<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: User-ID and Microsoft Entra ID Internal in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/user-id-and-microsoft-entra-id-internal/m-p/997133#M122455</link>
    <description>&lt;P&gt;I thought CIE was only for global protect and its configurations.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We are looking to get User-ID running so that we can make users to their traffic and create more specific rules.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So can we use CIE to map internal users to their traffic?&lt;/P&gt;</description>
    <pubDate>Mon, 09 Dec 2024 02:35:06 GMT</pubDate>
    <dc:creator>AlexMcCreery</dc:creator>
    <dc:date>2024-12-09T02:35:06Z</dc:date>
    <item>
      <title>User-ID and Microsoft Entra ID Internal</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/user-id-and-microsoft-entra-id-internal/m-p/995879#M122317</link>
      <description>&lt;P&gt;We recently setup our CIE to work with our Microsoft Entra ID so when on GlobalProtect, we can track users and their traffic.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We are now looking for solutions for a similar setup for internal users (not on GlobalProtect but on network). We are trying to avoid using direct AD access since Entra ID is our source of truth. I have seen a few options but wanted to see what others have setup. Any recommendations?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 01 Dec 2024 16:35:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/user-id-and-microsoft-entra-id-internal/m-p/995879#M122317</guid>
      <dc:creator>AlexMcCreery</dc:creator>
      <dc:date>2024-12-01T16:35:23Z</dc:date>
    </item>
    <item>
      <title>Re: User-ID and Microsoft Entra ID Internal</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/user-id-and-microsoft-entra-id-internal/m-p/997084#M122447</link>
      <description>&lt;P&gt;For internal users also you can use CIE for group mapping. I don't know what exactly you are trying to achieve group mapping for internal users or user IP mapping. But once EntraID is integrated with CIE firewall can get the group mapping from CIE for internal users.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 08 Dec 2024 06:49:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/user-id-and-microsoft-entra-id-internal/m-p/997084#M122447</guid>
      <dc:creator>arusharma</dc:creator>
      <dc:date>2024-12-08T06:49:21Z</dc:date>
    </item>
    <item>
      <title>Re: User-ID and Microsoft Entra ID Internal</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/user-id-and-microsoft-entra-id-internal/m-p/997133#M122455</link>
      <description>&lt;P&gt;I thought CIE was only for global protect and its configurations.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We are looking to get User-ID running so that we can make users to their traffic and create more specific rules.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So can we use CIE to map internal users to their traffic?&lt;/P&gt;</description>
      <pubDate>Mon, 09 Dec 2024 02:35:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/user-id-and-microsoft-entra-id-internal/m-p/997133#M122455</guid>
      <dc:creator>AlexMcCreery</dc:creator>
      <dc:date>2024-12-09T02:35:06Z</dc:date>
    </item>
    <item>
      <title>Re: User-ID and Microsoft Entra ID Internal</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/user-id-and-microsoft-entra-id-internal/m-p/997135#M122456</link>
      <description>&lt;P&gt;CIE can be used for fetching group mapping and you can reference those groups in the security policy if needed. To see the users in traffic logs you need to have user IP mapping which can be done by GP for GP users but for internal users, you need to implement UIA or some other method mentioned in the article to learn those mappings. Check this:&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/pan-os/11-1/pan-os-admin/user-id/user-id-overview" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/11-1/pan-os-admin/user-id/user-id-overview&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Dec 2024 02:56:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/user-id-and-microsoft-entra-id-internal/m-p/997135#M122456</guid>
      <dc:creator>arusharma</dc:creator>
      <dc:date>2024-12-09T02:56:42Z</dc:date>
    </item>
  </channel>
</rss>

