User-ID Credential Agent fails to extract credentials on Windows Server 2019 RODC

User-ID Credential Agent fails to extract credentials on Windows Server 2019 RODC

6416
Created On 02/07/20 04:20 AM - Last Modified 02/10/20 22:46 PM


Symptom
User-ID Credential Agent fails to extract credentials when running on Windows Server 2019 RODC (Read-Only Domain Controller). 

Environment
  • PanOS 8.1 or Above.
  • Palo Alto Firewall.
  • User-ID Credential Agent 8.1 or above.
  • Windows Server 2019 RODC. 


Cause
  • User-ID Credentials Agent is currently not supported with Windows Server 2019 RODC. But the User-ID agent 9.0.2 or above is supported for Windows Server 2019. 
  • Following Error is seen in the UACredDebug.log
[Error  716]: Unable to extract credentials.

 


Resolution
Install the User-ID Credential Agent on a Windows Server 2012 or 2016  RODC (Read-Only Domain Controller).

Additional Information
If support for User-ID Credential Agent on a Windows Server 2019 RODC is needed, Submit a Feature Request through Sales Engineer. 

Attachments
Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/kCSArticleDetail?id=kA10g000000POb4&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FkCSArticleDetail

Attachments