nerdexam
Palo_Alto_Networks

PSE-STRATA-PRO-24 · Question #45

PSE-STRATA-PRO-24 Question #45: Real Exam Question with Answer & Explanation

The correct answer is A. GlobalProtect with multiple authentication profiles for each SAML IdP. To configure GlobalProtect to authenticate users from multiple SAML identity providers (IdPs), the correct approach involves creating multiple authentication profiles, one for each IdP. Option A: GlobalProtect allows configuring multiple SAML authentication profiles, each corresp

Question

A company has multiple business units, each of which manages its own user directories and identity providers (IdPs) with different domain names. The company's network security team wants to deploy a shared GlobalProtect remote access service for all business units to authenticate users to each business unit's IdP. Which configuration will enable the network security team to authenticate GlobalProtect users to multiple SAML IdPs?

Options

  • AGlobalProtect with multiple authentication profiles for each SAML IdP
  • BMultiple authentication mode Cloud Identity Engine authentication profile for use on the
  • CAuthentication sequence that has multiple authentication profiles using different authentication
  • DMultiple Cloud Identity Engine tenants for each business unit

Explanation

To configure GlobalProtect to authenticate users from multiple SAML identity providers (IdPs), the correct approach involves creating multiple authentication profiles, one for each IdP. Option A: GlobalProtect allows configuring multiple SAML authentication profiles, each corresponding to a specific IdP. These profiles are associated with the GlobalProtect portal or gateway. When users attempt to authenticate, they can be directed to the appropriate IdP based on their domain or other

Community Discussion

No community discussion yet for this question.

Full PSE-STRATA-PRO-24 Practice