<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Secure Access identity question in Cloud Security</title>
    <link>https://community.cisco.com/t5/cloud-security/secure-access-identity-question/m-p/5197989#M2011</link>
    <description>&lt;P&gt;VA is not **required** with SSE, but it is available to provide DNS level protection with user attribution for policy application and reporting. Details here:&amp;nbsp;&lt;A href="https://docs.sse.cisco.com/sse-user-guide/docs/deploy-virtual-appliances" target="_blank"&gt;https://docs.sse.cisco.com/sse-user-guide/docs/deploy-virtual-appliances&lt;/A&gt;&amp;nbsp;Useful for agent-less deployments in IOT, servers etc. as it was with Umbrella.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 24 Sep 2024 08:38:18 GMT</pubDate>
    <dc:creator>howe</dc:creator>
    <dc:date>2024-09-24T08:38:18Z</dc:date>
    <item>
      <title>Secure Access identity question</title>
      <link>https://community.cisco.com/t5/cloud-security/secure-access-identity-question/m-p/5155936#M1985</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Let's say that I want to build a security policy where source is equal to MS AD group (users/groups will be provisioned through AD connector). My question is the following. How does firewall feature of SA know about IP-user mapping? According to what I am reading SAML is only for SWG/ZTA... Any hints?&lt;/P&gt;</description>
      <pubDate>Mon, 05 Aug 2024 13:13:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/secure-access-identity-question/m-p/5155936#M1985</guid>
      <dc:creator>Maciej Waliszko</dc:creator>
      <dc:date>2024-08-05T13:13:32Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Access identity question</title>
      <link>https://community.cisco.com/t5/cloud-security/secure-access-identity-question/m-p/5156015#M1986</link>
      <description>&lt;P&gt;The AD connector provides user to IP mapping for all features..&lt;/P&gt;
&lt;P&gt;are you seeing any issues with that&amp;nbsp; ?&lt;/P&gt;</description>
      <pubDate>Mon, 05 Aug 2024 16:16:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/secure-access-identity-question/m-p/5156015#M1986</guid>
      <dc:creator>ccieexpert</dc:creator>
      <dc:date>2024-08-05T16:16:37Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Access identity question</title>
      <link>https://community.cisco.com/t5/cloud-security/secure-access-identity-question/m-p/5156359#M1987</link>
      <description>&lt;P&gt;The problem is that there are no single word in the SA documentation about its integration with Umbrella VA (nothing is also seen in the SA dashboard to do this integration). This is in contrary to Umbrella SIG docs where we can find nice info like the one below&lt;/P&gt;
&lt;P class="p1"&gt;&lt;A href="https://docs.umbrella.com/umbrella-user-guide/docs/identity-and-sig-deployment" target="_blank"&gt;https://docs.umbrella.com/umbrella-user-guide/docs/identity-and-sig-deployment&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Aug 2024 09:26:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/secure-access-identity-question/m-p/5156359#M1987</guid>
      <dc:creator>Maciej Waliszko</dc:creator>
      <dc:date>2024-08-06T09:26:23Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Access identity question</title>
      <link>https://community.cisco.com/t5/cloud-security/secure-access-identity-question/m-p/5156577#M1988</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;AD connector is different from VA... VA is not required with SSE.. but AD connector is required..&lt;/P&gt;
&lt;P&gt;Please see this:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.sse.cisco.com/sse-user-guide/docs/provision-users-and-groups-from-azure-active-directory#prerequisites" target="_blank"&gt;https://docs.sse.cisco.com/sse-user-guide/docs/provision-users-and-groups-from-azure-active-directory#prerequisites&lt;/A&gt;&lt;/P&gt;
&lt;UL style="box-sizing: border-box; margin-bottom: 15px; margin-top: 10px !important; list-style: initial; padding-left: 2em; color: #384248; font-family: CiscoSans, helvetica, arial, sans-serif; font-size: 15px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; white-space: normal; background-color: #ffffff; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"&gt;
&lt;LI style="box-sizing: border-box; font-weight: 400; color: #333333; clear: both; margin-top: 0.25em;"&gt;For IP-to-user mapping deployments, you must use an on-premises Secure Access AD connector. Azure does not store the private IP to Active AD user mappings.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;**Please rate as helpful if this was useful **&lt;/P&gt;</description>
      <pubDate>Tue, 06 Aug 2024 16:53:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/secure-access-identity-question/m-p/5156577#M1988</guid>
      <dc:creator>ccieexpert</dc:creator>
      <dc:date>2024-08-06T16:53:49Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Access identity question</title>
      <link>https://community.cisco.com/t5/cloud-security/secure-access-identity-question/m-p/5197989#M2011</link>
      <description>&lt;P&gt;VA is not **required** with SSE, but it is available to provide DNS level protection with user attribution for policy application and reporting. Details here:&amp;nbsp;&lt;A href="https://docs.sse.cisco.com/sse-user-guide/docs/deploy-virtual-appliances" target="_blank"&gt;https://docs.sse.cisco.com/sse-user-guide/docs/deploy-virtual-appliances&lt;/A&gt;&amp;nbsp;Useful for agent-less deployments in IOT, servers etc. as it was with Umbrella.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 24 Sep 2024 08:38:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/secure-access-identity-question/m-p/5197989#M2011</guid>
      <dc:creator>howe</dc:creator>
      <dc:date>2024-09-24T08:38:18Z</dc:date>
    </item>
  </channel>
</rss>

