Cisco Cisco Firepower Management Center 2000

Seite von 32
 
2-2
FireSIGHT User Agent Configuration Guide
 
Chapter 2      Setting up a User Agent 
  Preparing to Connect to a Version 4.x Defense Center
Step 9
Optionally, configure a list of user names and IP addresses to exclude from polling for login and logoff 
data. For more information, see 
.
Step 10
Optionally, configure the agent logging settings. For more information, see 
Step 11
Optionally, configure the agent name, start and stop the service, and view the service’s current status. 
For more information, see 
Step 12
Click 
Save
 to save the agent configuration. 
Caution
Do not modify the agent maintenance settings unless Support directs you to do so.
Preparing to Connect to a Version 4.x Defense Center
The first step in collecting LDAP user login information using User Agents is to configure each Defense 
Center to allow connections from the agents you plan to connect to your Active Directory servers. This 
section describes the procedure for authorizing an agent connection on a Version 4.x Defense Center.
To configure the Defense Center to connect to a User Agent:
Access: 
Admin
Step 1
Select 
Operations > Configuration > RUA
.
Step 2
Click 
Add RUA Agent
.
Step 3
Type a descriptive name for the Agent in the 
Name
 field.
Step 4
Type the IP address or host name of the computer where the User Agent will reside in the 
Hostname or IP 
Address
 field. You must use an IPv4 address; you cannot configure the Defense Center to connect to a 
User Agent using an IPv6 address.
Step 5
Click 
Add RUA Agent
The Defense Center is configured to allow connections from an agent with the configured IP address.
Tip
To delete the Defense Center-agent connection, click 
Delete
 next to the connection you want to 
delete.
Step 6
Continue with 
.