Managing Microsoft Entra ID Scanners

Endpoint Security can scan and import users, groups, administrative units and computers from multiple Microsoft Entra ID into the Endpoint Security. After the objects are imported, you can assign policies.

Note:

Endpoint Security does not scan groups of the type Distribution in Microsoft Entra ID.

Limitations

  • The Microsoft Entra ID scanner supports Windows only. For macOS devices, use Microsoft Intune.

  • User SmartCard is not supported.

  • Hybrid mode is not supported.

  • The user, device or group can be member of only one Administrative unit.

  • The maximum characters supported for Display Name is 45.

  • Microsoft Entra ID scanner sync stops if the Endpoint Security server is down for a duration of 30 days and above. To restart, contact Check Point Support.

  • Microsoft Entra ID does not work if Full Disk Encryption security blade is enabled.

  • If Full Disk Encryption is enabled and the user changes their password, the user must lock and unlock the device for the new password to take effect.

  • Supported only with Endpoint Security Client version E88.50 and higher.