- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hi all,
I want to create a dynamic object that uses OUs (ie. containing AD-registered machines) rather than using a group of AD servers. What's the recommended way to do this? I have R81.20 on Maestro, and Identity Collector.
It sounds like you're describing an Access Role object. I've never used these directly, I've just seen them in my API work.
It is an Access Role object. Does anyone have suggestions here?
An Access Role is correct:
This implies creating an LDAP Account Unit and possibly one or more LDAP Groups.
The question is - can I do this based upon OU (ie. all machines in a given OU), or does it have to be group-based?
I suppose you could do "all identified machines" which would use any machine identity.
Otherwise, it probably has to be done as a group.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 20 | |
| 19 | |
| 18 | |
| 8 | |
| 7 | |
| 3 | |
| 3 | |
| 3 | |
| 3 | |
| 3 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY