<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: do CIE mappings timeout? in Cloud Identity Engine Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cloud-identity-engine/do-cie-mappings-timeout/m-p/1220563#M86</link>
    <description>&lt;P&gt;I don't think they do. About sync you can see&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cloud-identity/cloud-identity-engine-getting-started/manage-the-cloud-identity-engine/cloud-identity-engine-instances/synchronize-cloud-identity-engine-instances" target="_blank"&gt;Synchronize Cloud Identity Engine Tenants&lt;/A&gt;&amp;nbsp;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;About on prem Microsoft AD&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cloud-identity/cloud-identity-engine-getting-started/choose-directory-type/configure-an-on-premises-directory" target="_blank"&gt;Configure an On-Premises Directory&lt;/A&gt;&amp;nbsp;you connect your on-prem AD to Azure AD and they can exchange info, so that could be a nice way for a "backup" and then CIA can connect to the Azure AD&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cloud-identity/cloud-identity-engine-getting-started/choose-directory-type/configure-a-cloud-based-directory/set-up-azure/set-up-azure-directory" target="_blank"&gt;Set Up Azure Directory&lt;/A&gt;&amp;nbsp;and&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cloud-identity/cloud-identity-engine-getting-started/choose-directory-type/configure-a-cloud-based-directory/configure-scim-connector-for-the-cloud-identity-engine" target="_blank"&gt;Configure SCIM Connector for the Cloud Identity Engine&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Better work with Microsoft to sync data between Azure AD and the on-prem AD if you decide that this option is nice!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/architecture/reference-architectures/identity/azure-ad" target="_blank"&gt;Integrate on-premises AD domains with Microsoft Entra ID - Azure Architecture Center | Microsoft Learn&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Sat, 15 Feb 2025 12:46:47 GMT</pubDate>
    <dc:creator>nikoolayy1</dc:creator>
    <dc:date>2025-02-15T12:46:47Z</dc:date>
    <item>
      <title>do CIE mappings timeout?</title>
      <link>https://live.paloaltonetworks.com/t5/cloud-identity-engine/do-cie-mappings-timeout/m-p/1219705#M85</link>
      <description>&lt;P&gt;Dear community!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Does someone know if the user-group mappings learned from the CIE timeout if for instance the cloud becomes unavailable?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If there´s a timeout that refreshes the mappings, what could be a backup for this outage situations, having the user-id group mappings pointing to the local AD?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Many thanks in advance.&lt;/P&gt;</description>
      <pubDate>Thu, 06 Feb 2025 23:15:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cloud-identity-engine/do-cie-mappings-timeout/m-p/1219705#M85</guid>
      <dc:creator>Carracido</dc:creator>
      <dc:date>2025-02-06T23:15:40Z</dc:date>
    </item>
    <item>
      <title>Re: do CIE mappings timeout?</title>
      <link>https://live.paloaltonetworks.com/t5/cloud-identity-engine/do-cie-mappings-timeout/m-p/1220563#M86</link>
      <description>&lt;P&gt;I don't think they do. About sync you can see&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cloud-identity/cloud-identity-engine-getting-started/manage-the-cloud-identity-engine/cloud-identity-engine-instances/synchronize-cloud-identity-engine-instances" target="_blank"&gt;Synchronize Cloud Identity Engine Tenants&lt;/A&gt;&amp;nbsp;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;About on prem Microsoft AD&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cloud-identity/cloud-identity-engine-getting-started/choose-directory-type/configure-an-on-premises-directory" target="_blank"&gt;Configure an On-Premises Directory&lt;/A&gt;&amp;nbsp;you connect your on-prem AD to Azure AD and they can exchange info, so that could be a nice way for a "backup" and then CIA can connect to the Azure AD&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cloud-identity/cloud-identity-engine-getting-started/choose-directory-type/configure-a-cloud-based-directory/set-up-azure/set-up-azure-directory" target="_blank"&gt;Set Up Azure Directory&lt;/A&gt;&amp;nbsp;and&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cloud-identity/cloud-identity-engine-getting-started/choose-directory-type/configure-a-cloud-based-directory/configure-scim-connector-for-the-cloud-identity-engine" target="_blank"&gt;Configure SCIM Connector for the Cloud Identity Engine&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Better work with Microsoft to sync data between Azure AD and the on-prem AD if you decide that this option is nice!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://learn.microsoft.com/en-us/azure/architecture/reference-architectures/identity/azure-ad" target="_blank"&gt;Integrate on-premises AD domains with Microsoft Entra ID - Azure Architecture Center | Microsoft Learn&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 15 Feb 2025 12:46:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cloud-identity-engine/do-cie-mappings-timeout/m-p/1220563#M86</guid>
      <dc:creator>nikoolayy1</dc:creator>
      <dc:date>2025-02-15T12:46:47Z</dc:date>
    </item>
  </channel>
</rss>

