How to configure panorama to pull group mapping information from a managed firewall ( user ID master device ) ?

How to configure panorama to pull group mapping information from a managed firewall ( user ID master device ) ?

2501
Created On 11/15/22 22:52 PM - Last Modified 06/20/25 20:36 PM


Objective


  • Firewall is connected to the Active Directory Server
  • Panorama cannot connect to the Active Directory Server.
  • The article provides the steps to fetch and view the groups on Panorama.


Environment


  • Panorama managed Firewalls
  • Supported PAN-OS
  • Active Directory Server


Procedure


  1. Panorama > Management > Panorama Settings > check mark the "Enable reporting and filtering on groups"

Screen Shot 2022-11-15 at 2.42.26 PM.png

  1. Panorama > Panorama > Templates > Templates stack > check mark the User ID Master Device and choose the firewall.

Screen Shot 2022-11-15 at 2.43.50 PM.png

  1. Panorama > Panorama tab> Device groups > Choose the correct device group and used the the master device is the firewall from which Panorama gathers user ID information for use in policies.

Screen Shot 2022-11-15 at 2.46.01 PM.png

  1. Commit the configuration.
  2. After commit the groups are seen under the Templates and Device Groups features.


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000sZu2CAE&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language