Q: 3
An engineer is implementing a new rollout of SAML for administrator authentication across a
company’s Palo Alto Networks NGFWs. User authentication on company firewalls is currently
performed with RADIUS, which will remain available for six months, until it is decommissioned. The
company wants both authentication types to be running in parallel during the transition to SAML.
Which two actions meet the criteria? (Choose two.)
Options
Discussion
Option B. Setting up both profiles in an authentication sequence is how you allow SAML and RADIUS to work together for admin sign-in. This is the supported parallel setup per PAN-OS docs. Anyone see it differently?
B tbh, since you can use an authentication sequence to chain both SAML and RADIUS profiles at the same time. D isn't right though, because you don't add the SAML server profile directly to the RADIUS profile, that's not supported afaik.
Be respectful. No spam.