC case.
That said, Identity Collector is a better way to go.

0 Kudos
minhhaivietnam
Collaborator

My Workaroud is uninstalling patch KB5014702  on AD, then everything is fine again.

Thank you!!

0 Kudos
Raven
Participant

This is one of solutions, but for how long... This MS patch covers CVE-2021-26414, So my suggestion is to install it on Windows Server. As response to issue with AD Query you have two options:

Install latest JHF for your version of GW or implement Identity Collector....

More info you will find here:

Solution Title: Check Point response to CVE-2021-26414 - 'Windows DCOM Server Security Feature Bypass'
Solution ID: sk176148
Solution Link:
https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut...