beautypg.com
HID Global and Palo Alto Networks Integration | Integration Handbook
External Release | © 2014 HID Global Corporation/ASSA ABLOY AB. All rights reserved.
Page | 2
Table of Contents
Table of Contents ....................................................................................................................................................... 2
1.0
Introduction ....................................................................................................................................................... 3
1.1
Scope of Document .................................................................................................................................... 3
1.2
Prerequisites .............................................................................................................................................. 3
2.0
GlobalProtect Configuration .............................................................................................................................. 4
2.1
Configuring User Authentication ................................................................................................................ 5
2.2
Authentication Profile ................................................................................................................................. 6
2.3
Configuring the SSL VPN Global Protect ................................................................................................... 7
2.3.1
Configuring the security zone ............................................................................................................ 7
2.3.2
Configuring the tunnel interface ........................................................................................................ 8
Configuring the SSL Certificate ....................................................................................................... 10
Configuring the portal ...................................................................................................................... 12
2.3.3
Configuring the gateway.................................................................................................................. 15
3.0
AAA Configuration: Sequence of Procedures ................................................................................................ 18
3.1
Procedure 1: Configure the PALO ALTO NETWORKS Gate .................................................................. 18
3.2
Procedure 2: Assign Group(s) to the PALO ALTO NETWORKS Gate .................................................... 19
3.3
Procedure 3 (optional): Create An Out-of-Band Delivery Gateway ......................................................... 21
3.4
Procedure 4 (optional): Assign An SMS Token ....................................................................................... 23
4.0
Sample Authentication .................................................................................................................................... 24