<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SAML Authentication into GlobalProtect in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/saml-authentication-into-globalprotect/m-p/595772#M5719</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/382974413"&gt;@A.Goble&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;If you look at the Entra side of things there's a checkbox in the conditional access policy that will allow you to configure a policy specific to the application and require MFA with every authentication. You'll also want to set sign on frequency to whatever you feel is appropriate in that policy as well.&lt;/P&gt;</description>
    <pubDate>Fri, 23 Aug 2024 16:38:26 GMT</pubDate>
    <dc:creator>BPry</dc:creator>
    <dc:date>2024-08-23T16:38:26Z</dc:date>
    <item>
      <title>SAML Authentication into GlobalProtect</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/saml-authentication-into-globalprotect/m-p/595769#M5717</link>
      <description>&lt;P&gt;We started using SAML to authentication into GlobalProtect connected back through Entra. The problem is the user will be prompted to put in their windows credentials the first time they login, but say they disconnect and go to log back in to VPN it bypasses the step where they have to put in the credentials entirely and logs them in. How do we make the user manually enter their windows credentials every time they want to connect?&lt;/P&gt;</description>
      <pubDate>Fri, 23 Aug 2024 16:30:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/saml-authentication-into-globalprotect/m-p/595769#M5717</guid>
      <dc:creator>A.Goble</dc:creator>
      <dc:date>2024-08-23T16:30:05Z</dc:date>
    </item>
    <item>
      <title>Re: SAML Authentication into GlobalProtect</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/saml-authentication-into-globalprotect/m-p/595772#M5719</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/382974413"&gt;@A.Goble&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;If you look at the Entra side of things there's a checkbox in the conditional access policy that will allow you to configure a policy specific to the application and require MFA with every authentication. You'll also want to set sign on frequency to whatever you feel is appropriate in that policy as well.&lt;/P&gt;</description>
      <pubDate>Fri, 23 Aug 2024 16:38:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/saml-authentication-into-globalprotect/m-p/595772#M5719</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2024-08-23T16:38:26Z</dc:date>
    </item>
  </channel>
</rss>

