HID Palo Alto Networks and ActivID AAA User Manual

Page 2

Advertising
background image

HID Global and Palo Alto Networks Integration | Integration Handbook

External Release | © 2014 HID Global Corporation/ASSA ABLOY AB. All rights reserved.

Page | 2

Table of Contents

Table of Contents ....................................................................................................................................................... 2

1.0

Introduction ....................................................................................................................................................... 3

1.1

Scope of Document .................................................................................................................................... 3

1.2

Prerequisites .............................................................................................................................................. 3

2.0

GlobalProtect Configuration .............................................................................................................................. 4

2.1

Configuring User Authentication ................................................................................................................ 5

2.2

Authentication Profile ................................................................................................................................. 6

2.3

Configuring the SSL VPN Global Protect ................................................................................................... 7

2.3.1

Configuring the security zone ............................................................................................................ 7

2.3.2

Configuring the tunnel interface ........................................................................................................ 8

2.3.1

Configuring the SSL Certificate ....................................................................................................... 10

2.3.2

Configuring the portal ...................................................................................................................... 12

2.3.3

Configuring the gateway.................................................................................................................. 15

3.0

AAA Configuration: Sequence of Procedures ................................................................................................ 18

3.1

Procedure 1: Configure the PALO ALTO NETWORKS Gate .................................................................. 18

3.2

Procedure 2: Assign Group(s) to the PALO ALTO NETWORKS Gate .................................................... 19

3.3

Procedure 3 (optional): Create An Out-of-Band Delivery Gateway ......................................................... 21

3.4

Procedure 4 (optional): Assign An SMS Token ....................................................................................... 23

4.0

Sample Authentication .................................................................................................................................... 24

Advertising