<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SAML SSO configuration error - JumpCloud (Third-Party IDP Provider) in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/saml-sso-configuration-error-jumpcloud-third-party-idp-provider/m-p/539609#M4207</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/286332"&gt;@AmitYadav_Geo&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for reaching out through LIVEcommunity!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The error you've provided "&lt;SPAN&gt;Unauthorized.Error 4014" is indicative of a configuration error in the mapping.&amp;nbsp; Please see below for example schemas and ensure that yours match.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Email: &lt;/SPAN&gt;&lt;A href="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress" target="_blank" rel="noopener" data-aura-rendered-by="1200:5653;a"&gt;http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Group Membership: &lt;/SPAN&gt;&lt;A href="http://schemas.microsoft.com/ws/2008/06/identity/claims/groups" target="_blank" rel="noopener" data-aura-rendered-by="1200:5653;a"&gt;http://schemas.microsoft.com/ws/2008/06/identity/claims/groups&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;First Name: &lt;/SPAN&gt;&lt;A href="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/givenname" target="_blank" rel="noopener" data-aura-rendered-by="1200:5653;a"&gt;http://schemas.xmlsoap.org/ws/2005/05/identity/claims/givenname&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Last Name: &lt;/SPAN&gt;&lt;A href="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/surname" target="_blank" rel="noopener" data-aura-rendered-by="1200:5653;a"&gt;http://schemas.xmlsoap.org/ws/2005/05/identity/claims/surname&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'll also add that if this is a critical issue please create case with our &lt;A href="http://pport.paloaltonetworks.com/Support/Index" target="_self"&gt;support engineers&lt;/A&gt;.&amp;nbsp; They'll be able to provide you guidance as you work through this issue.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I hope this information helps and have a great day!&lt;/P&gt;</description>
    <pubDate>Thu, 20 Apr 2023 19:37:12 GMT</pubDate>
    <dc:creator>anlynch</dc:creator>
    <dc:date>2023-04-20T19:37:12Z</dc:date>
    <item>
      <title>SAML SSO configuration error - JumpCloud (Third-Party IDP Provider)</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/saml-sso-configuration-error-jumpcloud-third-party-idp-provider/m-p/539555#M4206</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have setup SAML SSO but receiving an 'Unauthorized.Error 4014' error.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The following configuration was made:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;IDP provider:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AmitYadav_Geo_0-1682001187543.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/49648iF169F56A08E64830/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="AmitYadav_Geo_0-1682001187543.png" alt="AmitYadav_Geo_0-1682001187543.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AmitYadav_Geo_1-1682001241414.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/49649i24549B5BE0E90C7F/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="AmitYadav_Geo_1-1682001241414.png" alt="AmitYadav_Geo_1-1682001241414.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AmitYadav_Geo_2-1682001312604.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/49650i8D670C9134275A23/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="AmitYadav_Geo_2-1682001312604.png" alt="AmitYadav_Geo_2-1682001312604.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AmitYadav_Geo_3-1682001356133.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/49651iABDA6520CBC9B8F7/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="AmitYadav_Geo_3-1682001356133.png" alt="AmitYadav_Geo_3-1682001356133.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Cortex XDR SSO configuration:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AmitYadav_Geo_4-1682002861683.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/49652i2511E09DCF5C19CA/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="AmitYadav_Geo_4-1682002861683.png" alt="AmitYadav_Geo_4-1682002861683.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Unfortunately we receive the below error:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AmitYadav_Geo_5-1682002962062.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/49653i1CB517985BCFB9E7/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="AmitYadav_Geo_5-1682002962062.png" alt="AmitYadav_Geo_5-1682002962062.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Would anyone know whats occuring here please.&lt;/P&gt;
&lt;P&gt;Many thanks&lt;/P&gt;
&lt;P&gt;Amit&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 15:04:52 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/saml-sso-configuration-error-jumpcloud-third-party-idp-provider/m-p/539555#M4206</guid>
      <dc:creator>AmitYadav_Geo</dc:creator>
      <dc:date>2023-04-20T15:04:52Z</dc:date>
    </item>
    <item>
      <title>Re: SAML SSO configuration error - JumpCloud (Third-Party IDP Provider)</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/saml-sso-configuration-error-jumpcloud-third-party-idp-provider/m-p/539609#M4207</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/286332"&gt;@AmitYadav_Geo&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for reaching out through LIVEcommunity!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The error you've provided "&lt;SPAN&gt;Unauthorized.Error 4014" is indicative of a configuration error in the mapping.&amp;nbsp; Please see below for example schemas and ensure that yours match.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Email: &lt;/SPAN&gt;&lt;A href="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress" target="_blank" rel="noopener" data-aura-rendered-by="1200:5653;a"&gt;http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Group Membership: &lt;/SPAN&gt;&lt;A href="http://schemas.microsoft.com/ws/2008/06/identity/claims/groups" target="_blank" rel="noopener" data-aura-rendered-by="1200:5653;a"&gt;http://schemas.microsoft.com/ws/2008/06/identity/claims/groups&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;First Name: &lt;/SPAN&gt;&lt;A href="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/givenname" target="_blank" rel="noopener" data-aura-rendered-by="1200:5653;a"&gt;http://schemas.xmlsoap.org/ws/2005/05/identity/claims/givenname&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Last Name: &lt;/SPAN&gt;&lt;A href="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/surname" target="_blank" rel="noopener" data-aura-rendered-by="1200:5653;a"&gt;http://schemas.xmlsoap.org/ws/2005/05/identity/claims/surname&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'll also add that if this is a critical issue please create case with our &lt;A href="http://pport.paloaltonetworks.com/Support/Index" target="_self"&gt;support engineers&lt;/A&gt;.&amp;nbsp; They'll be able to provide you guidance as you work through this issue.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I hope this information helps and have a great day!&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 19:37:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/saml-sso-configuration-error-jumpcloud-third-party-idp-provider/m-p/539609#M4207</guid>
      <dc:creator>anlynch</dc:creator>
      <dc:date>2023-04-20T19:37:12Z</dc:date>
    </item>
    <item>
      <title>Re: SAML SSO configuration error - JumpCloud (Third-Party IDP Provider)</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/saml-sso-configuration-error-jumpcloud-third-party-idp-provider/m-p/540065#M4225</link>
      <description>&lt;P&gt;Hi Anlynch,&lt;/P&gt;
&lt;P&gt;The links you posted are broken:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AmitYadav_Geo_0-1682429855931.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/49777i9934C317F5625422/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="AmitYadav_Geo_0-1682429855931.png" alt="AmitYadav_Geo_0-1682429855931.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Also in the guidance of Cortex XDR support engineer, I have set the attributes to his advice:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;"Please bear in mind that in SSO Mapping you need to use the following values:"&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;email=email&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;firstname=firstName&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;group_name: groupName&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;lastname = lastName&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Therfore I added the group attribute.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AmitYadav_Geo_1-1682430948814.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/49778iD530AC1FBF7D2266/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="AmitYadav_Geo_1-1682430948814.png" alt="AmitYadav_Geo_1-1682430948814.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Unfortunately still getting the '4014' error &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt; &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AmitYadav_Geo_2-1682431055087.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/49779iCE1EE2A608639E38/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="AmitYadav_Geo_2-1682431055087.png" alt="AmitYadav_Geo_2-1682431055087.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any ideas please?&lt;/P&gt;
&lt;P&gt;Many thanks&lt;/P&gt;
&lt;P&gt;Amit&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Apr 2023 13:57:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/saml-sso-configuration-error-jumpcloud-third-party-idp-provider/m-p/540065#M4225</guid>
      <dc:creator>AmitYadav_Geo</dc:creator>
      <dc:date>2023-04-25T13:57:57Z</dc:date>
    </item>
  </channel>
</rss>

