<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SAML Jumpcloud HA Implementation in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/saml-jumpcloud-ha-implementation/m-p/507301#M105712</link>
    <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;&lt;P&gt;i think the link that i post only can be seen on partner account, our management traffic in originate from the same IP public, but in jumpcloud settings, it just one IP Configuration.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="DennyChanditya_0-1656554389907.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/42093iE230A0435AA833F8/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="DennyChanditya_0-1656554389907.png" alt="DennyChanditya_0-1656554389907.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;As the tutorial said in that post that fill the ACS with management interface.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="DennyChanditya_2-1656554444383.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/42095i23F4C1D582D73F15/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="DennyChanditya_2-1656554444383.png" alt="DennyChanditya_2-1656554444383.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So i think to create 2 profil SSO in jumpcloud, but if i create 2 profile in jumpcloud, back to Palo it only have one saml profile on authentication profile.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="DennyChanditya_3-1656554738549.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/42096i280EF4E8C3F17736/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="DennyChanditya_3-1656554738549.png" alt="DennyChanditya_3-1656554738549.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;then i think to change the service routes for SAML, but i cant find the saml settings on the service route.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="DennyChanditya_4-1656554847483.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/42097iE207E8CAC93D8858/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="DennyChanditya_4-1656554847483.png" alt="DennyChanditya_4-1656554847483.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Is that possible to change the SAML service route? so i can use the public interface and setup in JC using IP Public.&lt;/P&gt;</description>
    <pubDate>Thu, 30 Jun 2022 02:09:29 GMT</pubDate>
    <dc:creator>DennyChanditya</dc:creator>
    <dc:date>2022-06-30T02:09:29Z</dc:date>
    <item>
      <title>SAML Jumpcloud HA Implementation</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/saml-jumpcloud-ha-implementation/m-p/506981#M105698</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i follow the docs here&amp;nbsp;&lt;A href="https://live.paloaltonetworks.com/t5/core-firewall-and-management/pan-os-saml-sso-with-jumpcloud-and-mobile-push-mfa/ta-p/493684#toc-hId-281097198" target="_blank"&gt;LIVEcommunity - PAN-OS SAML SSO with JumpCloud and Mobile Push MFA - LIVEcommunity - 493684 (paloaltonetworks.com)&lt;/A&gt;&lt;/P&gt;&lt;P&gt;it works well with one firewall. When it used to HA active Passive Environtment, it wont work on the passive, the config sync from the active, but the configuration from Jumpcloud only setup for 1 IP Only.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;is anyone here used Jumpcloud as the SAML for device login authentication? Is there other tips to work on saml auth on HA environtment?&lt;BR /&gt;still trying on Radius Jumpcloud too, but i still stuck in the certificate.&lt;/P&gt;</description>
      <pubDate>Wed, 29 Jun 2022 08:56:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/saml-jumpcloud-ha-implementation/m-p/506981#M105698</guid>
      <dc:creator>DennyChanditya</dc:creator>
      <dc:date>2022-06-29T08:56:40Z</dc:date>
    </item>
    <item>
      <title>Re: SAML Jumpcloud HA Implementation</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/saml-jumpcloud-ha-implementation/m-p/507202#M105709</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/187777"&gt;@DennyChanditya&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;Just as an FYI, it appears that the link you put in your post is broken. I'm not familiar with JumpCloud integration, but does your management traffic for both your HA devices originate from the same public IP? Seems like it shouldn't be a problem if the request originates from the same public IP from an SSO integration standpoint.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Jun 2022 19:22:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/saml-jumpcloud-ha-implementation/m-p/507202#M105709</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2022-06-29T19:22:11Z</dc:date>
    </item>
    <item>
      <title>Re: SAML Jumpcloud HA Implementation</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/saml-jumpcloud-ha-implementation/m-p/507301#M105712</link>
      <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;&lt;P&gt;i think the link that i post only can be seen on partner account, our management traffic in originate from the same IP public, but in jumpcloud settings, it just one IP Configuration.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="DennyChanditya_0-1656554389907.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/42093iE230A0435AA833F8/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="DennyChanditya_0-1656554389907.png" alt="DennyChanditya_0-1656554389907.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;As the tutorial said in that post that fill the ACS with management interface.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="DennyChanditya_2-1656554444383.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/42095i23F4C1D582D73F15/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="DennyChanditya_2-1656554444383.png" alt="DennyChanditya_2-1656554444383.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So i think to create 2 profil SSO in jumpcloud, but if i create 2 profile in jumpcloud, back to Palo it only have one saml profile on authentication profile.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="DennyChanditya_3-1656554738549.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/42096i280EF4E8C3F17736/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="DennyChanditya_3-1656554738549.png" alt="DennyChanditya_3-1656554738549.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;then i think to change the service routes for SAML, but i cant find the saml settings on the service route.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="DennyChanditya_4-1656554847483.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/42097iE207E8CAC93D8858/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="DennyChanditya_4-1656554847483.png" alt="DennyChanditya_4-1656554847483.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Is that possible to change the SAML service route? so i can use the public interface and setup in JC using IP Public.&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jun 2022 02:09:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/saml-jumpcloud-ha-implementation/m-p/507301#M105712</guid>
      <dc:creator>DennyChanditya</dc:creator>
      <dc:date>2022-06-30T02:09:29Z</dc:date>
    </item>
  </channel>
</rss>

