Why Is The Group Mapping Security Policy Not Being Hit By The User In The Group?

Why Is The Group Mapping Security Policy Not Being Hit By The User In The Group?

10784
Created On 12/07/20 22:16 PM - Last Modified 10/12/21 07:13 AM


Question


When a group mapping security policy is configured in Prisma Access, mobile users in the group not being hit by this policy.

If this is a new configuration, and a PA engineer confirms that he/she does not see any group mapping presents in Prisma devices, it could likely be due to a configuration error.


Environment


  • Prisma Access
  • Panorama
  • PAN-OS 9.1, 9.2


Answer


This could be due to Group Mapping is not enabled in the configuration.

GUI: Device > Server Profiles > LDAP (Under Moble_User_Templates)
User-added image


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000HBrvCAG&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language