<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: GlobalProtect SAML Login Loop in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-saml-login-loop/m-p/615517#M6033</link>
    <description>&lt;P&gt;Firewall just redirects the user to CIE and waits for the validated token for that user. I think you should look at EntraID and check CIE logs for authentication.&lt;/P&gt;</description>
    <pubDate>Tue, 29 Oct 2024 02:28:39 GMT</pubDate>
    <dc:creator>arusharma</dc:creator>
    <dc:date>2024-10-29T02:28:39Z</dc:date>
    <item>
      <title>GlobalProtect SAML Login Loop</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-saml-login-loop/m-p/615459#M6031</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;
&lt;P&gt;I am using CIE and EntraID with SAML to allow logins to GP. This is working very well but I am having an issue. I had a user whose name changed. When logging into GP, it just continuously asks her to log in. Inside of the GP Portal, I get the error 'username from cas sso response is different from the input' and can see where it is trying to use her old email address to log in. She is using her new address and has tried with multiple browsers but no luck.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am guessing it is something with the Microsoft profile but I have no idea where to look. Has anyone seen this and then resolved the issue?&lt;/P&gt;</description>
      <pubDate>Mon, 28 Oct 2024 15:11:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-saml-login-loop/m-p/615459#M6031</guid>
      <dc:creator>inductivehealth</dc:creator>
      <dc:date>2024-10-28T15:11:42Z</dc:date>
    </item>
    <item>
      <title>Re: GlobalProtect SAML Login Loop</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-saml-login-loop/m-p/615517#M6033</link>
      <description>&lt;P&gt;Firewall just redirects the user to CIE and waits for the validated token for that user. I think you should look at EntraID and check CIE logs for authentication.&lt;/P&gt;</description>
      <pubDate>Tue, 29 Oct 2024 02:28:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-saml-login-loop/m-p/615517#M6033</guid>
      <dc:creator>arusharma</dc:creator>
      <dc:date>2024-10-29T02:28:39Z</dc:date>
    </item>
    <item>
      <title>Re: GlobalProtect SAML Login Loop</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-saml-login-loop/m-p/615578#M6034</link>
      <description>&lt;P&gt;Thank you for the response. CIE logs are actually showing the right username. It seems that only the firewall is showing the wrong one.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Oct 2024 14:28:45 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-saml-login-loop/m-p/615578#M6034</guid>
      <dc:creator>inductivehealth</dc:creator>
      <dc:date>2024-10-29T14:28:45Z</dc:date>
    </item>
    <item>
      <title>Re: GlobalProtect SAML Login Loop</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-saml-login-loop/m-p/615842#M6042</link>
      <description>&lt;P&gt;We need to take a look at the firewall logs for more clarity.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 31 Oct 2024 03:42:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-saml-login-loop/m-p/615842#M6042</guid>
      <dc:creator>arusharma</dc:creator>
      <dc:date>2024-10-31T03:42:46Z</dc:date>
    </item>
  </channel>
</rss>

