<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Mac Users and User-ID in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40164#M29457</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are the Macs joined to Active Directory?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 28 Dec 2012 20:46:32 GMT</pubDate>
    <dc:creator>mharding</dc:creator>
    <dc:date>2012-12-28T20:46:32Z</dc:date>
    <item>
      <title>Mac Users and User-ID</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40157#M29450</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is there a way to identify Mac users without turning captive-port on and having them login to get to the web?&amp;nbsp; We are willing to do a mac address reservation so the user gets the same IP.&amp;nbsp; We would really like to put this in without any real changes to the users.&amp;nbsp; Thanks for any help on this.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Apr 2011 22:35:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40157#M29450</guid>
      <dc:creator>expoffsol</dc:creator>
      <dc:date>2011-04-15T22:35:13Z</dc:date>
    </item>
    <item>
      <title>Re: Mac Users and User-ID</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40158#M29451</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You have 3 options for MAC user identification.&lt;/P&gt;&lt;P&gt;1) Captive Portal&lt;/P&gt;&lt;P&gt;2) Install a client that will do AD login&lt;/P&gt;&lt;P&gt;3) Make them connect via SSL VPN and surf through the VPN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Steve Krall&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 21 Apr 2011 22:55:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40158#M29451</guid>
      <dc:creator>skrall</dc:creator>
      <dc:date>2011-04-21T22:55:28Z</dc:date>
    </item>
    <item>
      <title>Re: Mac Users and User-ID</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40159#M29452</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I can confirm making them join AD in Snow Leopard works great. We track about 200+ Macs that way.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 25 Apr 2011 14:45:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40159#M29452</guid>
      <dc:creator>mharding</dc:creator>
      <dc:date>2011-04-25T14:45:29Z</dc:date>
    </item>
    <item>
      <title>Re: Mac Users and User-ID</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40160#M29453</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Guys,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am kind of facing the same issue.&amp;nbsp; Is it possible for you guys to share on how you got it working?&amp;nbsp; My client is using Snow Leopard version 10.1.6 I reckon (I am not an Apple geek, hence very limited knowledge). The MAC users are turning out as "unknown" users on the User-ID agent.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help or guidance on this would be great.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind Regards,&lt;/P&gt;&lt;P&gt;Kalyan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 17 Jul 2012 13:37:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40160#M29453</guid>
      <dc:creator>kalyanram.piratla</dc:creator>
      <dc:date>2012-07-17T13:37:37Z</dc:date>
    </item>
    <item>
      <title>Re: Mac Users and User-ID</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40161#M29454</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is there really no other way other than the three options listed? We have an all Mac/Linux environment. It would be impossible to deploy a Windows AD server for this. To have 300+ users log in via a web form each time they want to get on the internet isn't really an option. We'd have the same problems requesting them to all use the SSL VPN as well, especially when they are in the office. Is there not an agent for Linux LDAP/Radius environments? Are there any plans for one?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Dec 2012 15:51:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40161#M29454</guid>
      <dc:creator>mario11584</dc:creator>
      <dc:date>2012-12-17T15:51:17Z</dc:date>
    </item>
    <item>
      <title>Re: Mac Users and User-ID</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40162#M29455</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can get User-ID to work with OpenDirectory, but it requires a script using the XML API. That is not supported by Palo Alto Networks support, but it's worth looking at. Essentially you would take login events on your OpenDirectory server and syslog those events. Parse through the data and use the API to send those to the User-ID Agent.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here's a popular document that a lot of folks are using:&lt;/P&gt;&lt;P&gt; &lt;A href="https://live.paloaltonetworks.com/docs/DOC-1936"&gt;UserID API integration using Syslog&lt;/A&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Good luck!&lt;/P&gt;&lt;P&gt;Greg Wesson &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Dec 2012 21:13:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40162#M29455</guid>
      <dc:creator>gwesson</dc:creator>
      <dc:date>2012-12-17T21:13:49Z</dc:date>
    </item>
    <item>
      <title>Re: Mac Users and User-ID</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40163#M29456</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have had success with using the Exchange log monitor.&amp;nbsp; Of course that will only work if you have an internal Exchange server.&amp;nbsp; This is one reason I will not be taking our students to GMail anytime soon.&lt;/P&gt;&lt;P&gt;Bob&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Dec 2012 21:21:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40163#M29456</guid>
      <dc:creator>BobW</dc:creator>
      <dc:date>2012-12-17T21:21:36Z</dc:date>
    </item>
    <item>
      <title>Re: Mac Users and User-ID</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40164#M29457</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are the Macs joined to Active Directory?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 28 Dec 2012 20:46:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/mac-users-and-user-id/m-p/40164#M29457</guid>
      <dc:creator>mharding</dc:creator>
      <dc:date>2012-12-28T20:46:32Z</dc:date>
    </item>
  </channel>
</rss>

