<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FMC User Agent for AD - AD server status Unknown in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3215527#M1041611</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We couldn't find particular AD server agent IP segment is block, the ACL rules is permit and we can see the traffic go through in FW logging.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Based on debug FMC agent, we found error message below, not sure related to our issue currently;&lt;/P&gt;
&lt;TABLE width="896"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD width="64"&gt;10/17/2017 3:59:35 PM&lt;/TD&gt;
&lt;TD width="64"&gt;error&lt;/TD&gt;
&lt;TD colspan="12" width="768"&gt;[2317] - Unable to attach event listener to xxx.xxx.x.167. Check firewall settings on AD Server. The RPC server is unavailable&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;</description>
    <pubDate>Mon, 13 Nov 2017 10:53:24 GMT</pubDate>
    <dc:creator>Looi Siew Key</dc:creator>
    <dc:date>2017-11-13T10:53:24Z</dc:date>
    <item>
      <title>FMC User Agent for AD - AD server status Unknown</title>
      <link>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3185305#M1041608</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Currently we have an issue that FMC User Agent for AD that couldn't check "Real Time Status" and "Last Real Time status". But AD server still can poll to FMC, and on RDP server .167 FMC user agent can see all 3 AD server is actually in sync and poll time is correct.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Not sure why other 2 server FMC user agent shown server .167 is in unknown state, but other 2 AD server is showing good result.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;* All 3 AD server poll with no issue, i believe it is comestic issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;FMC User Agent version : v2.3 build 10&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 14:18:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3185305#M1041608</guid>
      <dc:creator>Looi Siew Key</dc:creator>
      <dc:date>2020-02-21T14:18:57Z</dc:date>
    </item>
    <item>
      <title>Re: FMC User Agent for AD - AD server status Unknown</title>
      <link>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3195528#M1041609</link>
      <description>&lt;P&gt;Hello there,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It could be a communication issue or firewall on the .167 server which is blocking real-time comm from user agent.&lt;/P&gt;
&lt;P&gt;You can export the logs from user agent after enabling the "debug" option and then search for error or exception in those to get more details.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rate if helps.&lt;/P&gt;
&lt;P&gt;Yogesh&lt;/P&gt;</description>
      <pubDate>Sun, 08 Oct 2017 08:35:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3195528#M1041609</guid>
      <dc:creator>yogdhanu</dc:creator>
      <dc:date>2017-10-08T08:35:36Z</dc:date>
    </item>
    <item>
      <title>Re: FMC User Agent for AD - AD server status Unknown</title>
      <link>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3215527#M1041611</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We couldn't find particular AD server agent IP segment is block, the ACL rules is permit and we can see the traffic go through in FW logging.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Based on debug FMC agent, we found error message below, not sure related to our issue currently;&lt;/P&gt;
&lt;TABLE width="896"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD width="64"&gt;10/17/2017 3:59:35 PM&lt;/TD&gt;
&lt;TD width="64"&gt;error&lt;/TD&gt;
&lt;TD colspan="12" width="768"&gt;[2317] - Unable to attach event listener to xxx.xxx.x.167. Check firewall settings on AD Server. The RPC server is unavailable&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;</description>
      <pubDate>Mon, 13 Nov 2017 10:53:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3215527#M1041611</guid>
      <dc:creator>Looi Siew Key</dc:creator>
      <dc:date>2017-11-13T10:53:24Z</dc:date>
    </item>
    <item>
      <title>Re: FMC User Agent for AD - AD server status Unknown</title>
      <link>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3228518#M1041613</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You can try to install the agent on the AD itself and use "localhost" as the AD server name/address. This would eliminate the communication issue.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Yogesh&lt;/P&gt;</description>
      <pubDate>Thu, 07 Dec 2017 11:32:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3228518#M1041613</guid>
      <dc:creator>yogdhanu</dc:creator>
      <dc:date>2017-12-07T11:32:11Z</dc:date>
    </item>
    <item>
      <title>Re: FMC User Agent for AD - AD server status Unknown</title>
      <link>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3304766#M1041615</link>
      <description>&lt;P&gt;Was this resolve?, I have the issue and im running version 6.2.2, also I have a tac case but they havent be able to figure it out yet.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jan 2018 12:55:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3304766#M1041615</guid>
      <dc:creator>sistematico</dc:creator>
      <dc:date>2018-01-02T12:55:57Z</dc:date>
    </item>
    <item>
      <title>Re: FMC User Agent for AD - AD server status Unknown</title>
      <link>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3305871#M1041617</link>
      <description>&lt;P&gt;Hi Sistematico,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We don't have solution yet on this case. Even generated debug logs but still unable to check where is the issue comes from.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We checked on firewall on every side which doesn't block any port for sync.&lt;/P&gt;
&lt;P&gt;Please let us know if you tac engineer have solution on this. Thanks!&lt;/P&gt;</description>
      <pubDate>Thu, 04 Jan 2018 08:02:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-user-agent-for-ad-ad-server-status-unknown/m-p/3305871#M1041617</guid>
      <dc:creator>Looi Siew Key</dc:creator>
      <dc:date>2018-01-04T08:02:29Z</dc:date>
    </item>
  </channel>
</rss>

