Strata Cloud Manager
Cloud Identity Engine
Table of Contents
Expand All
|
Collapse All
Strata Cloud Manager Docs
Cloud Identity Engine
Learn to configure Cloud Identity Engine authentication profiles.
Where Can I Use This? | What Do I Need? |
---|---|
|
Each of these licenses include access to Strata Cloud Manager:
→ The features and capabilities available to you in Strata Cloud Manager depend on which license(s) you are
using.
|
The Cloud Identity Engine (CIE) is used for identifying and authenticating users in
firewall web interfaces and mobile users in a Prisma Access Explicit Proxy
deployment. In Prisma Access, the Cloud Identity Engine integrates with the Explicit
Proxy Authentication Cache Service (ACS) and uses SAML identity providers (IdPs) to
provide authentication for Explicit Proxy mobile users.
To authenticate users using Cloud Identity Engine, you must configure an
authentication profile.
The SAML/CIE authentication method is displayed only if the Cloud Authentication
Service (CAS) is enabled. If the CIE authentication or CAS is not supported on
your Prisma Access tenant, then it shows only the SAML authentication
method.
Before you begin:
- Review the Explicit Proxy guidelines.
- Set up an authentication profile in the Cloud Identity Engine.
- Go to ManageConfigurationIdentity ServicesAuthentication, set the configuration scope to Explicit Proxy and Add Profile under Authentication Profiles.Select the Authentication Method: Cloud Identity Engine.Enter a unique Profile Name.Select the Cloud Identity Engine authentication Profile you configured in the Cloud Identity Engine.Save your changes.