We have been experiencing User-ID server monitor connection timeouts to one of our Windows 2008 R2 Domain controllers. The VM domain controller seems fine with all other services (Non Palo).
receive_time: 2018/02/13 17:19:38
time_generated: 2018/02/13 17:19:38
opaque: User-ID server monitor adjutant.abcd.local(vsys1) Connection timeout"
Occasionally users are prompted the captive portal in the web browser for authentication (usually automatic if a domain client), if the domain user enters their credentials web browsing resumes.
Primary DNS server for the domain is the same server and has no DNS issues, network connectivity has found no problems.
All other DC’s have no time out issues. Regular monthly windows patches are applied to all DC’s.
Tried multiple user ID agent versions and all have the same issue.
The same domain user account is used on all Palo firewalls for user mapping.
ny idea how to fix this?
Thanks in advance.
not sure about the disconnection issue but I'm a bit confused regarding your setup.
you are mentioning user-id agents installed on DC's but your screen shot shows the settings of the user agent on the PA itself...
it seems the the PA itself is losing connection so not sure why you have tried various agents on the server...
what is in your user-id agents tab?
are you using both server and PA local agents to the same servers?
have i missed something here?
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!