Configure Proxy Authentication
Select Enterprise Authentication from the menu.
to configure proxy authentication. . SelectYou can select either active or passive authentication.
- Active authentication is for Lookout proxy authentication. User information is applied based on the SSO login (proxy authentication) credentials.
- Passive authentication is for a downstream authenticating proxy (such as BlueCoat) authentication. User login information is applied based on the cloud login credentials, if the header does not contain the user information.
-
Select a Proxy Authentication Method, either Enterprise Single Sign-on (active) or Proxy Header Authentication (passive).
If you select Proxy Header Authentication:
-
- Enter an Authentication Header name.
- Enter a Tenant Header Name for the applicable tenant.
-
Click Save.
When forward proxy is used for SSO-enabled cloud applications, create a Cloud Authentication policy with the Allow & Go Direct action, which will enable traffic to be sent to the cloud via a direct URL rather than a hyphenated URL after SSO authentication.
-