AnsweredAssumed Answered

Identity Awareness/ Terminal Server Agent Question

Question asked by Scott Bily on Aug 20, 2018

Does anybody have a solution for sharing identities learned from a terminal services agent across gateways in different domains?     The Check Point Identity Agent can only send the identities to a single gateway.   And you can not share identities across gateways that are in different domains, even when they are managed by the same Management Domain.

 

We use Identity Collector servers for capturing the Active Directory login event, and it works great for sharing identities across gateways in different domains..   I don't understand why Check Point wouldn't make it so that the Terminal Server Agent had the ability to send its learned identities to their own identity Collector server, instead of only to a single gateway. 

Outcomes