CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. Come to CPUG CON 2008 EUROPE in Switzerland on September 8th - 9th!
    Two days full of technical content for Check Point administrators in the beautiful Swiss Alps!
    We already have 72 attendees signed up from 20 countries!
2. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 10/6, 11/3, 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3, 9/7.
3. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
4. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Web Security > Connectra
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2008-01-16
hotice_ hotice_ is offline
Senior Member
 
Join Date: 2007-06-05
Location: Montreal,Canada
Posts: 152
Rep Power: 2
hotice_ has an average reputation (10+)
Default Cannot Authenticate with Microsoft AD using Connectra R62CM

Hi,
I seem to be confused on an issue with Connectra and AD.

I'm trying to integrate Microsoft AD into a new Connectra R62CM setup and it won't authenticate if I don't select the option "Use SmartDirectory" under Global Properties -> SmartDirectory(LDAP)

As soon as I select that, I am able to authenticate through the Connectra portal without any issues. When I remove it, I am no longer able to authenticate and the Tracker says "user unknown"

From my understanding, we should only check this if we want to use that Checkpoint feature to manage users and this requires an extra licence.

The LDAP Account unit has been configured with the appropriate settings and I am able to fetch the branches without any issues. I can even see all the users in the Connectra tab...

But I can't authenticate...

What Am I doing wrong? Can I integrate LDAP into Connectra without that Global Property checked and the SmartDirectory Licence?
Reply With Quote
  #2 (permalink)  
Old 2008-01-17
RayPesek RayPesek is offline
Senior Member
 
Join Date: 2006-03-19
Location: Northern Ohio
Posts: 873
Rep Power: 3
RayPesek has an average reputation (10+)
Default Re: Cannot Authenticate with Microsoft AD using Connectra R62CM

Check Point stuff generally won't work if the proper license is not applied (unless you're using an eval license). Doesn't Connectra come with a SmartDirectory license? Something way back in my mind is thinking it does.

Ray
Reply With Quote
  #3 (permalink)  
Old 2008-01-18
hotice_ hotice_ is offline
Senior Member
 
Join Date: 2007-06-05
Location: Montreal,Canada
Posts: 152
Rep Power: 2
hotice_ has an average reputation (10+)
Default Re: Cannot Authenticate with Microsoft AD using Connectra R62CM

Yeah it does...but Integrating Connectra management with the SCS actually disables this Smartdirectory

Its a known issue and a HotFix needs to be requested from Checkpoint
Reply With Quote
  #4 (permalink)  
Old 2008-01-19
RayPesek RayPesek is offline
Senior Member
 
Join Date: 2006-03-19
Location: Northern Ohio
Posts: 873
Rep Power: 3
RayPesek has an average reputation (10+)
Default Re: Cannot Authenticate with Microsoft AD using Connectra R62CM

OK, now I'm confused. If there is a valid SmartDirectory license with Connectra and the hotfix lets you use it, what's the issue?

Ray
Reply With Quote
  #5 (permalink)  
Old 2008-01-22
hotice_ hotice_ is offline
Senior Member
 
Join Date: 2007-06-05
Location: Montreal,Canada
Posts: 152
Rep Power: 2
hotice_ has an average reputation (10+)
Default Re: Cannot Authenticate with Microsoft AD using Connectra R62CM

Quote:
Originally Posted by RayPesek View Post
OK, now I'm confused. If there is a valid SmartDirectory license with Connectra and the hotfix lets you use it, what's the issue?

Ray
Well you need to request the special HotFix to enable the SmartD license within Connectra
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 08:23.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0