- Products
- Learn
- Local User Groups
- Partners
- More
Policy Insights and Policy Auditor in Action
19 November @ 5pm CET / 11am ET
Access Control and Threat Prevention Best Practices
Watch HereOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
I have configured the LOM port on the Check Point firewall and can access it using the admin credentials.
We have also configured a RADIUS profile, but when attempting to log in using RADIUS authentication, the login fails. On the ISE side, the logs show a failure due to an invalid password or shared key, even though I am using the correct credentials and key.
When we change the shared key to a simpler one on both ISE and LOM, I’m able to reach the login prompt but receive a “User access denied, contact admin” message. Meanwhile, ISE shows that the authentication was successful.
Are you using a non-English locale? It is probably that LOM is set to an English keyboard, while you are not, hence the special characters used with your password are not the same.
@_Val_ we tried with simple password as well, on ISE radius user getting authenticated but on LOM page its showing user access denied. contact administrator.
Did you check with TAC? Its possible this might be a known limitation.
Andy
Yet, you did not answer the question. Do you, or do you not, use a non-English keyboard? Also, are you sure your LOM is set correctly?
Yes, using english keyboard. yes its accessible with admin but not with radius users.
Thanks. Please open a TAC case for this
Hopefully TAC can help you fix it.
Whats the appliances and LOM type also firmware version - I've not had any issue with the LOM sending the RADIUS request to the ISE server however there is some work to do on the iSE server to get it working (not had the time for it).
It would be nice if TACACS+ was supported.
We had created a new policy on ISE with simple shared keys but still issue is there.
Please let us know once this is solved.
Thank you!
Most LOM issues are because of outdated LOM software. What LOM version you have installed? Java or HTML5 based? In what appliance it is running?
Second tip: does this authentication flow go via the firewall that has the LOM installed. Just from practical view: imagine firewall is crashed and you have to login. LOM tries to do RADIUS traffic via the firewall that has crashed and then you cannot login. Bit like chicken and egg discussion 😉
100% Lesley!
also here's the link to the firmware page:
https://support.checkpoint.com/results/sk/sk88064
routing, firewall rules all should be considered (could even be asymmetric routing issue, the other test that can be done, and I know it may not be practical, configure a dummy switch with 'aaa' configuration using RADIUS, give it the same IP as the LOM (clearly both should not be on the same network), and test, if this work you have then isolated the issue to the Checkpoint appliance and can take the next steps accordingly.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 24 | |
| 18 | |
| 15 | |
| 13 | |
| 12 | |
| 10 | |
| 6 | |
| 5 | |
| 5 | |
| 4 |
Wed 19 Nov 2025 @ 11:00 AM (EST)
TechTalk: Improve Your Security Posture with Threat Prevention and Policy InsightsThu 20 Nov 2025 @ 05:00 PM (CET)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - AMERThu 20 Nov 2025 @ 10:00 AM (CST)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - EMEAWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchWed 19 Nov 2025 @ 11:00 AM (EST)
TechTalk: Improve Your Security Posture with Threat Prevention and Policy InsightsThu 20 Nov 2025 @ 05:00 PM (CET)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - AMERThu 20 Nov 2025 @ 10:00 AM (CST)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - EMEAThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY