SSO Agents Dimension and Activity Directory

I have 4 domain controllers and 2 domain controllers in each forest. All of this is in the same physical location connected to a fireware active/passive cluster. Due to compliance requirements no trust can be established between the forest.

I have the SSO agent installed on each of the domain controllers and i noticed on the firebox it's only connected to one of the SSO Agents in one of the forest. All the other SSO Agents are in a standby status. Is there anyway activate one of the SSO Agents from the other forest?

All this was setup to capture logs from users of both forest.

Comments

  • james.carsonjames.carson Moderator, WatchGuard Representative

    Hi @NetworkWise
    The firebox will only contact one SSO Agent, and if that one fails, then the backup. Without the ability for the SSO Agent to look up the other domain user/groups, this isn't possible.

    -James Carson
    WatchGuard Customer Support

  • @james.carson Can you take that as a enhancement request?

  • james.carsonjames.carson Moderator, WatchGuard Representative

    Hi @NetworkWise
    FBX-20876 would be the request.

    -James Carson
    WatchGuard Customer Support

Sign In to comment.