Hello All,
Environment:
Checkpoint NGXR60 (Nokia)
Windows 2003 Active Directory
Windows XP Client
We have configured UserAuthority on the firewall and on the
Windows DC and
added a user group on the firewall with the naming
convention
WIN_domainname_groupname. I then log into the domain with a
user that
belongs to a group and configured a rule in my policy
allowing the
WIN_PLAYGROUND_Web group at any IP to access a server on
SSH. The user
appears to be authenticated by UA SecureAgent but the
firewall does not
appear to be able to verify that the user is in this Windows
group and
denies the traffic. Am I missing some configuration to
allow Windows groups
to be used in rulebase?
Thanks
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV amadeus.us.checkpoint.com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http:
//www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner ts.checkpoint.com
=================================================
|