CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. Come to CPUG CON 2008 EUROPE in Switzerland on September 8th - 9th!
    Two days full of technical content for Check Point administrators in the beautiful Swiss Alps!
    We already have 72 attendees signed up from 20 countries!
2. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 10/6, 11/3, 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3, 9/7.
3. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
4. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Internal Security > Endpoint Security (Formerly Integrity)
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2008-04-06
woodpecker1 woodpecker1 is offline
Junior Member
 
Join Date: 2007-06-27
Posts: 18
Rep Power: 0
woodpecker1 has an average reputation (10+)
Default Endpoint 7.0 and LDAP

Hello

Subject should be "Endpoint and AD"

Can somebody help me in this issue.
I have tryed to get AD and user model entity to work.

We have need to get next kind of thing to work.

We have laptops, what are travelling between home network and office network.
When laptops are in office network, we need AD based policy (also it is looking security level of computer before it is getting access to internal network)
With Ip model entity this is working, but ip-address based config is quite difficult to manage
because of dhcp and other issues at home network.
Of cource we can put all internal networks to ip-catalogs but then everubody do get same policy.

Any ideas
Reply With Quote
  #2 (permalink)  
Old 2008-04-07
CSING CSING is offline
Member
 
Join Date: 2007-06-22
Posts: 94
Rep Power: 2
CSING has an average reputation (10+)
Default Re: Endpoint 7.0 and LDAP

Usually the issue centers around setting up the catalog correctly.

Are you able to import the users/groups from the AD server?

If not verify connectivity from Integrity server to AD and DNS.

Then set the catalog to just DC=domain, DC=org as a basic connection to your AD directory. Make sure you prepend the domain/administrator for the credentials.

If you are getting the users then are the make sure the AD is in the trusted zone. Check the zalog.txt on the client for any blocks, DNS or to AD that may lead you to the source of the issue.

Make sure it works on the local lan first.

Hope this helps.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 22:10.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0