<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Migrate the active directory services from onpremise to EntraID (Azure), in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/migrate-the-active-directory-services-from-onpremise-to-entraid/m-p/602070#M119810</link>
    <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/192671"&gt;@Alpalo&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope you’re doing well! The User-ID Agent isn’t compatible with Azure AD because it relies on traditional LDAP. I recommend looking into&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cloud-identity/cloud-identity-engine-getting-started/get-started-with-the-cloud-identity-engine/learn-about-the-cloud-identity-engine#id3f7f173a-ab4b-4040-b82e-86944d8b769b" target="_self"&gt;Cloud Identity Engine (CIE).&amp;nbsp;&lt;/A&gt;You can link directly to Azure AD for group membership. Then you can use&amp;nbsp;SAML&amp;nbsp;for auth and implement captive portal or GP internal gateway to collect user attributes. If you and your org can swing it, setting up an internal gw is a solid choice. If not, captive portal has less overhead.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope this helps! Feel free to PM me if you'd like to talk more in depth about it.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 16 Oct 2024 18:46:58 GMT</pubDate>
    <dc:creator>JayGolf</dc:creator>
    <dc:date>2024-10-16T18:46:58Z</dc:date>
    <item>
      <title>Migrate the active directory services from onpremise to EntraID (Azure),</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/migrate-the-active-directory-services-from-onpremise-to-entraid/m-p/599876#M119263</link>
      <description>&lt;P&gt;Hello team&lt;/P&gt;
&lt;P&gt;We want to migrate active directory services from onpremise to EntraID (Azure), how can we integrate the UserAgent in Palo Alto?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Greetings&lt;/P&gt;</description>
      <pubDate>Wed, 09 Oct 2024 11:29:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/migrate-the-active-directory-services-from-onpremise-to-entraid/m-p/599876#M119263</guid>
      <dc:creator>Alpalo</dc:creator>
      <dc:date>2024-10-09T11:29:17Z</dc:date>
    </item>
    <item>
      <title>Re: Migrate the active directory services from onpremise to EntraID (Azure),</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/migrate-the-active-directory-services-from-onpremise-to-entraid/m-p/602070#M119810</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/192671"&gt;@Alpalo&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope you’re doing well! The User-ID Agent isn’t compatible with Azure AD because it relies on traditional LDAP. I recommend looking into&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cloud-identity/cloud-identity-engine-getting-started/get-started-with-the-cloud-identity-engine/learn-about-the-cloud-identity-engine#id3f7f173a-ab4b-4040-b82e-86944d8b769b" target="_self"&gt;Cloud Identity Engine (CIE).&amp;nbsp;&lt;/A&gt;You can link directly to Azure AD for group membership. Then you can use&amp;nbsp;SAML&amp;nbsp;for auth and implement captive portal or GP internal gateway to collect user attributes. If you and your org can swing it, setting up an internal gw is a solid choice. If not, captive portal has less overhead.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope this helps! Feel free to PM me if you'd like to talk more in depth about it.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Oct 2024 18:46:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/migrate-the-active-directory-services-from-onpremise-to-entraid/m-p/602070#M119810</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2024-10-16T18:46:58Z</dc:date>
    </item>
  </channel>
</rss>

