<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Want to use on-prem AD server to authenticate users on VM Series in Azu in VM-Series in the Public Cloud</title>
    <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/want-to-use-on-prem-ad-server-to-authenticate-users-on-vm-series/m-p/351168#M1006</link>
    <description>&lt;P&gt;I've been working on a similar problem and as we're in a hybrid Azure/O365 state, we've had to implement more infrastructure than simply authenticating AD users! To cut a&amp;nbsp; long story short we've go this working using SAML authentication from our AzureAD and have a hybrid connector to sync on-prem AD with AAD&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you've got GP on your VM working then it's pretty straight forward to configure SAML for SSO, following this article worked for us;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.microsoft.com/en-us/azure/active-directory/saas-apps/palo-alto-networks-globalprotect-tutorial" target="_blank"&gt;https://docs.microsoft.com/en-us/azure/active-directory/saas-apps/palo-alto-networks-globalprotect-tutorial&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;good luck&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 22 Sep 2020 15:59:34 GMT</pubDate>
    <dc:creator>benslade</dc:creator>
    <dc:date>2020-09-22T15:59:34Z</dc:date>
    <item>
      <title>Want to use on-prem AD server to authenticate users on VM Series in Azure</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/want-to-use-on-prem-ad-server-to-authenticate-users-on-vm-series/m-p/344952#M931</link>
      <description>&lt;P&gt;I have a VM series firewall deployed in Azure with a VPN connection to my on-prem PA firewall.&amp;nbsp; I have GP working on the VM firewall via local user database but I am unable to get the VM firewall to utilize my on-prem AD server to authenticate users.&amp;nbsp; I have tried adjusting the service route but this does not work for dynamic-DHCP interfaces.&amp;nbsp; How do I go about accomplishing this?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Aug 2020 14:37:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/want-to-use-on-prem-ad-server-to-authenticate-users-on-vm-series/m-p/344952#M931</guid>
      <dc:creator>FCalderone</dc:creator>
      <dc:date>2020-08-21T14:37:32Z</dc:date>
    </item>
    <item>
      <title>Re: Want to use on-prem AD server to authenticate users on VM Series in Azu</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/want-to-use-on-prem-ad-server-to-authenticate-users-on-vm-series/m-p/345927#M936</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Where is the traffic failing? Check the traffic logs to see. Might need to make additional policies to allow it.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Fri, 28 Aug 2020 21:44:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/want-to-use-on-prem-ad-server-to-authenticate-users-on-vm-series/m-p/345927#M936</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2020-08-28T21:44:54Z</dc:date>
    </item>
    <item>
      <title>Re: Want to use on-prem AD server to authenticate users on VM Series in Azu</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/want-to-use-on-prem-ad-server-to-authenticate-users-on-vm-series/m-p/351168#M1006</link>
      <description>&lt;P&gt;I've been working on a similar problem and as we're in a hybrid Azure/O365 state, we've had to implement more infrastructure than simply authenticating AD users! To cut a&amp;nbsp; long story short we've go this working using SAML authentication from our AzureAD and have a hybrid connector to sync on-prem AD with AAD&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you've got GP on your VM working then it's pretty straight forward to configure SAML for SSO, following this article worked for us;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.microsoft.com/en-us/azure/active-directory/saas-apps/palo-alto-networks-globalprotect-tutorial" target="_blank"&gt;https://docs.microsoft.com/en-us/azure/active-directory/saas-apps/palo-alto-networks-globalprotect-tutorial&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;good luck&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 22 Sep 2020 15:59:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/want-to-use-on-prem-ad-server-to-authenticate-users-on-vm-series/m-p/351168#M1006</guid>
      <dc:creator>benslade</dc:creator>
      <dc:date>2020-09-22T15:59:34Z</dc:date>
    </item>
  </channel>
</rss>

