Advanced Search
Search Results
272 total results found
ENTRA053 - Entra Named Location Is Not an IP-Based Location
Agent error code #ENTRA053 indicates that the configured Named Location exists, but its @odata.type is not #microsoft.graph.ipNamedLocation. Knocknoc only manages IP-based Named Locations. Country-based and unknown-region Named Locations are not supported. Com...
ENTRA054 - Invalid or Unexpected Response from Microsoft Graph
Agent error code #ENTRA054 indicates that Microsoft Graph returned a 2xx status, but the response body did not match the expected schema. The agent could not decode the Named Location response or the OAuth token response. This error is rare. It usually points ...
Check Point
Knocknoc controls access on Check Point gateways in one of two ways. In Active mode the Knocknoc agent pushes each authenticated user's IP to the gateway over the API, assigning a pre-existing Access Role; firewall rules that match that role then allow the tra...
CHKP000 - Failed to Connect to Check Point Gateway
Agent error code #CHKP000 indicates that the Knocknoc agent could not open a network connection to the Check Point gateway's Identity Awareness Web API. The connection failed before any TLS handshake or authentication took place. This is a network-level failur...
CHKP001 - Check Point Connection Timed Out
Agent error code #CHKP001 indicates that the Knocknoc agent reached the network path to the Check Point gateway but the gateway did not respond within the request time budget. This differs from #CHKP000, where the connection could not be opened at all. With #C...
CHKP002 - Check Point TLS/SSL Certificate Error
Agent error code #CHKP002 indicates that the Knocknoc agent opened a connection to the Check Point gateway but could not establish a trusted TLS session. The gateway's certificate was not accepted by the agent host. Common causes include: The gateway presents...
CHKP003 - Check Point Authentication Failed
Agent error code #CHKP003 indicates that the Check Point gateway rejected the shared secret the Knocknoc agent presented to the Identity Awareness Web API. The gateway returned an explicit "wrong password" response. This is distinct from #CHKP004, where the se...
CHKP004 - Check Point Source IP Not Authorised
Agent error code #CHKP004 indicates that the Check Point gateway recognized the shared secret but refused the request because the agent connected from an IP address the Identity Web API client does not accept. The Identity Web API enforces a source-IP allow-li...
CHKP005 - Check Point Request Refused
Agent error code #CHKP005 indicates that the Check Point gateway refused the request with a bare HTTP 404 or 403 and no specific error code in the body. The gateway gives the same response whether the shared secret is wrong or the agent's source IP is not auth...
CHKP050 - Failed to Push Identity to Check Point Gateway
Agent error code #CHKP050 indicates that the Knocknoc agent's request to register a user's identity on the Check Point gateway was rejected, and the rejection did not match a more specific cause. This is the generic "push failed" code. When Knocknoc can identi...
CHKP051 - Failed to Remove Identity from Check Point Gateway
Agent error code #CHKP051 indicates that the Knocknoc agent's request to remove a user's identity from the Check Point gateway was rejected on grant revocation or logout. A "not found" response on removal is not treated as this error. If the identity is alread...
CHKP052 - Check Point Access Role Not Found
Agent error code #CHKP052 indicates that the Access Role configured on the Knoc does not correspond to an Access Role object on the Check Point gateway. Knocknoc never creates or modifies Access Roles. It only assigns an existing role to authenticated user IPs...
CHKP053 - Identity Awareness Blade Not Enabled
Agent error code #CHKP053 indicates that the Check Point gateway's response showed the Identity Awareness blade is not active. Without that blade the Identity Web API is not served, so Knocknoc cannot register identities. A bare 404 or 403 without a clear "ide...
CHKP054 - Session Timeout Below Gateway Minimum
Agent error code #CHKP054 indicates that the per-identity session timeout Knocknoc sent with the identity was below the minimum the Check Point gateway will accept. The gateway rejected the registration as a result. When Knocknoc registers an identity it sets ...
CHKP400 - Invalid Response from Check Point Gateway
Agent error code #CHKP400 indicates that the Knocknoc agent received a response from the configured endpoint that it could not parse as an Identity Web API reply. This almost always means the Gateway Hostname or its port is pointing at something that is not th...
CHKP401 - Check Point Gateway Server Error
Agent error code #CHKP401 indicates that the Check Point gateway returned a server error (HTTP 5xx) in response to an Identity Web API request. The request reached the API but the gateway failed to process it on its side. Unlike the 4xx-class errors, this is a...
v26.06
Knocknoc 26.06 is one of our largest releases yet! Six new platform integrations, a native iOS app, improved CGNAT handling, SAML validation for Admins along with admin-group provisioning, smarter self-healing orchestration agents for less-reliable control lay...
Knocknoc iOS & Android App
Closed beta. The Knocknoc mobile app is currently available to beta testers only and is not yet published on the Apple App Store or Google Play. The Knocknoc mobile app keeps your access working as you move around. Knocknoc grants access based on your current ...