Print Download PDF Send Feedback

Previous

Next

Identity Collector

Check Point Identity Collector is a dedicated client agent installed on Windows Servers in your network. Identity Collector collects information about identities and their associated IP addresses, and sends it to the Check Point Security Gateways for identity enforcement.

The Identity Collector supports these Identity Sources:

The Identity Collector can connect with more than one Identity Source at a time. The Identity Sources are organized in Query Pools.

A Query Pool is an object, which contains a number of Identity Sources. Each Query Pool is assigned to one Identity Awareness Gateway. The Identity Collector collects information from the Identity Sources in the Query Pools and sends the information to the Identity Awareness Gateways.

Example:

An environment has two domains: Asia.com and Euro.com
The administrator wants the Asia Identity Awareness Gateway to get the events from all the 4 Active Directory Domain Controllers in the Asia.com domain.
The administrator also wants the Europe Identity Awareness Gateway 1 and Europe Identity Awareness Gateway 2 to get the events from all the 6 Active Directory Domain Controllers in the Euro.com domain.
The administrator, therefore, creates 2 Query Pools:
- one, which contains all the Active Directory Domain Controllers in the Asia.com domain
- one, which contains all the Active Directory Domain Controllers in the Euro.com domain
The administrator will configure:
- the Asia Identity Awareness Gateway to get events from the Asia Query Pool
- the two Europe Identity Awareness Gateways to get events from the Europe Query Pool