Use Single Sign-On with macOS Platform SSO
Focus
Focus
Prisma Access Agent

Use Single Sign-On with macOS Platform SSO

Table of Contents


Use Single Sign-On with macOS Platform SSO

Connect automatically to Prisma Access using you macOS login credentials including Touch ID, Face ID, or smart card with PIN without additional login prompts.
When Platform SSO is configured on your Mac, log into your device using your organization-provided credentials including your password, Touch ID, Face ID, or smart card with PIN. Prisma Access Agent automatically detects your login and begins the authentication process using your existing credentials without displaying browser windows or additional login prompts.
  1. Log into your Mac using your organization-provided credentials. This may include your password, Touch ID, Face ID, or smart card with PIN, depending on how your IT administrator has configured your device.
  2. When your administrator has pushed the Platform SSO profile to you macOS device, you will be notified to register with your identity provide (IdP). Click the notification to proceed.
  3. Continue in the Platform Single Sign-on Registration window.
  4. Enter your credentials to authenticate with your IdP.
  5. In the IdP login window, such as Microsoft Entra, enter the same credentials that you entered in the Platform SSO window and Sign in.
  6. If prompted, follow the instructions to approve the sign in request using your Authenticator app.
  7. When your registration is complete, Close the window.
    Once authentication completes successfully, you can access your organization's applications and resources through the secure network connection. The agent maintains this connection as long as you remain logged into your device.
    If you experience authentication issues, ensure that you have logged into your Mac using your organization-provided credentials and verify your network connection can communicate with your organization's authentication services. If authentication fails, the agent will prompt you to enter credentials manually as a fallback option.
  8. (Optional) Verify that SSO is enabled on your device.
    1. Go to System SettingsUsers & Groups.
    2. Select the information icon for you user name and verify that there is a Platform Single Sign-on section showing the same IdP login information, login method, and status of the registration.