CCSA:
Active Directory Query The AD Query is a clientless identity acquisition method that lets the Security Gateway seamlessly identify AD users and computers. It is based on AD integration and lets the Security Gateway correlate AD users and machines to IP addresses in a method that is completely transparent to the user.
When using AD Query (ADQ), the Security Gateway connects to the AD Domain Controllers using Windows Management Instrumentation (WMI), a standard Microsoft protocol to get Security Event logs.
By default, Security Event logs are generated on the Domain Controllers when users perform login. Using these event logs, the Security Gateway can correlate Active Directory users and machines to IP addresses and to enforce a user-based policy.
NOTE: Security event logging must be enabled on the AD server.
Identity awareness R81.10 admin guide:
In this technology, you make a query for the Active Directory Security Event Logs and extract the user and
computer mapping to the network address from them. It works because of Windows Management
Instrumentation (WMI), a standard Microsoft protocol. The Identity Awareness Gateway communicates
directly with the Active Directory domain controllers and does not need a special server.
upvoted 2 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
rabbirobert
1 year, 5 months agojjdrew
1 year, 6 months agoTony24
1 year, 8 months agoexamtp1
1 year, 8 months agobhn12312
1 year, 9 months agocastieltel
1 year, 10 months ago18408
1 year, 10 months agoDS0001
1 year, 10 months agocron_08
1 year, 11 months agoLaxe
1 year, 11 months ago