Mismatch of Server Group Mapping Users and Groups between LDAP and PAN-OS Device
Focus
Focus
Next-Generation Firewall

Mismatch of Server Group Mapping Users and Groups between LDAP and PAN-OS Device

Table of Contents

Mismatch of Server Group Mapping Users and Groups between LDAP and PAN-OS Device

Incident Code
INC_NGFW_GROUP_MAPPING_UPDATE_INTERRUPTED
Severity
Warning
Category
Network Services
Subcategory
User-ID
Description
This alert indicates that users and groups defined through LDAP server group mapping are missing on the PAN-OS device, even though they are correctly configured in the LDAP server. It may also indicate that users and groups have not been removed from the PAN-OS device, despite being deleted from the LDAP server.
Raise Condition
Incident raises when LDAP group mapping update encounters errors unrelated to LDAP server availability within 1 hour, causing user and group synchronization to fail between LDAP and the firewall.
Clear Condition
Incident clears when no LDAP group mapping errors occur for 24 hours, indicating successful synchronization of users and groups between LDAP and the firewall.