<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FreeIPA LDAP group mapping in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/freeipa-ldap-group-mapping/m-p/298546#M78219</link>
    <description>&lt;P&gt;Hello &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/40858"&gt;@blachance&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are trying to connect our Palo Alto to our FreeIPA for the userID part.&lt;/P&gt;&lt;P&gt;I wanted to know what settings you have configured at the LDAP level, Authentication Profile and User Identification/Group Mapping Settings?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you for your help!&lt;/P&gt;</description>
    <pubDate>Thu, 14 Nov 2019 14:25:11 GMT</pubDate>
    <dc:creator>nfernandes</dc:creator>
    <dc:date>2019-11-14T14:25:11Z</dc:date>
    <item>
      <title>FreeIPA LDAP group mapping</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/freeipa-ldap-group-mapping/m-p/189234#M57312</link>
      <description>&lt;P&gt;UPDATED:&lt;/P&gt;&lt;P&gt;The LDAP package FreeIPA uses , 389-ds-base, had some security vulunerabilities and has been updated. This update has caused the PA to fail checking users within groups. Here's is the latest configuration that works with 389-ds-base (1.3.8.4-15.el7.x86_64)Ive tried&amp;nbsp;many parameters trying to connect to FreeIPA for LDAP group mapping and finally found the right config, here it is. The 'x' values in the User Attributes are required, the value itself does not matter just as long as the attribute itself is being used&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="FreeIPACapture1 (1).GIF" style="width: 800px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/18562i10A8754A23B1DE2C/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="FreeIPACapture1 (1).GIF" alt="FreeIPACapture1 (1).GIF" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="FreeIPACapture2 (1).GIF" style="width: 800px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/18563i2A5A5D9E07924825/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="FreeIPACapture2 (1).GIF" alt="FreeIPACapture2 (1).GIF" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 01 Feb 2019 16:16:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/freeipa-ldap-group-mapping/m-p/189234#M57312</guid>
      <dc:creator>blachance</dc:creator>
      <dc:date>2019-02-01T16:16:36Z</dc:date>
    </item>
    <item>
      <title>Re: FreeIPA LDAP group mapping</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/freeipa-ldap-group-mapping/m-p/298546#M78219</link>
      <description>&lt;P&gt;Hello &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/40858"&gt;@blachance&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are trying to connect our Palo Alto to our FreeIPA for the userID part.&lt;/P&gt;&lt;P&gt;I wanted to know what settings you have configured at the LDAP level, Authentication Profile and User Identification/Group Mapping Settings?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you for your help!&lt;/P&gt;</description>
      <pubDate>Thu, 14 Nov 2019 14:25:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/freeipa-ldap-group-mapping/m-p/298546#M78219</guid>
      <dc:creator>nfernandes</dc:creator>
      <dc:date>2019-11-14T14:25:11Z</dc:date>
    </item>
  </channel>
</rss>

