cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2503
Views
0
Helpful
1
Replies

cisco firepower user agent - unable to read security logs

andreaspfaff
Level 1
Level 1

Hello Everybody,

 

lately we tried to implement User-Control with our Firepower Firewall, and run into an errormessage when trying to connect the UserAgent to the AD:

 

 

 User Agent Issue.png

 

I had to blurry the details for clear reasons, but the point is that the error message says :"unable to read security logs on xxxx"

I saw similar threads here already, but none of them had the same circumstances.

The logs look like:

 

07.02.2019 10:26:51","debug","[0001] - Error connecting to xxxx: System.Management.ManagementException: Invalid parameter
at System.Management.ThreadDispatch.Start()
at System.Management.ManagementScope.Initialize()
at SFCommon.ConnectionTester.Verify(String Server ..."

 

Anybody faced with the same issue?

 

Thanks in advance

 

1 Reply 1

Hi andreaspfaff, The following procedures were performed: 1. System -> Realm -> "New Realm" and make the settings pointing to the AD server; 2. Configure Realm with the domain and in "Directory Username" should be filled as follows: domain \ username 3.Sustem -> Integration -> Select "User Agent" and add the IP of the server where the User Agent is installed. Let me know if these procedures have been performed and let me know if you have any questions.
Review Cisco Networking products for a $25 gift card