<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Windows based user-ID agent not collecting  mapping logs in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/windows-based-user-id-agent-not-collecting-mapping-logs/m-p/344290#M86148</link>
    <description>&lt;P&gt;did you install the agent 'as administrotor' ?&lt;/P&gt;&lt;P&gt;have you tried the 'open cmd as admin, install from cmd' approach?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;when you open the windows event log, are you able to see user logon events (logon success, ticket granted, ...)&lt;/P&gt;</description>
    <pubDate>Tue, 18 Aug 2020 08:01:10 GMT</pubDate>
    <dc:creator>reaper</dc:creator>
    <dc:date>2020-08-18T08:01:10Z</dc:date>
    <item>
      <title>Windows based user-ID agent not collecting  mapping logs</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/windows-based-user-id-agent-not-collecting-mapping-logs/m-p/343729#M86030</link>
      <description>&lt;P&gt;Hi Team,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have installed the windows based user id agent on domain controller and created service account with necessary privileges following below guidelines.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/user-id/map-ip-addresses-to-users/create-a-dedicated-service-account-for-the-user-id-agent.html" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/user-id/map-ip-addresses-to-users/create-a-dedicated-service-account-for-the-user-id-agent.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are able to start the agent and it is running it is showing discovered active directories are connected but it is not collecting any information. We are not seeing any logs in the monitor tab of user id agent.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have installed agent version 9.1.0. Double verified service account.&amp;nbsp; I can see below error in UAdebug logs. But not sure what this is exactly and how to fix it.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i tried reinstall multiple times but no luck.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;08/13/20 14:46:25:862[Error 698]: Failed to open my store. Error 5&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Venky&lt;/P&gt;</description>
      <pubDate>Thu, 13 Aug 2020 13:44:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/windows-based-user-id-agent-not-collecting-mapping-logs/m-p/343729#M86030</guid>
      <dc:creator>Venkatesan_radhakrishnan</dc:creator>
      <dc:date>2020-08-13T13:44:11Z</dc:date>
    </item>
    <item>
      <title>Re: Windows based user-ID agent not collecting  mapping logs</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/windows-based-user-id-agent-not-collecting-mapping-logs/m-p/344290#M86148</link>
      <description>&lt;P&gt;did you install the agent 'as administrotor' ?&lt;/P&gt;&lt;P&gt;have you tried the 'open cmd as admin, install from cmd' approach?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;when you open the windows event log, are you able to see user logon events (logon success, ticket granted, ...)&lt;/P&gt;</description>
      <pubDate>Tue, 18 Aug 2020 08:01:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/windows-based-user-id-agent-not-collecting-mapping-logs/m-p/344290#M86148</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2020-08-18T08:01:10Z</dc:date>
    </item>
  </channel>
</rss>

