<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Upgrade DCs to W2019 stop working Palo Alto agentless in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1223729#M123626</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We upgraded all ours DCs to W2019server and now the Palo Alto can not monitor the users. We use Agentless UserID.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So how can we fix it?&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 13 Mar 2025 09:39:05 GMT</pubDate>
    <dc:creator>BigPalo</dc:creator>
    <dc:date>2025-03-13T09:39:05Z</dc:date>
    <item>
      <title>Upgrade DCs to W2019 stop working Palo Alto agentless</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1223729#M123626</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We upgraded all ours DCs to W2019server and now the Palo Alto can not monitor the users. We use Agentless UserID.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So how can we fix it?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Mar 2025 09:39:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1223729#M123626</guid>
      <dc:creator>BigPalo</dc:creator>
      <dc:date>2025-03-13T09:39:05Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade DCs to W2019 stop working Palo Alto agentless</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1223744#M123628</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/85066"&gt;@BigPalo&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You may be running into this issue -&amp;gt; &lt;A href="https://live.paloaltonetworks.com/t5/general-topics/user-identification-and-winrm-on-http/m-p/481674" target="_blank"&gt;https://live.paloaltonetworks.com/t5/general-topics/user-identification-and-winrm-on-http/m-p/481674&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;There is no fix to my knowledge for WMI.&amp;nbsp; For me, configuring WinRM-HTTP or HTTPS was too complicated, and migrating to the Windows User-ID agent was easy.&amp;nbsp; &lt;A href="https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/user-id/map-ip-addresses-to-users/configure-user-mapping-using-the-windows-user-id-agent/install-the-windows-based-user-id-agent" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/user-id/map-ip-addresses-to-users/configure-user-mapping-using-the-windows-user-id-agent/install-the-windows-based-user-id-agent&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Thu, 13 Mar 2025 11:14:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1223744#M123628</guid>
      <dc:creator>TomYoung</dc:creator>
      <dc:date>2025-03-13T11:14:17Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade DCs to W2019 stop working Palo Alto agentless</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1223820#M123642</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/85066"&gt;@BigPalo&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;WinRM-HTTPS isn't that difficult to setup, but it is dependent on some back-end configuration that you're environment may or may not already be setup to utilize depending on how you're managing your Windows fleet. Personally the change took minutes to get configured, but it was primarily because WinRM was already setup and properly configured.&lt;/P&gt;
&lt;P&gt;There are benefits of using the agent instead of agentless, but in general I personally find it a bit overkill for simple environments. Which method is utilized in deployments personally tends to be more of a conversation about the working dynamic between the server operations group and the group managing the firewall. Agentless is a bit more set and forget if those groups are confrontational versus maintaining the agent.&amp;nbsp; &lt;/P&gt;</description>
      <pubDate>Thu, 13 Mar 2025 21:49:09 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1223820#M123642</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2025-03-13T21:49:09Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade DCs to W2019 stop working Palo Alto agentless</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1224007#M123669</link>
      <description>&lt;P&gt;The PanOS version is 9.1.x. Its a device in EoS. So i dont know if&amp;nbsp;that has anything to do with Windows 2019.&lt;/P&gt;
&lt;P&gt;Why stop working upgrading to W2019 DCs?&amp;nbsp; What is the change? Its documented?&lt;/P&gt;</description>
      <pubDate>Mon, 17 Mar 2025 12:18:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1224007#M123669</guid>
      <dc:creator>BigPalo</dc:creator>
      <dc:date>2025-03-17T12:18:18Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade DCs to W2019 stop working Palo Alto agentless</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1224019#M123672</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/85066"&gt;@BigPalo&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here is the PAN-OS documentation.&amp;nbsp; &lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000wkkfCAA" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000wkkfCAA&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What probably happened is that your previous servers did not have the patch.&amp;nbsp; MS announced that this security fix will be built into future releases.&amp;nbsp; You can find more details by following the 1st URL trail I posted.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Mon, 17 Mar 2025 14:23:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1224019#M123672</guid>
      <dc:creator>TomYoung</dc:creator>
      <dc:date>2025-03-17T14:23:54Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade DCs to W2019 stop working Palo Alto agentless</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1224023#M123673</link>
      <description>&lt;P&gt;Its possible to rollback the patch to work? Doing WinRM is quite annoying&lt;/P&gt;</description>
      <pubDate>Mon, 17 Mar 2025 15:25:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/upgrade-dcs-to-w2019-stop-working-palo-alto-agentless/m-p/1224023#M123673</guid>
      <dc:creator>BigPalo</dc:creator>
      <dc:date>2025-03-17T15:25:21Z</dc:date>
    </item>
  </channel>
</rss>

