Who rated this post

Showing results for 
Search instead for 
Did you mean: 

Hi, here is the answer from Checkpoint.


There is no possibility to ignore all RDP events (only RDP for the DC side) while using the Identity collector.
You can try to use an identity agent as a workaround which is not based on events.

I'm proceeding with closing this service request as there is no technical issue and this is an expected behavior.
If you require any assistance with the identity agent - you can contact your local office for further assistance.


i dont know why they wont ignore all event ID of 4624 of type 10. this shouldnt be a huge problem. why only for rdp to dc´s?

iam trying to escalate my ticket.

0 Kudos
Who rated this post