> Source: [sk98824](https://support.checkpoint.com/results/sk/sk98824)

# sk98824 - Identity Awareness is not logging AD information correctly

| Property | Value |
|----------|-------|
| Solution ID | sk98824 |
| Date Created | 2014-03-24 |
| Last Modified | 2018-10-14 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Windows, Gaia |

## Symptoms

- * Running on the Security Gateway:  

  `[Expert@hostname]# adlog a query user <user name>`  

  does not return correct information.

* When logged into the Active Directory Domain Controller with the user account configured in LDAP Authentication, the following command did not return correct information:  

  `dsquery user --name "<first name> <last name>"
  `  

  For example:  

  `C:\Users\Administrator>dsquery user -name "tim oshen"`  
  `
  C:\Users\Administrator>`  


  When you run "`C:\dsquery user -samID xxxx"`: returns a correct response.  

  For example:  

  `(C:\Users\Administrator>dsquery user -samID tim`  
  `
  "CN=Tim,CN=Users,DC=LAB,DC=CP"`  
  `
  C:\Users\Administrator>).`  

* If the second command returns a correct response, the AD Domain Controllers are not configured to correctly provide information to Check Point. The DC's properties need to be modified to report correct fields and data types to Check Point.

* If not getting a response to either command, user may not have domain admin access rights with the LDAP Account Unit user they are using. The user being used, and the one you log onto the DC with should be the same.

## Cause

AD Domain Controllers are not configured to correctly provide information to Check Point. The Active Directory DC's properties need to be modified to report correct fields and data types to Check Point.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
