Add Log On to the Passive Identity Agent Service

Use this procedure to enable the passive identity agent service to run as the Active Directory user. This user is the Directory Username user in the Active Directory realm on the Cloud-Delivered Firewall Management Center.

This task is optional but recommended. It ensures that the passive identity agent service runs with the minimal permissions required to send login information to the Cloud-Delivered Firewall Management Center.

Before you begin

Complete the tasks in Add the Active Directory user to groups.

You must be a Microsoft Server administrator who knows how to add a user to a group and set a Windows service to run as a specific user.

Procedure


Step 1

Log in as an administrator to the system on which the passive identity agent is running.

You can log into any of these:

  • the domain controller

  • the Active Directory server

Step 2

In the Windows search bar, enter Services.

Step 3

In the Services window, right-click Cisco Passive Identity Agent.

Step 4

Click Properties.

Step 5

In the Properties dialog box, click the Log On tab.

Step 6

Click This account.

Step 7

Click Browse. Follow the prompts on your screen to select the directory user.

Step 8

Enter the user's password in the provided fields.

Step 9

Click Apply.


What to do next