<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic User Identification Agent with Active Directory in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/user-identification-agent-with-active-directory/m-p/4926#M3621</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I know that PA Firewall uses MGT interface to connect to user Identification Agent, I know that most of the other services can be set to use any other interface with the "Service Route Configuration" commands.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there any method to use any other interface as a source for communication with User Identification Agent? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 21 Dec 2009 23:21:43 GMT</pubDate>
    <dc:creator>a.cadarso</dc:creator>
    <dc:date>2009-12-21T23:21:43Z</dc:date>
    <item>
      <title>User Identification Agent with Active Directory</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/user-identification-agent-with-active-directory/m-p/4926#M3621</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I know that PA Firewall uses MGT interface to connect to user Identification Agent, I know that most of the other services can be set to use any other interface with the "Service Route Configuration" commands.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there any method to use any other interface as a source for communication with User Identification Agent? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 21 Dec 2009 23:21:43 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/user-identification-agent-with-active-directory/m-p/4926#M3621</guid>
      <dc:creator>a.cadarso</dc:creator>
      <dc:date>2009-12-21T23:21:43Z</dc:date>
    </item>
    <item>
      <title>Re: User Identification Agent with Active Directory</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/user-identification-agent-with-active-directory/m-p/4927#M3622</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;!--[if !mso]&gt;
&lt;style&gt;
v\:* {behavior:url(#default#VML);}
o\:* {behavior:url(#default#VML);}
w\:* {behavior:url(#default#VML);}
.shape {behavior:url(#default#VML);}
&lt;/style&gt;
&lt;![endif]--&gt;&lt;!--[if gte mso 10]&gt;
&lt;style&gt;
 /* Style Definitions */
 table.MsoNormalTable
	{mso-style-name:"Table Normal";
	mso-tstyle-rowband-size:0;
	mso-tstyle-colband-size:0;
	mso-style-noshow:yes;
	mso-style-priority:99;
	mso-style-qformat:yes;
	mso-style-parent:"";
	mso-padding-alt:0in 5.4pt 0in 5.4pt;
	mso-para-margin:0in;
	mso-para-margin-bottom:.0001pt;
	mso-pagination:widow-orphan;
	font-size:10.0pt;
	font-family:"Times New Roman","serif";
	mso-fareast-font-family:"Times New Roman";}
&lt;/style&gt;
&lt;![endif]--&gt;&lt;SPAN style="font-size: 10pt; font-family: &amp;amp;quot;Arial&amp;amp;quot;,&amp;amp;quot;sans-serif&amp;amp;quot;; color: navy;"&gt;&lt;!--[if gte vml 1]&gt;&lt;v:shapetype  id="_x0000_t75" coordsize="21600,21600" o:spt="75" o:preferrelative="t"  path="m@4@5l@4@11@9@11@9@5xe" filled="f" stroked="f"&gt; &lt;v:stroke joinstyle="miter" &gt;&lt;/v:stroke&gt; &lt;v:formulas&gt; &lt;v:f eqn="if lineDrawn pixelLineWidth 0" &gt;&lt;/v:f&gt; &lt;v:f eqn="sum @0 1 0" &gt;&lt;/v:f&gt; &lt;v:f eqn="sum 0 0 @1" &gt;&lt;/v:f&gt; &lt;v:f eqn="prod @2 1 2" &gt;&lt;/v:f&gt; &lt;v:f eqn="prod @3 21600 pixelWidth" &gt;&lt;/v:f&gt; &lt;v:f eqn="prod @3 21600 pixelHeight" &gt;&lt;/v:f&gt; &lt;v:f eqn="sum @0 0 1" &gt;&lt;/v:f&gt; &lt;v:f eqn="prod @6 1 2" &gt;&lt;/v:f&gt; &lt;v:f eqn="prod @7 21600 pixelWidth" &gt;&lt;/v:f&gt; &lt;v:f eqn="sum @8 21600 0" &gt;&lt;/v:f&gt; &lt;v:f eqn="prod @7 21600 pixelHeight" &gt;&lt;/v:f&gt; &lt;v:f eqn="sum @10 21600 0" &gt;&lt;/v:f&gt; &lt;/v:formulas&gt; &lt;v:path o:extrusionok="f" gradientshapeok="t" o:connecttype="rect" &gt;&lt;/v:path&gt; &lt;o:lock v:ext="edit" aspectratio="t" &gt;&lt;/o:lock&gt; &lt;/v:shapetype&gt;&lt;v:shape id="_x0000_i1025" type="#_x0000_t75" style='width:674.25pt;  height:513pt'&gt; &lt;v:imagedata src="file:///C:\DOCUME~1\TSUGAN~1\LOCALS~1\Temp\msohtmlclip1\01\clip_image001.png"   o:title="" &gt;&lt;/v:imagedata&gt; &lt;/v:shape&gt;&lt;![endif]--&gt;&lt;!--[if !vml]--&gt;&lt;IMG height="684" src="https://live.paloaltonetworks.com/" width="899" /&gt;&lt;!--[endif]--&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Actually, you *can* use the Service Route setting to route communications to the User-ID Agent.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the Service Route Configuration dialog, make sure that you have selected "Show Destinations" at the lower&lt;/P&gt;&lt;P&gt;left hand corner of the dialog. You will see a Destination table on the right with IP/FQDN and Source Address mappings.&lt;/P&gt;&lt;P&gt;At the bottom, there will be a place to add additional mappings.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the "IP Address or FQDN" field, enter the IP address of your system where the User-ID Agent is installed.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then, pull down available interfaces on your device and select the appropriate source IP address.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="Capture-12-21-00001.jpg" class="jive-image-thumbnail jive-image" onclick="" src="https://live.paloaltonetworks.com/servlet/JiveServlet/downloadImage/1170/Capture-12-21-00001.jpg" width="450" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Dec 2009 00:36:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/user-identification-agent-with-active-directory/m-p/4927#M3622</guid>
      <dc:creator>migration</dc:creator>
      <dc:date>2009-12-22T00:36:17Z</dc:date>
    </item>
    <item>
      <title>Re: User Identification Agent with Active Directory</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/user-identification-agent-with-active-directory/m-p/4928#M3623</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are there any internal downside of using this method to get data for the pan-agent or ts-agent?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I mean to "force" route it through the dataplane?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 26 Feb 2010 15:30:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/user-identification-agent-with-active-directory/m-p/4928#M3623</guid>
      <dc:creator>rps</dc:creator>
      <dc:date>2010-02-26T15:30:25Z</dc:date>
    </item>
  </channel>
</rss>

