This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

azure ad

Only took quick search of the forums, but is it possible to authenticate against Azure AD without Azure Domain services??  Has anyone gotten Azure AD auth like this to work??

Just id love to do without the need for the Client Authentication app which sometimes times out on me or overtimes doesnt load / login on startup.

Id love to investigate the idea of using SSO auth with XG and Azure AD (non Domain services) to work.  Is it possible??

Thanks

JK



This thread was automatically locked due to age.
Parents Reply
  • Hi John,

     

    I would really need your help to configure the Azure AD to integrate on the on-premise Sophos XG firewall v18 MR1.

    We do not have an On-premise Domain controller.

     

    Users are already synchronized on Central form Azure AD.

    How do i alter the app manifests to get the groups right?

Children
  • Azure AD is a feature, which is currently on the roadmap to be integrated in for the future. 

    As Azure AD could be integrated as a Standard LDAP product, unlucky the answers by Azure AD breaks to the common AD. 

    So this is currently not possible to integrate a Azure AD. 

    Simple midterm solution would be to create a small azure appliance and integrate this as a DC with AD Sync. Therefore you can talk to the AD, which is running in the cloud. 

  • LuCar Toni,

    Thank you once again for your response.

    I do not plan for a VM, just want to be in the cloud.

    I have Azure AD Sync with Sophos Central and all the users imported from Azure AD and the computers joined to the Azure AD.

    Can the XG firewall support modern authentication like Sophos Central, so the users can be imported to the XG firewall since the they are already on Sophos Central?

    I have been looking for a workaround.

    Have to revert to Mac Address and Client Agent Auth.

     

    How soon can this feature be developed by the engineering team? Many XG customers need this.