<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic user to ip mapping with LDAP in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/user-to-ip-mapping-with-ldap/m-p/72158#M41006</link>
    <description>&lt;P&gt;I have a pa 3020 running 6.0.8 doing LDAP lookups to multiple edir servers,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have many users that PA shows as unknown but when I look on the server I see they are logged in x.x.x.x&lt;/P&gt;
&lt;P&gt;Why does this work for some but not all?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have done the following:&lt;/P&gt;
&lt;P&gt;debug user-id refresh user-id agent all&lt;/P&gt;
&lt;P&gt;debug software restart user-id&lt;/P&gt;
&lt;P&gt;show user server-monitor state CHS1 (which shows it connected 2 seconds ago)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
    <pubDate>Thu, 04 Feb 2016 15:19:31 GMT</pubDate>
    <dc:creator>ccboe</dc:creator>
    <dc:date>2016-02-04T15:19:31Z</dc:date>
    <item>
      <title>user to ip mapping with LDAP</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/user-to-ip-mapping-with-ldap/m-p/72158#M41006</link>
      <description>&lt;P&gt;I have a pa 3020 running 6.0.8 doing LDAP lookups to multiple edir servers,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have many users that PA shows as unknown but when I look on the server I see they are logged in x.x.x.x&lt;/P&gt;
&lt;P&gt;Why does this work for some but not all?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have done the following:&lt;/P&gt;
&lt;P&gt;debug user-id refresh user-id agent all&lt;/P&gt;
&lt;P&gt;debug software restart user-id&lt;/P&gt;
&lt;P&gt;show user server-monitor state CHS1 (which shows it connected 2 seconds ago)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Thu, 04 Feb 2016 15:19:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/user-to-ip-mapping-with-ldap/m-p/72158#M41006</guid>
      <dc:creator>ccboe</dc:creator>
      <dc:date>2016-02-04T15:19:31Z</dc:date>
    </item>
    <item>
      <title>Re: user to ip mapping with LDAP</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/user-to-ip-mapping-with-ldap/m-p/72162#M41007</link>
      <description>&lt;P&gt;Unknown comes when you have enable the user identificate on the zone but firewall doesn't have the user-ip mapping for the ip address.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Have you configured agentless or agent configuration for user-ip mapping. Make sure you add all the domain controller. Check if you have configured any Included/Exclude list or not.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope this helps.&lt;/P&gt;</description>
      <pubDate>Thu, 04 Feb 2016 17:20:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/user-to-ip-mapping-with-ldap/m-p/72162#M41007</guid>
      <dc:creator>pankaku</dc:creator>
      <dc:date>2016-02-04T17:20:31Z</dc:date>
    </item>
    <item>
      <title>Re: user to ip mapping with LDAP</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/user-to-ip-mapping-with-ldap/m-p/72365#M41067</link>
      <description>&lt;P&gt;Make sure the user &amp;nbsp;name which &amp;nbsp; you are using have proper permission &amp;nbsp;to read the log events&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Try using admin name and credentials to see if that make any change ( if you are not usning admin user )&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Feb 2016 14:29:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/user-to-ip-mapping-with-ldap/m-p/72365#M41067</guid>
      <dc:creator>tsrivastav</dc:creator>
      <dc:date>2016-02-08T14:29:35Z</dc:date>
    </item>
  </channel>
</rss>

