<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Syslog and Palo Alto User-ID in SmartZone and Virtual SmartZone</title>
    <link>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Syslog-and-Palo-Alto-User-ID/m-p/114326#M6132</link>
    <description>&lt;P&gt;&lt;SPAN&gt;Hello Community,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I have the following issue/request. I would like to forward an AD user’s Wi‑Fi login information via the syslog server of our VSZ 7.1.1.0872 to a Palo Alto User-ID agent. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Which setting do I need to configure on the VSZ Syslog so that this information is passed to the User-ID?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;2026/05/08 08:09:16 206 Client authorization successfully Informational Client [Domain\&lt;/SPAN&gt;&lt;SPAN&gt;wolf@10.0.0.62&lt;/SPAN&gt;&lt;SPAN&gt;@38:7A:0E:D4:92:9D] of WLAN [HF-LAN] from AP [AP05@70:CA:97:08:50:60] was authorized. 2026/05/08 08:09:16 202 Client joined Informational Client [Domain\&lt;/SPAN&gt;&lt;SPAN&gt;wolf@10.0.0.62&lt;/SPAN&gt;&lt;SPAN&gt;@38:7A:0E:D4:92:9D] joined WLAN [HF-LAN] from AP [AP05@70:CA:97:08:50:60] on [b/g/n]. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I assume I can then extract the details on the Palo Alto User-ID side using a regex. Thank you&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 12 May 2026 10:53:29 GMT</pubDate>
    <dc:creator>Wuff</dc:creator>
    <dc:date>2026-05-12T10:53:29Z</dc:date>
    <item>
      <title>Syslog and Palo Alto User-ID</title>
      <link>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Syslog-and-Palo-Alto-User-ID/m-p/114326#M6132</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hello Community,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I have the following issue/request. I would like to forward an AD user’s Wi‑Fi login information via the syslog server of our VSZ 7.1.1.0872 to a Palo Alto User-ID agent. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Which setting do I need to configure on the VSZ Syslog so that this information is passed to the User-ID?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;2026/05/08 08:09:16 206 Client authorization successfully Informational Client [Domain\&lt;/SPAN&gt;&lt;SPAN&gt;wolf@10.0.0.62&lt;/SPAN&gt;&lt;SPAN&gt;@38:7A:0E:D4:92:9D] of WLAN [HF-LAN] from AP [AP05@70:CA:97:08:50:60] was authorized. 2026/05/08 08:09:16 202 Client joined Informational Client [Domain\&lt;/SPAN&gt;&lt;SPAN&gt;wolf@10.0.0.62&lt;/SPAN&gt;&lt;SPAN&gt;@38:7A:0E:D4:92:9D] joined WLAN [HF-LAN] from AP [AP05@70:CA:97:08:50:60] on [b/g/n]. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I assume I can then extract the details on the Palo Alto User-ID side using a regex. Thank you&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 May 2026 10:53:29 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Syslog-and-Palo-Alto-User-ID/m-p/114326#M6132</guid>
      <dc:creator>Wuff</dc:creator>
      <dc:date>2026-05-12T10:53:29Z</dc:date>
    </item>
    <item>
      <title>Re: Syslog and Palo Alto User-ID</title>
      <link>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Syslog-and-Palo-Alto-User-ID/m-p/114353#M6133</link>
      <description>&lt;P&gt;Hi,&lt;BR /&gt;&lt;BR /&gt;You can configure External Syslog Server under Services &amp;gt;&amp;gt; AP External Syslog Server &amp;gt;&amp;gt; Then enter the Palo Alto IP address.&lt;BR /&gt;However, it is not sure if the Palo Alto can take the Syslog details and extract the User ID details.&lt;BR /&gt;&lt;BR /&gt;You can also try configuring the "Accounting Server" option in the SSID and point to the Palo Alto, which will forward the user accounting details. This should allow Palo Alto to extract the User ID details.&lt;/P&gt;</description>
      <pubDate>Wed, 13 May 2026 02:33:49 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Syslog-and-Palo-Alto-User-ID/m-p/114353#M6133</guid>
      <dc:creator>sanjay_kumar</dc:creator>
      <dc:date>2026-05-13T02:33:49Z</dc:date>
    </item>
    <item>
      <title>Re: Syslog and Palo Alto User-ID</title>
      <link>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Syslog-and-Palo-Alto-User-ID/m-p/114356#M6134</link>
      <description>&lt;P&gt;Hi sanjay_kumar,&lt;/P&gt;&lt;P&gt;and the global Syslog sever under Administration must also be configured? This Syslog Server is not enough to get the user login info?&amp;nbsp;&amp;nbsp;&lt;SPAN&gt;At least I don’t see any entries related to this on the Graylog server.&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;If I configure this via the AP External Syslog Server, I don’t receive any entries on Graylog at all — do I need to do anything else to enable/apply this setting?&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;Thanks in advance!&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;cu&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;Wolfgang&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Wed, 13 May 2026 07:13:59 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Syslog-and-Palo-Alto-User-ID/m-p/114356#M6134</guid>
      <dc:creator>Wuff</dc:creator>
      <dc:date>2026-05-13T07:13:59Z</dc:date>
    </item>
    <item>
      <title>Re: Syslog and Palo Alto User-ID</title>
      <link>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Syslog-and-Palo-Alto-User-ID/m-p/114357#M6135</link>
      <description>&lt;P&gt;Hi @Wuff,&lt;BR /&gt;&lt;BR /&gt;Try below steps:&lt;BR /&gt;&lt;BR /&gt;Step 1:&lt;BR /&gt;&lt;SPAN&gt;Configure External Syslog Server under Services &amp;gt;&amp;gt; AP External Syslog Server &amp;gt;&amp;gt; Then enter the Palo Alto IP address. &amp;gt;&amp;gt; Ensure "All Logs" is selected for "Send Logs" section.&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;Step 2 :&lt;BR /&gt;Go to Access Points &amp;gt;&amp;gt; Select the AP Zone and click on Edit &amp;gt;&amp;gt; Under Syslog &amp;gt;&amp;gt; Toggle "&lt;SPAN&gt;Enable external syslog server for APs" &amp;gt;&amp;gt; Select "&lt;/SPAN&gt;&lt;SPAN&gt;AP External Syslog Server Profile" &amp;gt;&amp;gt; Select the Syslog profile you have created.&lt;BR /&gt;&lt;BR /&gt;Again,&amp;nbsp;&lt;SPAN&gt;it is not sure if the Palo Alto can take the Syslog details and extract the User ID details.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;You can also try configuring the "Accounting Server" option in the SSID and point to the Palo Alto, which will forward the user accounting details. This should allow Palo Alto to extract the User ID details.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 13 May 2026 08:36:51 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Syslog-and-Palo-Alto-User-ID/m-p/114357#M6135</guid>
      <dc:creator>sanjay_kumar</dc:creator>
      <dc:date>2026-05-13T08:36:51Z</dc:date>
    </item>
  </channel>
</rss>

