Jump to content
Toggle menu
  • 51 articles
  • 24 files
  • 4 users
  • 750 edits
Tech-Wiki
Toggle preferences menu
Toggle personal menu
Not logged in
Your IP address will be publicly visible if you make any edits.

Troubleshooting Identity Awareness

From Tech-Wiki


Check Point Identity Awareness commands for validating AD connectivity and PDP/PEP identity state.

ⓘ
Validation status
Reviewed against the current Check Point R82 Identity Awareness Administration Guide on 27 September 2026.
!
Protect service-account credentials
Prefer password-prompt options and avoid leaving AD service-account passwords in shell history or troubleshooting bundles.

Original technical reference

Troubleshooting Identity Awareness authentication issues and validating DC connectivity.

# adlog a dc
# adlog a query ip  10.1.1.3
1 user -> John Black ([email protected])
# pdp monitor user john.black
# pdp monitor ip 10.1.1.3
# pdp connections pep 
# pep show user query usr john.black
# pep show user all
# test_ad_connectivity -d domain.local -i 10.1.1.10 -u svc_checkpoint -D "CN=SVC_Checkpoint,OU=Service Accounts,DC=domain,DC=local" -a -o /tmp/wmitest

Grab the output from $FWDIR/log/test_ad_connectivity.elg

Official and supporting references