cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Who Me Too'd this topic

SAML cookies and global protect cookies

L2 Linker

Hi,

 

If I am using SAML authentication on my portal and gateway what is the best practice around Authentication cookies override.

When using SAML my user will be prompted via the default browser 2 times ones for the portal and ones for the gateway.

I read that you can overcome this by generating a cookie on the portal an accept on the gateway is this correct.  https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000HBMdCAO&lang=en_US%E2%80%A...

If I don't use any cookies how long will the session remain active if I am using Azure AD as an IDP?

https://learn.microsoft.com/en-us/azure/active-directory/develop/configurable-token-lifetimes

I believe 1 hour will be the case.
What is the best practice around SAML and authentication cookies override.  Should u use it or not?

 

Who Me Too'd this topic