Cloud Identity Engine - AAD

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Cloud Identity Engine - AAD

L0 Member

I am investigating Cloud Identity Engine for integration with Azure AD (Entra ID). I am trying to understand where CIE stores the data that it syncs from AAD (what the actual authentication flow looks like) so we can validate whether user data is going to a 3rd party provider such as Palo Alto.
Also does CIE sync and cache user passwords when they authenticate through it?  or is it just passing the request to Azure AD and, if so, how is that pw protected/encrypted/encapsulated?

thanks

1 REPLY 1

Cyber Elite
Cyber Elite

for group mapping the groups and their members' attributes are stored on the CIE tenant, so for compliance you'll need to make sure the tenant is stood up in the appropriate location (this stored data will not leave that location except for forwarding to your firewalls)

 

CIE with authentication simply acts as a broker and AFAIK does not store anything

Tom Piens
PANgurus - Strata specialist; config reviews, policy optimization
  • 766 Views
  • 1 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!