- Products
- Learn
- Local User Groups
- Partners
- More
Policy Insights and Policy Auditor in Action
19 November @ 5pm CET / 11am ET
Access Control and Threat Prevention Best Practices
Watch HereOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Good morning!
I just finish with IDA Setup. The connections seems to be fine but I cannot see any logins. Is anything that I missing here?
What version/JHF of gateway?
Do you see any TCP connections between IDC and the gateway?
I manage to set it all working.
two questions:
a) I add 38 Domain Controllers and I read that the limit is 35 domain controllers per connector ..
b) how exactly the priority of identity works ? I mean each site has a central Domain Controller if this failed , how exactly the polling choose which will be the one that will pull the identity of a user ?
thank you
did you configure any rule with access role and installed that policy?
Also check logs for blade:Identity awareness
You will need to deploy another IDC in this case.
Keep in mind that IDC is only acquiring the username, namely from the AD logs.
There is no "priority" for this part.
The gateway has to query AD for groups.
The priority in this case is ordered as you configure where "first to respond" wins.
a) I have deploy 2 IDCs but they are exactly the same. Each pool that I have created included 38 DCs. (So can i divide it here 35 per DC?)
b) So mean that IDCs communicate with the AD pulls the information of each DC and sent it every 10 seconds to the gateways.?
Each IDC should talk to no more than 35 AD (Log) Servers.
What configuration you use to achieve that is up to you.
If IDC learns the same thing from multiple AD (Log) servers within a few minutes, it’s only going to send it to the gateway once.
I have setup 2 IDC’s the second one is for redundancy. Each DC report for a different site. So each of one them is important. How can I do it ?
If you have two set up for redundancy right now with 38 AD servers, you will now need four.
The IDC instances should be set up close (network-wise) to the different AD servers.
we have exactly same kind of setup 36 AD and two IDC servers, each gateway is connected to both IDC. IDC will always keep in record firstly arrived event, other events for same IP,username are ignored.
As I said it is working now ! If it is possible someone to answer the above questions
Guys I have disabled the AD Query and now is only with the collectors.
The thing is I have cases that it does not identify a small number of users at all and a case that it has identify a user but the traffic is dropped.
Please help
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 27 | |
| 15 | |
| 14 | |
| 13 | |
| 12 | |
| 7 | |
| 6 | |
| 5 | |
| 5 | |
| 5 |
Wed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchWed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY