I would like to create a rule which allows a specific user or group of users to access a specific Windows share directory.
I want to be able to control access to various shares on a machine depending on userID.
I know it can be done on CheckPoint NG AI, I saw it done during a CheckPoint class last year. My memory has failed me, and my notes are missing this information. I probably thought I would never need to know how to do this
__________________
--
Later Dafuser...
"They say if you play a Microsoft CD backwards you hear satanic messages. That's nothing, because if you play it forwards it installs Windows."
You need to create a CIFS resource, specifying the server name and the share name (don't forget the IPC$ share if it is Windows).
In your rulebase you should then select "Add with resource" in the services column. Select Microsoft-DS or NBSession, depending on whether your clients are using IP or NetBIOS, and the CIFS resource you created. You can only add one resource to a rule. If you need to add more (eg. Microsoft-DS and NBSession) then you will need to create a rule for each.