User ID with Mapped Drives Mapping to Wrong Users
User Identification with mapped drives mapping to wrong users.
- Any PAN-OS.
- Palo Alto Firewall.
- Windows User-ID Agent.
- Integrated User-ID Agent (7.1 and above only)
When using User Identification with mapped drives, issues may occur where the user is being seen as the user you logged into your drive as. This is working as designed.
The user to IP mapping occurs from the Active Directory mapping and from login events. If a new event is created then you will see the new mapping and that user will have access allocated by that user.
The workaround for this issue is to add the user to the ignore list on the agent. Refer to How to Ignore Users in User-ID Agent.