Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
JPR
Contributor

Identity Collectors and pdp/pep

Hello,

I've had some issues with our Identity Collectors and have tried to restart the "pdpd" and "pepd" processes with the following commands:

# fw kill pdpd
# fw kill pepd

They both seem to be running again and the Identity Collectors are receiving events from our AD and sending to the firewall. Also the firewall says that it is connected as you can see below:

fw1.png

However, when I look in the "Logs & Monitor" in the SmartConsole it doesn't show/register any "Source User Name" as shown below:

fw2.png

It does occasionally show someone logging in on a client.

I've restarted the services before and it began working again after some time. Is this expected behaviour because of the "Association time-to-live" on the Identity Collectors or something like that?
And is there a way for me to make it work again now and not just having to wait?

I'm still a bit new to all this so please forgive me if I'm not all to clear in my explanations.

Thanks!

0 Kudos
7 Replies
JPR
Contributor

So, unfortunately it still doesn't work...

It registers when someone logs on to a client as seen below, however, not "regular" events:

fw3.png

But the IDC is both getting events from the AD and sending to the FW GW:

fw4.png

dw5.png

 

Any help would be appreciated!!

0 Kudos
G_W_Albrecht
Legend
Legend

Better contact CP TAC and get this reviewed in RAS - a look into the configuration is necessary to resolve this...

 

CCSE CCTE CCSM SMB Specialist
Chris_Atkinson
Employee Employee
Employee

Quickest path is probably to review with TAC.

Which Gateway & IDC version do you use out of interest?

CCSM R77/R80/ELITE
JPR
Contributor

It's R81 and the IDCs are build 81.040.0000.

 

It worked before I did the fw kill pdpd and fw kill pepd, so I'm quite certain it has something to do with that.

 

When I do the pdp status show it says there is no PEPs connected:

pdp.png

0 Kudos
JPR
Contributor

Is it perhaps because it has to rebuild the database after I restarted pdpd/pepd and the FW doesn't get old events/associations?

0 Kudos
the_rock
Legend
Legend

It could be, but better to get TAC involved to confirm, as the guys already said.

Best regards,

Andy

0 Kudos
Chris_Atkinson
Employee Employee
Employee

Which JHF take is applied to the Gateway, there are potentially relevant fixes here in addition to a newer IDC version

CCSM R77/R80/ELITE
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events