<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Globalrptect VPN Portal Agen COnfiguration in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalrptect-vpn-portal-agen-configuration/m-p/539859#M3973</link>
    <description>&lt;P&gt;Hi All,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i am trying to config multiple authentication rules in Portal Agent config. what is the priority on the list when we have mulitple user groups?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i am trying to create multiple user groups with different VPN Client attributes.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 24 Apr 2023 05:52:25 GMT</pubDate>
    <dc:creator>Thilina_Ranaweera</dc:creator>
    <dc:date>2023-04-24T05:52:25Z</dc:date>
    <item>
      <title>Globalrptect VPN Portal Agen COnfiguration</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalrptect-vpn-portal-agen-configuration/m-p/539859#M3973</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i am trying to config multiple authentication rules in Portal Agent config. what is the priority on the list when we have mulitple user groups?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i am trying to create multiple user groups with different VPN Client attributes.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 05:52:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalrptect-vpn-portal-agen-configuration/m-p/539859#M3973</guid>
      <dc:creator>Thilina_Ranaweera</dc:creator>
      <dc:date>2023-04-24T05:52:25Z</dc:date>
    </item>
    <item>
      <title>Re: Globalrptect VPN Portal Agen COnfiguration</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalrptect-vpn-portal-agen-configuration/m-p/539880#M3974</link>
      <description>&lt;P&gt;Hi Thilina,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To my knowledge the client authentication rules are processed/evaluated from top-to-bottom.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;1) What I would personally do is and I think this is also what is recommended. Configure more specific rules at the top and generic catch all at the bottom. This method will ensure your specific rules are matched first and if there is no match it will match the generic catch all rule at the bottom.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;hope that answers your question, and in case you meant using different authentication source such as,&lt;/P&gt;
&lt;P&gt;LDAP and if LDAP is not available falling back on another authentication source such as local DB,&lt;/P&gt;
&lt;P&gt;then consider using Authentication Sequence, and also that is processed from top-to-bottom.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:56:16 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalrptect-vpn-portal-agen-configuration/m-p/539880#M3974</guid>
      <dc:creator>Y-alwaysMe</dc:creator>
      <dc:date>2023-04-24T09:56:16Z</dc:date>
    </item>
  </channel>
</rss>

