<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Captive Portal SSO w/ Okta - &amp;quot;User Authenticated&amp;quot; in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/312273#M80767</link>
    <description>&lt;P&gt;We've implemented Okta SAML SSO with our layer-3 Captive Portal redirect page for IP-User mapping. The solution works, but users are landing on a "User Authenticated" web page, rather than the website they originally browsed to. Users now have to re-browse to the website first landed on, or browsed to to access the site. I figured SAML SSO would allow a transparent authentication to occur and return the requested webpage to the user. Anyone have this issue?&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2020-02-19 11_54_24-Program Manager.png" style="width: 689px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/24033i0D2413FD52147EA1/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="2020-02-19 11_54_24-Program Manager.png" alt="2020-02-19 11_54_24-Program Manager.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 20 Feb 2020 18:36:57 GMT</pubDate>
    <dc:creator>Greg_Frey</dc:creator>
    <dc:date>2020-02-20T18:36:57Z</dc:date>
    <item>
      <title>Captive Portal SSO w/ Okta - "User Authenticated"</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/312273#M80767</link>
      <description>&lt;P&gt;We've implemented Okta SAML SSO with our layer-3 Captive Portal redirect page for IP-User mapping. The solution works, but users are landing on a "User Authenticated" web page, rather than the website they originally browsed to. Users now have to re-browse to the website first landed on, or browsed to to access the site. I figured SAML SSO would allow a transparent authentication to occur and return the requested webpage to the user. Anyone have this issue?&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2020-02-19 11_54_24-Program Manager.png" style="width: 689px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/24033i0D2413FD52147EA1/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="2020-02-19 11_54_24-Program Manager.png" alt="2020-02-19 11_54_24-Program Manager.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Feb 2020 18:36:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/312273#M80767</guid>
      <dc:creator>Greg_Frey</dc:creator>
      <dc:date>2020-02-20T18:36:57Z</dc:date>
    </item>
    <item>
      <title>Re: Captive Portal SSO w/ Okta - "User Authenticated"</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/313297#M80906</link>
      <description>&lt;P&gt;is your portal set up as redirect or transparent ?&lt;/P&gt;</description>
      <pubDate>Thu, 27 Feb 2020 08:45:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/313297#M80906</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2020-02-27T08:45:44Z</dc:date>
    </item>
    <item>
      <title>Re: Captive Portal SSO w/ Okta - "User Authenticated"</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/313336#M80917</link>
      <description>&lt;P&gt;The configuration is set to&amp;nbsp;&lt;STRONG&gt;redirect&lt;/STRONG&gt;.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;This was actually occurring due to the&amp;nbsp;&lt;STRONG&gt;redirect host&lt;/STRONG&gt; being set to the hostname, and not the FQDN. Example: &lt;STRONG&gt;host.domain.tld&lt;/STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;All fixed.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Feb 2020 15:41:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/313336#M80917</guid>
      <dc:creator>Greg_Frey</dc:creator>
      <dc:date>2020-02-27T15:41:24Z</dc:date>
    </item>
    <item>
      <title>Re: Captive Portal SSO w/ Okta - "User Authenticated"</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/324592#M82851</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/63627"&gt;@Greg_Frey&lt;/a&gt;I am facing similar challenge where the Okta response is stopping at "&amp;lt;firewall ip&amp;gt;:6081/SAML20/SP/ACS" page. I did change the redirect host to FQDN under Captive Portal page. Do you need similar settings on the Okta side? Can you please help with the Okta settings?&lt;/P&gt;</description>
      <pubDate>Thu, 23 Apr 2020 16:21:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/324592#M82851</guid>
      <dc:creator>Sly_Cooper</dc:creator>
      <dc:date>2020-04-23T16:21:29Z</dc:date>
    </item>
    <item>
      <title>Re: Captive Portal SSO w/ Okta - "User Authenticated"</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/324596#M82852</link>
      <description>&lt;P&gt;The URL needs to match. In this case, the FQDN was similar on both the PanOS configuration for the redirect host, and the Okta URL.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Redirect Host: &lt;STRONG&gt;&amp;lt;FQDN&amp;gt;&lt;/STRONG&gt;&lt;BR /&gt;Okta: &lt;STRONG&gt;&amp;lt;FQDN&amp;gt;&lt;/STRONG&gt;:6081/SAML20/SP/ACS&lt;/P&gt;</description>
      <pubDate>Thu, 23 Apr 2020 16:58:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/324596#M82852</guid>
      <dc:creator>Greg_Frey</dc:creator>
      <dc:date>2020-04-23T16:58:07Z</dc:date>
    </item>
    <item>
      <title>Re: Captive Portal SSO w/ Okta - "User Authenticated"</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/325435#M82992</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/63627"&gt;@Greg_Frey&lt;/a&gt;Is the port 6081? The SAML metadata on the firewall as well as Okta captive portal app shows 6082.&lt;/P&gt;</description>
      <pubDate>Thu, 30 Apr 2020 02:06:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-sso-w-okta-quot-user-authenticated-quot/m-p/325435#M82992</guid>
      <dc:creator>Sly_Cooper</dc:creator>
      <dc:date>2020-04-30T02:06:29Z</dc:date>
    </item>
  </channel>
</rss>

