<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Multiple Global Protect Portal Realms in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/multiple-global-protect-portal-realms/m-p/356203#M502</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a Global Protect portal available to our users via a public facing URL.&amp;nbsp; Question I have is whether the Palo Alto solution can support multiple portals based on the same URL and interface IP to serve different authentication profiles.&amp;nbsp; Example:&lt;/P&gt;&lt;P&gt;All users using the GP Client for connection:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Group of Users (A):&amp;nbsp; Connect to companya.com&amp;nbsp; ---&amp;gt; Authenticate against Entrust for Portal ---- &amp;gt;&amp;nbsp; Authenticate against LDAP for Gateway&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Group of Users (B): Connect to companya.com/mfa ---&amp;gt; Authenticate against MFA for portal ----&amp;gt; Authenticate against LDAP for Gateway&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;CompanyA.com would resolve to the same IP terminating on the same interface but I want to create a sub-domain for users to connect to subtly different URL to pick up different authentication profile but not have to create a different DNS with a different physical interface on Palo to achieve this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Comments welcome&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
    <pubDate>Wed, 14 Oct 2020 08:57:05 GMT</pubDate>
    <dc:creator>MHaran</dc:creator>
    <dc:date>2020-10-14T08:57:05Z</dc:date>
    <item>
      <title>Multiple Global Protect Portal Realms</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/multiple-global-protect-portal-realms/m-p/356203#M502</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a Global Protect portal available to our users via a public facing URL.&amp;nbsp; Question I have is whether the Palo Alto solution can support multiple portals based on the same URL and interface IP to serve different authentication profiles.&amp;nbsp; Example:&lt;/P&gt;&lt;P&gt;All users using the GP Client for connection:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Group of Users (A):&amp;nbsp; Connect to companya.com&amp;nbsp; ---&amp;gt; Authenticate against Entrust for Portal ---- &amp;gt;&amp;nbsp; Authenticate against LDAP for Gateway&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Group of Users (B): Connect to companya.com/mfa ---&amp;gt; Authenticate against MFA for portal ----&amp;gt; Authenticate against LDAP for Gateway&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;CompanyA.com would resolve to the same IP terminating on the same interface but I want to create a sub-domain for users to connect to subtly different URL to pick up different authentication profile but not have to create a different DNS with a different physical interface on Palo to achieve this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Comments welcome&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Wed, 14 Oct 2020 08:57:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/multiple-global-protect-portal-realms/m-p/356203#M502</guid>
      <dc:creator>MHaran</dc:creator>
      <dc:date>2020-10-14T08:57:05Z</dc:date>
    </item>
  </channel>
</rss>

