<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Global Protect Portal - Azure SAML Authentication in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/486805#M2756</link>
    <description>&lt;P&gt;I suppose that something has to change in the communication path which caused problems with TCP packets with too big payload (maybe some extra encapsulation).&lt;BR /&gt;In my case, the issue occurs on PA-VM Hyper-V, but I have PA-VM on VMWare, where SAML is working without any adjustments.&lt;/P&gt;</description>
    <pubDate>Thu, 12 May 2022 14:53:50 GMT</pubDate>
    <dc:creator>Marcin_Szy</dc:creator>
    <dc:date>2022-05-12T14:53:50Z</dc:date>
    <item>
      <title>Global Protect Portal - Azure SAML Authentication</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/486375#M2743</link>
      <description>&lt;P&gt;Users can't complete authentication to the Global Protect portal with Azure SAML auth.&amp;nbsp; When I go to the portal address in a web browser it redirects me to an Office 365 login, I enter my credentials and MFA code, it sits on a login.microsoftonline.com URL loading and eventually fails with the this URLin the address bar, &amp;lt;global-protect-url&amp;gt;/SAML20/SP/ACS.&amp;nbsp; Chrome returns an ERR_EMPTY_RESPONSE, Firefox returns a message saying, "The page you are trying to view cannot be shown because the authenticity of the received data could not be verified."&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I followed this documentation for setting up the Azure SAML authentication: &lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g0000008U48CAE" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g0000008U48CAE&lt;/A&gt;&lt;/P&gt;&lt;P&gt;The user authenticates successfully on the Azure side but the authentication never gets passed back to the firewall.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If I switch the authentication for the portal over to LDAP I can login.&amp;nbsp; Computer with the Global Protect agent can't connect either but I switched to troubleshooting in the browser to eliminate the agent version being an issue.&lt;/P&gt;</description>
      <pubDate>Wed, 11 May 2022 14:45:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/486375#M2743</guid>
      <dc:creator>mkbecker21</dc:creator>
      <dc:date>2022-05-11T14:45:54Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Portal - Azure SAML Authentication</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/486790#M2754</link>
      <description>&lt;P&gt;Hi,&lt;BR /&gt;&lt;BR /&gt;In my case, it was a network issue. Enabling Adjust MSS with default value on the interface hosting GlobalProtect Portal solved the problem.&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Thu, 12 May 2022 13:57:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/486790#M2754</guid>
      <dc:creator>Marcin_Szy</dc:creator>
      <dc:date>2022-05-12T13:57:13Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Portal - Azure SAML Authentication</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/486804#M2755</link>
      <description>&lt;P&gt;This solved it, thank you. We had to enable this setting for our WAN interface a while back too.&amp;nbsp; Do you have any idea why it would all of a sudden need to be enabled?&amp;nbsp; Global Protect has been working for a few months now up until the other day.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 12 May 2022 14:41:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/486804#M2755</guid>
      <dc:creator>mkbecker21</dc:creator>
      <dc:date>2022-05-12T14:41:32Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Portal - Azure SAML Authentication</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/486805#M2756</link>
      <description>&lt;P&gt;I suppose that something has to change in the communication path which caused problems with TCP packets with too big payload (maybe some extra encapsulation).&lt;BR /&gt;In my case, the issue occurs on PA-VM Hyper-V, but I have PA-VM on VMWare, where SAML is working without any adjustments.&lt;/P&gt;</description>
      <pubDate>Thu, 12 May 2022 14:53:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/486805#M2756</guid>
      <dc:creator>Marcin_Szy</dc:creator>
      <dc:date>2022-05-12T14:53:50Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Portal - Azure SAML Authentication</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/486807#M2757</link>
      <description>&lt;P&gt;Our firewall is a PA-VM on Hyper-V as well so that is interesting.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My thought as well, I have a support ticket open but haven't gotten response after 2 days.&amp;nbsp; If they ever respond I'll see if they can confirm that or agree that is a likely explanation.&amp;nbsp; If they give any helpful info I'll post back here for anyone having this issue in the future.&lt;/P&gt;</description>
      <pubDate>Thu, 12 May 2022 14:59:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/486807#M2757</guid>
      <dc:creator>mkbecker21</dc:creator>
      <dc:date>2022-05-12T14:59:26Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Portal - Azure SAML Authentication</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/578874#M5052</link>
      <description>&lt;P&gt;Give more detail on the fix, I am having the same issue but unable to follow your direction.&lt;/P&gt;</description>
      <pubDate>Thu, 29 Feb 2024 17:23:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-portal-azure-saml-authentication/m-p/578874#M5052</guid>
      <dc:creator>Peri_Similien_SS</dc:creator>
      <dc:date>2024-02-29T17:23:44Z</dc:date>
    </item>
  </channel>
</rss>

