<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Global Protect Gateway config for separate user groups via Azure SSO in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-gateway-config-for-separate-user-groups-via-azure/m-p/533606#M3760</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have a use case where we want to allow users from the same location using Global protect to be able to access two separate Global Protect Gateways and authenticate using SSO via Azure.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The reason is that for the first gateway config we have assigned the split tunnel feature, we would like to have a set of users in the same location be able to use the VPN without the split tunnel. To achieve this we want to have the users log on using SSO and be assigned to the correct gateway config.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;can this be done?&lt;/P&gt;</description>
    <pubDate>Wed, 08 Mar 2023 16:55:10 GMT</pubDate>
    <dc:creator>ArmandoGarcia</dc:creator>
    <dc:date>2023-03-08T16:55:10Z</dc:date>
    <item>
      <title>Global Protect Gateway config for separate user groups via Azure SSO</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-gateway-config-for-separate-user-groups-via-azure/m-p/533606#M3760</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have a use case where we want to allow users from the same location using Global protect to be able to access two separate Global Protect Gateways and authenticate using SSO via Azure.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The reason is that for the first gateway config we have assigned the split tunnel feature, we would like to have a set of users in the same location be able to use the VPN without the split tunnel. To achieve this we want to have the users log on using SSO and be assigned to the correct gateway config.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;can this be done?&lt;/P&gt;</description>
      <pubDate>Wed, 08 Mar 2023 16:55:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-gateway-config-for-separate-user-groups-via-azure/m-p/533606#M3760</guid>
      <dc:creator>ArmandoGarcia</dc:creator>
      <dc:date>2023-03-08T16:55:10Z</dc:date>
    </item>
  </channel>
</rss>

