Palo Alto Firewall detects the domain user account as interactive logged on user
The Palo Alto agentless User-ID feature is configured with client probing enabled using the server operator and event log reader credentials. When viewing the IP-mapping, the IPs are mapped with the service (domain user) username and not the actual username.
Sign In Required
You need to be signed in and under a current maintenance contract to view premium knowledge articles.