<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cloud Identity Engine - AAD in Cloud Identity Engine Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cloud-identity-engine/cloud-identity-engine-aad/m-p/575079#M58</link>
    <description>&lt;P&gt;for group mapping the groups and their members' attributes are stored on the CIE tenant, so for compliance you'll need to make sure the tenant is stood up in the appropriate location (this stored data will not leave that location except for forwarding to your firewalls)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;CIE with authentication simply acts as a broker and AFAIK does not store anything&lt;/P&gt;</description>
    <pubDate>Wed, 31 Jan 2024 10:37:28 GMT</pubDate>
    <dc:creator>reaper</dc:creator>
    <dc:date>2024-01-31T10:37:28Z</dc:date>
    <item>
      <title>Cloud Identity Engine - AAD</title>
      <link>https://live.paloaltonetworks.com/t5/cloud-identity-engine/cloud-identity-engine-aad/m-p/574983#M57</link>
      <description>&lt;P&gt;I am investigating Cloud Identity Engine for integration with Azure AD (Entra ID). I am trying to understand where CIE stores the data that it syncs from AAD (what the actual authentication flow looks like) so we can validate whether user data is going to a 3rd party provider such as Palo Alto.&lt;BR /&gt;Also does CIE sync and cache user passwords when they authenticate through it?&amp;nbsp; or is it just passing the request to Azure AD and, if so, how is that pw protected/encrypted/encapsulated?&lt;BR /&gt;&lt;BR /&gt;thanks&lt;/P&gt;</description>
      <pubDate>Tue, 30 Jan 2024 18:17:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cloud-identity-engine/cloud-identity-engine-aad/m-p/574983#M57</guid>
      <dc:creator>zimmie67</dc:creator>
      <dc:date>2024-01-30T18:17:40Z</dc:date>
    </item>
    <item>
      <title>Re: Cloud Identity Engine - AAD</title>
      <link>https://live.paloaltonetworks.com/t5/cloud-identity-engine/cloud-identity-engine-aad/m-p/575079#M58</link>
      <description>&lt;P&gt;for group mapping the groups and their members' attributes are stored on the CIE tenant, so for compliance you'll need to make sure the tenant is stood up in the appropriate location (this stored data will not leave that location except for forwarding to your firewalls)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;CIE with authentication simply acts as a broker and AFAIK does not store anything&lt;/P&gt;</description>
      <pubDate>Wed, 31 Jan 2024 10:37:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cloud-identity-engine/cloud-identity-engine-aad/m-p/575079#M58</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2024-01-31T10:37:28Z</dc:date>
    </item>
  </channel>
</rss>

