I want to create a jump box accessed through a check point firewall that is connected to an internal domain. I also want to leverage this active directory for logins.
However, I cannot reliably get the auth proxy to work unless the DC has a connection to the check point. I have checked the proxy conf for the IP to point to the DC, but unless the check point has access to the DC, I get 2 sequential push notifications on duo and an authentication failure complaining about Office Mode.
What am I missing?