<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Global Protect and User_ID/Group Mapping in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-and-user-id-group-mapping/m-p/1228991#M6767</link>
    <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;I have been struggling with an issue that I have seen many times with the GP user/group mapping when using two types of auth resources.&lt;/P&gt;
&lt;P&gt;We have are on-prem VPN portal/gateway using Azure SAML auth. Which is turn uses the upn for login (i.e &lt;A href="mailto:username@domainname.com" target="_blank"&gt;username@domainname.com&lt;/A&gt;). The firewall hosting the portal and gateway is using LDAP servers/userID agent servers.&lt;/P&gt;
&lt;P&gt;When trying to setup a unique gp portal agent profile that has different configuration setting and using the domain\username or domain\groupname, and even the upn &lt;A href="mailto:user@domain.com," target="_blank"&gt;user@domain.com,&lt;/A&gt;&amp;nbsp;but when logging in the GP portal from the client, all authentication works however it does not match the specific new user agent profile that we created, it goes to the default agent profile. I have been working with support for 3 weeks with no resolution.&amp;nbsp; Any help would be appreciated&lt;/P&gt;</description>
    <pubDate>Tue, 13 May 2025 20:01:34 GMT</pubDate>
    <dc:creator>D.Maas</dc:creator>
    <dc:date>2025-05-13T20:01:34Z</dc:date>
    <item>
      <title>Global Protect and User_ID/Group Mapping</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-and-user-id-group-mapping/m-p/1228991#M6767</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;I have been struggling with an issue that I have seen many times with the GP user/group mapping when using two types of auth resources.&lt;/P&gt;
&lt;P&gt;We have are on-prem VPN portal/gateway using Azure SAML auth. Which is turn uses the upn for login (i.e &lt;A href="mailto:username@domainname.com" target="_blank"&gt;username@domainname.com&lt;/A&gt;). The firewall hosting the portal and gateway is using LDAP servers/userID agent servers.&lt;/P&gt;
&lt;P&gt;When trying to setup a unique gp portal agent profile that has different configuration setting and using the domain\username or domain\groupname, and even the upn &lt;A href="mailto:user@domain.com," target="_blank"&gt;user@domain.com,&lt;/A&gt;&amp;nbsp;but when logging in the GP portal from the client, all authentication works however it does not match the specific new user agent profile that we created, it goes to the default agent profile. I have been working with support for 3 weeks with no resolution.&amp;nbsp; Any help would be appreciated&lt;/P&gt;</description>
      <pubDate>Tue, 13 May 2025 20:01:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-and-user-id-group-mapping/m-p/1228991#M6767</guid>
      <dc:creator>D.Maas</dc:creator>
      <dc:date>2025-05-13T20:01:34Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect and User_ID/Group Mapping</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-and-user-id-group-mapping/m-p/1229637#M6788</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/299100937"&gt;@D.Maas&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please see this thread &lt;A href="https://live.paloaltonetworks.com/t5/general-topics/configure-saml-for-globlaprotect-and-use-groups-to-filter/m-p/1226539#M123990" target="_blank"&gt;https://live.paloaltonetworks.com/t5/general-topics/configure-saml-for-globlaprotect-and-use-groups-to-filter/m-p/1226539#M123990&lt;/A&gt; and let me know if it fixes your issue.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Wed, 21 May 2025 18:00:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-and-user-id-group-mapping/m-p/1229637#M6788</guid>
      <dc:creator>TomYoung</dc:creator>
      <dc:date>2025-05-21T18:00:58Z</dc:date>
    </item>
  </channel>
</rss>

