- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
12-19-2018 06:05 AM
Dear Comm,
I was googleing alot about this topic and but only found this:
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClXlCAK
My specific question is, if a the User ID agent show the username "pre-logon" learned via "GP" - does this "user" counts to the "gruoup" of "known"-user which I can use in security policies?
Thanks for your support.
Kind regards,
Rene
12-19-2018 11:34 AM
While my response doesn't come with an authoritative 100% assurance, I would suspect the answer to your question is "it does not."
Pre-Logon is a function of Global Protect where the user on the machine is currently unknown. "Known-user" comes from various authentication sources UIA/GP/CP/SSO (NTLM). I can't imagine you'd have that many security rules which would be attributed to a "pre-logon" identified user.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!