> Source: [sk173808](https://support.checkpoint.com/results/sk/sk173808)

# sk173808 - Users from child domain are not identified 

| Property | Value |
|----------|-------|
| Solution ID | sk173808 |
| Date Created | 2021-06-01 |
| Last Modified | 2021-06-03 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |

## Symptoms

- After an upgrade to R80.40, the authentication of users in a child domain fails.

## Cause

In R80.30, users are matched against each domain branch separately until there is a match to the applicable domain.

But in R80.40, users are consolidated into one common suffix.

The issue occurs when the customer has configured branches outside of the domain that does not use the global catalog.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
