<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Mapping users with user agent in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38757#M28414</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;to identify users , i&amp;nbsp; installed user-id-agent in AD, and then i added the user-id in palo alto &lt;/P&gt;&lt;P&gt;the status of the user agent in paloalto is connected, so when i tested the user agent in policies, i can apply just for group that i selected&lt;/P&gt;&lt;P&gt;but i can't see the users on paloalto , rather thant i see the users connected with there address in user-agent on AD&lt;/P&gt;&lt;P&gt;so how can i get the users in paloalto without adding ldap server&lt;/P&gt;&lt;P&gt;also, i want to know if i can get all users or just the connected ones&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thank's in advance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;best regards&lt;/P&gt;&lt;P&gt;Sarah &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 05 Dec 2012 09:00:18 GMT</pubDate>
    <dc:creator>atelcom</dc:creator>
    <dc:date>2012-12-05T09:00:18Z</dc:date>
    <item>
      <title>Mapping users with user agent</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38757#M28414</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;to identify users , i&amp;nbsp; installed user-id-agent in AD, and then i added the user-id in palo alto &lt;/P&gt;&lt;P&gt;the status of the user agent in paloalto is connected, so when i tested the user agent in policies, i can apply just for group that i selected&lt;/P&gt;&lt;P&gt;but i can't see the users on paloalto , rather thant i see the users connected with there address in user-agent on AD&lt;/P&gt;&lt;P&gt;so how can i get the users in paloalto without adding ldap server&lt;/P&gt;&lt;P&gt;also, i want to know if i can get all users or just the connected ones&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thank's in advance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;best regards&lt;/P&gt;&lt;P&gt;Sarah &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Dec 2012 09:00:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38757#M28414</guid>
      <dc:creator>atelcom</dc:creator>
      <dc:date>2012-12-05T09:00:18Z</dc:date>
    </item>
    <item>
      <title>Re: Mapping users with user agent</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38758#M28415</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Could you check firewall on paloalto user agent application installed server.It should be disabled or you should allow ports which you set up device -&amp;gt;user identification on your palo alto management site.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Dec 2012 15:04:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38758#M28415</guid>
      <dc:creator>DSM_SYS</dc:creator>
      <dc:date>2012-12-05T15:04:59Z</dc:date>
    </item>
    <item>
      <title>Re: Mapping users with user agent</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38759#M28416</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, the status of user-agent on palo alto is connected , and the service of user-agent on AD is running et it shows no erros , it get also the member connected with their adresses &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Dec 2012 15:22:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38759#M28416</guid>
      <dc:creator>atelcom</dc:creator>
      <dc:date>2012-12-05T15:22:33Z</dc:date>
    </item>
    <item>
      <title>Re: Mapping users with user agent</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38760#M28417</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Sarah, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you please verify if you have Under Network Tab----&amp;gt;Zones -------&amp;gt; enabled user identification is checked where you need to identify the user.&lt;/P&gt;&lt;P&gt;Please let us know if this helps.&lt;/P&gt;&lt;P&gt;Thankyou&lt;/P&gt;&lt;P&gt;Numan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Dec 2012 21:42:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38760#M28417</guid>
      <dc:creator>mbutt</dc:creator>
      <dc:date>2012-12-05T21:42:23Z</dc:date>
    </item>
    <item>
      <title>Re: Mapping users with user agent</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38761#M28418</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;mbutt's suggestion is for the userid to actually take effect for your security policies.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In order to be able to select specific users (or groups) when you setup userid for a particular security policy you need to have the ldap server configuration active on your PA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You either let PA connect on its own to your current LDAP service or you let your PA box proxy through the userid agent.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Dec 2012 22:48:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38761#M28418</guid>
      <dc:creator>mikand</dc:creator>
      <dc:date>2012-12-05T22:48:23Z</dc:date>
    </item>
    <item>
      <title>Re: Mapping users with user agent</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38762#M28419</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;STRONG style="color: #000000; font-family: Arial, Helvetica, sans-serif; font-size: 11px; background-color: #ffffff;"&gt;&lt;A _jive_internal="true" class="jiveTT-hover-user jive-username-link" data-avatarid="-1" data-externalid="" data-presence="null" data-userid="11699" data-username="mbutt" href="https://live.paloaltonetworks.com/people/mbutt" id="jive-1169926149068872736579"&gt;mbutt&lt;/A&gt; the user identification under zone is already enabled, &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG style="color: #000000; font-family: Arial, Helvetica, sans-serif; font-size: 11px; background-color: #ffffff;"&gt;&lt;STRONG style="font-size: 11px; font-family: Arial, Helvetica, sans-serif; color: #000000; background-color: #ffffff;"&gt;&lt;A _jive_internal="true" class="jiveTT-hover-user jive-username-link" data-avatarid="-1" data-externalid="" data-presence="null" data-userid="3245" data-username="mikand" href="https://live.paloaltonetworks.com/people/mikand" id="jive-324526149068880412190" style="padding: 0 3px 0 0; font-weight: inherit; font-style: inherit; font-size: 1.1em; font-family: inherit; text-decoration: underline; color: #316989;"&gt;mikand&lt;/A&gt;&lt;/STRONG&gt;, i thought that i could get user without adding ldap server , just with user-id agent installed on AD&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG style="color: #000000; font-family: Arial, Helvetica, sans-serif; font-size: 11px; background-color: #ffffff;"&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Dec 2012 15:26:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38762#M28419</guid>
      <dc:creator>atelcom</dc:creator>
      <dc:date>2012-12-06T15:26:37Z</dc:date>
    </item>
    <item>
      <title>Re: Mapping users with user agent</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38763#M28420</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You could achieve user to group mapping with the old agent version 3.1.2 and you wont have to configure the LDAP server profile on the PAN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Syed Hasnain&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Dec 2012 19:41:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38763#M28420</guid>
      <dc:creator>shasnain</dc:creator>
      <dc:date>2012-12-06T19:41:12Z</dc:date>
    </item>
    <item>
      <title>Re: Mapping users with user agent</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38764#M28421</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks to all for your helps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;when i try to add the user in policies, the PAN-OS show me just groups no users &lt;/P&gt;&lt;P&gt;but i find the user when i type his name in the case&lt;/P&gt;&lt;P&gt;i think that pan works like that , it doesn't show you&amp;nbsp; the users until you type their name&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 09 Dec 2012 15:35:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38764#M28421</guid>
      <dc:creator>atelcom</dc:creator>
      <dc:date>2012-12-09T15:35:28Z</dc:date>
    </item>
    <item>
      <title>Re: Mapping users with user agent</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38765#M28422</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;i'm running pan-os version 5.1, so when i add the server in&amp;nbsp; device-user identification-mapping user-server monitor&lt;/P&gt;&lt;P&gt;and i click&amp;nbsp; to discover, i get " no domain configured " &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 09 Dec 2012 15:44:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38765#M28422</guid>
      <dc:creator>atelcom</dc:creator>
      <dc:date>2012-12-09T15:44:13Z</dc:date>
    </item>
    <item>
      <title>Re: Mapping users with user agent</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38766#M28423</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This can be resolved by adding your domain in Device, Setup, Management, General Settings and add the value for domain.&amp;nbsp; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 28 Dec 2012 19:05:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mapping-users-with-user-agent/m-p/38766#M28423</guid>
      <dc:creator>gcpanman</dc:creator>
      <dc:date>2012-12-28T19:05:29Z</dc:date>
    </item>
  </channel>
</rss>

