So the Azure guy set it up, but then made me the owner so I can edit as needed. I think the part that isn't clicking in my head is right now I have the CP running through GlobalProtect. If I click on Test in Azure, I get the push notification on my phone, I click approve and then browser opens a new tab with the Palo logo on the tab and it says 502 Bad gateway and the URL is https://website:6082/SAML20/SP/ACS The link listed in Network > GlobalProtect > Portals > MY_Portal > Agent is https://website:6082 I think this is doable, I just haven't found any good instructions on how to do this. FYI, I really appreciate your time in speaking with me.
... View more