If you are trying to sync all three Authentication section to the same User ID/PW (Admin, SSLVPN, Capture Portal) plus the User-ID Agent for the Policy then you will need to use a external database like Active Directory. So here are the steps if using the PAN-Agent. #1 - Install / Configure the PAN-Agent - This will give you the ability to select user and group in this format: DOMAIN\USER. #2 - Configure a LDAP Profile - Make sure you fill in the "Domain" section to match the "DOMAIN" -- this will only work if you have only a simple single domain structure. #3 - Create a Authentication Profile for Admins - Select the users which will be allowed to log into the PA #4 - Create a Authentication Profile for SSL VPN - Select the users / groups which can log into the SSL VPN #5 - Create a Authentication Profile for Capture Portal - I find it easy to choise "All" for users #6 - Creat a Administrator which matches the Domain Account so you can assign a Admin role it that user #7 - Edit Device / Setup and add the Authentication Profile for Administrators #8 - Create a SSL VPN and policy #9 - Create a Portal Capture Rule #10 - Commit and test.
... View more