<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Identify users (UIA) authenticating with SAML in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/identify-users-uia-authenticating-with-saml/m-p/1238521#M125197</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/85066"&gt;@BigPalo&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;When you say that they're authenticating, do you mean that you're using SAML with Entra for something like GlobalProtect or an authentication policy or authenticating to the device through a hybrid or Entra-joined endpoint? I'm going to assume the later at the moment and if that's the case, you'll want to look into Cloud Identity Engine that handles this sort of thing.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 22 Sep 2025 14:41:41 GMT</pubDate>
    <dc:creator>BPry</dc:creator>
    <dc:date>2025-09-22T14:41:41Z</dc:date>
    <item>
      <title>Identify users (UIA) authenticating with SAML</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/identify-users-uia-authenticating-with-saml/m-p/1238503#M125192</link>
      <description>&lt;P&gt;HI,&lt;/P&gt;
&lt;P&gt;We have some users authenticating with SAML (EntraID) but these users are not being identifing in UIA. Is possible to get the info in UIA and palo about users authenticating in SAML?&lt;/P&gt;
&lt;P&gt;any idea or KB?&lt;/P&gt;</description>
      <pubDate>Mon, 22 Sep 2025 13:42:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/identify-users-uia-authenticating-with-saml/m-p/1238503#M125192</guid>
      <dc:creator>BigPalo</dc:creator>
      <dc:date>2025-09-22T13:42:02Z</dc:date>
    </item>
    <item>
      <title>Re: Identify users (UIA) authenticating with SAML</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/identify-users-uia-authenticating-with-saml/m-p/1238521#M125197</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/85066"&gt;@BigPalo&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;When you say that they're authenticating, do you mean that you're using SAML with Entra for something like GlobalProtect or an authentication policy or authenticating to the device through a hybrid or Entra-joined endpoint? I'm going to assume the later at the moment and if that's the case, you'll want to look into Cloud Identity Engine that handles this sort of thing.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 22 Sep 2025 14:41:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/identify-users-uia-authenticating-with-saml/m-p/1238521#M125197</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2025-09-22T14:41:41Z</dc:date>
    </item>
    <item>
      <title>Re: Identify users (UIA) authenticating with SAML</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/identify-users-uia-authenticating-with-saml/m-p/1238577#M125205</link>
      <description>&lt;P&gt;I explain you better&lt;/P&gt;
&lt;P&gt;We have devices that are not in the on-premises domain and are using Azure AD. Authentication is OK but PA doesnt have the group belongs users since its not recognised.&lt;BR /&gt;These devices connect to Wi-Fi and are validated with a Wi-Fi certificate (CISCO ISE). Once access to the Wi-Fi network is granted, they register with the UIA, and Palo Alto has the mapping for these users.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The problem is that some devices are not configured and attack Azure AD directly. These devices are not recognized by Palo Alto or the UIA and do not match the group rules (obviously).&lt;/P&gt;
&lt;P&gt;The question is how Palo Alto and UIA can integrate with Azure AD to also access information about users who log in there and be able to create rules for groups.&lt;/P&gt;</description>
      <pubDate>Tue, 23 Sep 2025 14:14:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/identify-users-uia-authenticating-with-saml/m-p/1238577#M125205</guid>
      <dc:creator>BigPalo</dc:creator>
      <dc:date>2025-09-23T14:14:21Z</dc:date>
    </item>
  </channel>
</rss>

