We currently use ISE to process access requests from Global Protect users. The remote GP VPN users are currently using RSA via RADIUS. Works fine, so of course they want to change it up such that ISE forwards to Okta instead of RSA. Both Okta and ...