Prisma Cloud: Unable to login to newly provisioned Prisma Cloud tenant using bypass SSO
710
Created On 10/14/24 16:15 PM - Last Modified 03/19/26 17:15 PM
Question
- Why is the customer unable to login into their newly provisioned Prisma Cloud tenant using direct authentication even though it has been setup?
Environment
- Prisma Cloud
- Authentication
- Bypass SSO (Direct Authentication)
- Authentication
- Prerequisites:
- Ensure user is setup on Direct User authentication section within the Settings -> Access Control -> SSO -> Direct User Authentication page
Answer
- This happens rarely although is very much possible if the user contact details are incorrect when provisioning the new tenant or if the user attempting to login is not the main contact for the new tenant.
Scenario 1: Incorrect User Email address
- Please check if the user contact email within the Audit logs is matching the actual user email. There are cases a character/number is missed.
- Ensure this email matches the SFDC contact email for that customer/user account.
Scenario 2: Designated contact
- More often than not, the user contact used for provisioning the POV/POC tenant is a director or a VP of that Org on the customer side who would never login to Prisma Cloud.
- It is one of their direct reports who attempt the login.
- Please note that when a license request for a new tenant is made, the primary contact on that account is the only one who can login into Prisma cloud using Bypass SSO and add new users.
- No other user can be added unless the licensing teams make changes.