<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Error useridd log in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/error-useridd-log/m-p/76737#M42410</link>
    <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;it seems you're using SSL, are you sure ssl is enabled on the active directory ?&lt;/P&gt;
&lt;P&gt;you could try disabling ssl to see if that clears your issue&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;you mention users are working fine: do you mean user to IP mapping works? this is usually collected through a userID agent or clientless WMI configuration on the fiorewall, this is a different type of channel&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;hope this helps&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
    <pubDate>Wed, 20 Apr 2016 14:02:11 GMT</pubDate>
    <dc:creator>reaper</dc:creator>
    <dc:date>2016-04-20T14:02:11Z</dc:date>
    <item>
      <title>Error useridd log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/error-useridd-log/m-p/76727#M42405</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We are having a lot of strage log in the useridd.log file. We dont know why we are receiving these logs.&lt;/P&gt;
&lt;P&gt;The LDAP is configured correctly and we have the read permissions for everything in AD user. Users are working fine.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please why are we recinivng these logs and how ca we solve??&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;2016-04-19 09:01:58.577 +0200 connecting to ldap://[192.168.49.81]:636 with StartTLS...&lt;BR /&gt;2016-04-19 09:01:58.579 +0200 Error: pan_ldap_init_ex(pan_ldap.c:252): start_tls_s return(-1) : Can't contact LDAP server&lt;BR /&gt;2016-04-19 09:01:58.579 +0200 connecting to ldaps://[192.168.49.81]:636 ...&lt;BR /&gt;2016-04-19 09:01:58.585 +0200 ldap cfg LDAP_xx connected to 192.168.49.81:636(index 1)&lt;BR /&gt;&amp;#27;[44;1H&amp;#27;[K&amp;#27;[7m99%&amp;#27;[27m&amp;#27;[44;1H&amp;#27;[44;1H&amp;#27;[K2016-04-19 09:01:58.587 +0200 Error: pan_ldap_ctrl_search_single_group(pan_ldap_ctrl.c:2657): failed to get group obj for 'cn=pa_vectorsf,ou=firewall_groups,ou=groups,&lt;BR /&gt;ou=mng,dc=intranet,dc=,dc=es'&lt;BR /&gt;2016-04-19 09:01:58.587 +0200 Error: pan_ldap_ctrl_query_single_included_group(pan_ldap_ctrl.c:2928): pan_ldap_ctrl_search_single_group() failed for 'cn=pa_vectorsf,ou&lt;BR /&gt;=firewall_groups,ou=groups,ou=mng,dc=intranet,dc=xxxxx,dc=es'&lt;BR /&gt;2016-04-19 09:01:58.587 +0200 Error: pan_ldap_ctrl_query_limited_groups(pan_ldap_ctrl.c:3030): pan_ldap_ctrl_query_single_included_group() failed&lt;BR /&gt;2016-04-19 09:01:58.638 +0200 Error: pan_ldap_ctrl_search_single_group(pan_ldap_ctrl.c:2657): failed to get group obj for 'cn=pa_vdi_externos,ou=firewall_groups,ou=gro&lt;BR /&gt;ups,ou=mng,dc=intranet,dc=xxxxx,dc=es'&lt;BR /&gt;2016-04-19 09:01:58.638 +0200 Error: pan_ldap_ctrl_query_single_included_group(pan_ldap_ctrl.c:2928): pan_ldap_ctrl_search_single_group() failed for 'cn=pa_vdi_externo&lt;BR /&gt;s,ou=firewall_groups,ou=groups,ou=mng,dc=intranet,dc=xxxxx,dc=es'&lt;BR /&gt;2016-04-19 09:01:58.638 +0200 Error: pan_ldap_ctrl_query_limited_groups(pan_ldap_ctrl.c:3030): pan_ldap_ctrl_query_single_included_group() failed&lt;BR /&gt;2016-04-19 09:01:58.788 +0200 Error: pan_ldap_ctrl_search_single_group(pan_ldap_ctrl.c:2657): failed to get group obj for 'cn=vdi_sap_deloitte_sin_office,ou=vdi-nutani&lt;BR /&gt;x,ou=groups,ou=mng,dc=intranet,dc=xxxxx,dc=es'&lt;BR /&gt;2016-04-19 09:01:58.788 +0200 Error: pan_ldap_ctrl_query_single_included_group(pan_ldap_ctrl.c:2928): pan_ldap_ctrl_search_single_group() failed for 'cn=vdi_sap_deloit&lt;BR /&gt;te_sin_office,ou=vdi-nutanix,ou=groups,ou=mng,dc=intranet,dc=xxxxx,dc=es'&lt;BR /&gt;2016-04-19 09:01:58.788 +0200 Error: pan_ldap_ctrl_query_limited_groups(pan_ldap_ctrl.c:3030): pan_ldap_ctrl_query_single_included_group() failed&lt;BR /&gt;2016-04-19 09:01:59.152 +0200 Error: pan_ldap_ctrl_search_single_group(pan_ldap_ctrl.c:2657): failed to get group obj for 'cn=pa_vdi_ipm,ou=firewall_groups,ou=groups,o&lt;BR /&gt;u=mng,dc=intranet,dc=xxxxx,dc=es'&lt;BR /&gt;2016-04-19 09:01:59.152 +0200 Error: pan_ldap_ctrl_query_single_included_group(pan_ldap_ctrl.c:2928): pan_ldap_ctrl_search_single_group() failed for 'cn=pa_vdi_ipm,ou=&lt;BR /&gt;firewall_groups,ou=groups,ou=mng,dc=intranet,dc=xxxxx,dc=es'&lt;BR /&gt;2016-04-19 09:01:59.152 +0200 Error: pan_ldap_ctrl_query_limited_groups(pan_ldap_ctrl.c:3030): pan_ldap_ctrl_query_single_included_group() failed&lt;BR /&gt;2016-04-19 09:01:59.153 +0200 Error: pan_ldap_ctrl_search_single_group(pan_ldap_ctrl.c:2657): failed to get group obj for 'cn=pa_vdi_opentrends,ou=firewall_groups,ou=g&lt;BR /&gt;roups,ou=mng,dc=intranet,dc=xxxxx,dc=es'&lt;BR /&gt;2016-04-19 09:01:59.153 +0200 Error: pan_ldap_ctrl_query_single_included_group(pan_ldap_ctrl.c:2928): pan_ldap_ctrl_search_single_group() failed for 'cn=pa_vdi_opentre&lt;BR /&gt;nds,ou=firewall_groups,ou=groups,ou=mng,dc=intranet,dc=xxxxx,dc=es'&lt;BR /&gt;2016-04-19 09:01:59.153 +0200 Error: pan_ldap_ctrl_query_limited_groups(pan_ldap_ctrl.c:3030): pan_ldap_ctrl_query_single_included_group() failed&lt;BR /&gt;2016-04-19 09:01:59.233 +0200 Error: pan_ldap_ctrl_search_single_group(pan_ldap_ctrl.c:2657): failed to get group obj for 'cn=cc-1129,ou=cc_groups,ou=security groups,o&lt;BR /&gt;u=groups,ou=mng,dc=intranet,dc=xxxxx,dc=es'&lt;/P&gt;</description>
      <pubDate>Wed, 20 Apr 2016 10:11:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/error-useridd-log/m-p/76727#M42405</guid>
      <dc:creator>soporteseguridad</dc:creator>
      <dc:date>2016-04-20T10:11:41Z</dc:date>
    </item>
    <item>
      <title>Re: Error useridd log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/error-useridd-log/m-p/76737#M42410</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;it seems you're using SSL, are you sure ssl is enabled on the active directory ?&lt;/P&gt;
&lt;P&gt;you could try disabling ssl to see if that clears your issue&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;you mention users are working fine: do you mean user to IP mapping works? this is usually collected through a userID agent or clientless WMI configuration on the fiorewall, this is a different type of channel&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;hope this helps&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Wed, 20 Apr 2016 14:02:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/error-useridd-log/m-p/76737#M42410</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2016-04-20T14:02:11Z</dc:date>
    </item>
    <item>
      <title>Re: Error useridd log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/error-useridd-log/m-p/76783#M42427</link>
      <description>&lt;P&gt;Palo Alto tries to connect using LDAPs, fist attempt fails but second one works.&lt;/P&gt;
&lt;P&gt;On the other hand, you can see a lot of error getting groups and moving user to dplane.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We dont know why we see these errors. Users are working fine, so they didt report a problem. Just one time two groups lost mapping and they reported a problem....&lt;/P&gt;</description>
      <pubDate>Thu, 21 Apr 2016 08:50:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/error-useridd-log/m-p/76783#M42427</guid>
      <dc:creator>soporteseguridad</dc:creator>
      <dc:date>2016-04-21T08:50:57Z</dc:date>
    </item>
    <item>
      <title>Re: Error useridd log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/error-useridd-log/m-p/76863#M42448</link>
      <description>&lt;P&gt;How this commns will affect to the service???&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P style="margin-bottom: 12.0pt;"&gt;Please try restarting the User-ID&amp;nbsp;&lt;BR /&gt; &amp;gt;Debug software restart process user-id&lt;/P&gt;
&lt;P style="margin: 0cm; margin-bottom: .0001pt; line-height: 15.75pt; background: white; box-sizing: inherit;"&gt;&lt;SPAN style="font-size: 10.5pt; font-family: 'Helvetica',sans-serif; color: #333333;"&gt;&amp;gt;Debug user-id reset user-id-agent all&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 22 Apr 2016 07:33:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/error-useridd-log/m-p/76863#M42448</guid>
      <dc:creator>soporteseguridad</dc:creator>
      <dc:date>2016-04-22T07:33:42Z</dc:date>
    </item>
    <item>
      <title>Re: Error useridd log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/error-useridd-log/m-p/76871#M42452</link>
      <description>&lt;P&gt;the userid process is responsible for using the ldap profile to fetch group information, so resetting that service hould help restore connectivity&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;not sure why you'd want to reset the user-id agents&lt;/P&gt;</description>
      <pubDate>Fri, 22 Apr 2016 09:02:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/error-useridd-log/m-p/76871#M42452</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2016-04-22T09:02:11Z</dc:date>
    </item>
  </channel>
</rss>

