<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic User Id Mapping/redistribution both in Strata and on a Windows DC in Strata Cloud Manager</title>
    <link>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1231860#M28</link>
    <description>&lt;P&gt;Does anyone have a step by step guide of setting up a User Id agent on a DC, mapping Ip to users and redistributing this data in Strata Cloud Manager. Currently, the User ID agent is pulling data from the servers and has IP-User entries. However, only mobile users are being mapped in the Firewall logs in Strata.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also, the user Id agent does not show that it is connected to any devices i.e Prisma/Firewall.&lt;/P&gt;</description>
    <pubDate>Tue, 17 Jun 2025 02:49:28 GMT</pubDate>
    <dc:creator>T.OluOjo</dc:creator>
    <dc:date>2025-06-17T02:49:28Z</dc:date>
    <item>
      <title>User Id Mapping/redistribution both in Strata and on a Windows DC</title>
      <link>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1231860#M28</link>
      <description>&lt;P&gt;Does anyone have a step by step guide of setting up a User Id agent on a DC, mapping Ip to users and redistributing this data in Strata Cloud Manager. Currently, the User ID agent is pulling data from the servers and has IP-User entries. However, only mobile users are being mapped in the Firewall logs in Strata.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also, the user Id agent does not show that it is connected to any devices i.e Prisma/Firewall.&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jun 2025 02:49:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1231860#M28</guid>
      <dc:creator>T.OluOjo</dc:creator>
      <dc:date>2025-06-17T02:49:28Z</dc:date>
    </item>
    <item>
      <title>Re: User Id Mapping/redistribution both in Strata and on a Windows DC</title>
      <link>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1236010#M44</link>
      <description>&lt;P&gt;I think this is what you are looking for&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/strata-cloud-manager/getting-started/manage-configuration-ngfw-and-prisma-access/identity-services/identity-redistribution" target="_blank"&gt;Manage: Identity Redistribution&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 14 Aug 2025 13:59:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1236010#M44</guid>
      <dc:creator>ErnestoM</dc:creator>
      <dc:date>2025-08-14T13:59:49Z</dc:date>
    </item>
    <item>
      <title>Re: User Id Mapping/redistribution both in Strata and on a Windows DC</title>
      <link>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1236035#M47</link>
      <description>&lt;P&gt;Thank you for the link. Yes, that document indeed helped. I will add the full workflow in this thread for anyone who may also need it.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Aug 2025 00:24:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1236035#M47</guid>
      <dc:creator>T.OluOjo</dc:creator>
      <dc:date>2025-08-15T00:24:51Z</dc:date>
    </item>
    <item>
      <title>Re: User Id Mapping/redistribution both in Strata and on a Windows DC</title>
      <link>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1236037#M48</link>
      <description>&lt;P&gt;The workflow in my SD WAN environment for anyone who may need.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. Install Windows User-ID agent on server to collect auth logs from DCs/IDPs. See&amp;nbsp;Step-by-Step Palo Alto Windows User-ID Agent Setup Guide [2024] by NetSums on YT&amp;nbsp;&lt;A href="https://www.youtube.com/watch?v=TEXU5LI72t4&amp;amp;t=1209s" target="_blank"&gt;Step-by-Step Palo Alto Windows User-ID Agent Setup Guide [2024]&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;2. Virtual FW required per Palo documentation. Deploy VM &lt;A href="https://docs.paloaltonetworks.com/vm-series/10-1/vm-series-deployment" target="_blank"&gt;VM-Series Deployment Guide.&lt;/A&gt;&amp;nbsp;and configure the Windows User-ID agent as a Data Redistribution agent in the PA-VM&amp;nbsp;&lt;/P&gt;
&lt;P&gt;3. Ensure Security policies exist on PA VM to allow communication between PA-VM and Windows User-Id agent. (Server end also needed a firewall rule in my case to allow connections on Port 5007).&amp;nbsp;Monitor&amp;gt;&amp;gt;User-ID on PA VM should be populated afterwards.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;4. Use existing or create a new SC per&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/strata-cloud-manager/getting-started/manage-configuration-ngfw-and-prisma-access/identity-services/identity-redistribution" target="_self"&gt;Manage Identity&lt;/A&gt;. Depending on your end goal, add the PA-VM as a redistribution agent sending to RN or SC nodes.&lt;/P&gt;
&lt;P&gt;5. If configured correctly,&amp;nbsp; Device&amp;gt;Data redistribution&amp;gt;&amp;gt;Clients&amp;nbsp;on PA-VM will be populated with the EBGP router address of the SC. Firewall/User-id logs in Strata will also reflect the PA-VM as the Mapping Data Source.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Aug 2025 00:46:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1236037#M48</guid>
      <dc:creator>T.OluOjo</dc:creator>
      <dc:date>2025-08-15T00:46:23Z</dc:date>
    </item>
    <item>
      <title>Re: User Id Mapping/redistribution both in Strata and on a Windows DC</title>
      <link>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1236713#M55</link>
      <description>&lt;P&gt;HI T.&lt;/P&gt;
&lt;P&gt;In all honesty start as soon as possible to use Cloud identity Engine as a replacement, it is so much easier to deploy (free) and manage, and it also uses much fewer firewall and network resources, this can slowly be integrated into your existing environment without causing any disruption as can be run during migration in parallel with legacy User_ID, its really a no brainer and i no longer even consider using User-ID&lt;/P&gt;</description>
      <pubDate>Tue, 26 Aug 2025 11:48:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1236713#M55</guid>
      <dc:creator>GabrielBryson</dc:creator>
      <dc:date>2025-08-26T11:48:34Z</dc:date>
    </item>
    <item>
      <title>Re: User Id Mapping/redistribution both in Strata and on a Windows DC</title>
      <link>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1236912#M56</link>
      <description>&lt;P&gt;Thanks for the recommendation, Gabriel. I will look into the CIE and see how we go with that. If you do have any useful links/docos please feel free to share them. Thanks!&lt;/P&gt;</description>
      <pubDate>Fri, 29 Aug 2025 00:07:16 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/strata-cloud-manager/user-id-mapping-redistribution-both-in-strata-and-on-a-windows/m-p/1236912#M56</guid>
      <dc:creator>T.OluOjo</dc:creator>
      <dc:date>2025-08-29T00:07:16Z</dc:date>
    </item>
  </channel>
</rss>

