RADIUS Accounting

You can configure an Identity AwarenessClosed Check Point Software Blade on a Security Gateway that enforces network access and audits data based on network location, the identity of the user, and the identity of the computer. Acronym: IDA. Gateway to use RADIUS Accounting (RFC 2866) to get user and computer identities directly from a RADIUS Accounting Client.

The Identity Awareness Gateway uses this information to apply access permissions to the connection.

General Overflow

The RADIUS Accounting Server gets identity data from RADIUS Accounting Requests generated by the RADIUS Accounting Client.

The Identity Awareness Gateway uses the data from these requests to get user and device group information from the LDAP server.

Based on the information from the LDAP server, the Identity Awareness Gateway applies the configured Access Control rules to traffic generated by users and their computers.

Item

Description

1

RADIUS server with RADIUS Accounting Client enabled.

Sends RADIUS Accounting Requests to the Identity Awareness Gateway.

2

Identity Awareness Gateway works as a RADIUS Accounting Server.

3

LDAP server.

Sends identity data for the user to the Identity Awareness Gateway.

4

Internal network resources.

5

Internet.

6

Remote laptops and mobile devices.