Remove User Access Through Common Services
Table of Contents
Expand all | Collapse all
- Get Started with Common Services: Identity & Access
-
- Add an Identity Federation
- Manually Configure a SAML Identity Provider
- Upload SAML Identity Provider Metadata
- Get the URL of a SAML Identity Provider
- Clone SAML Identity Provider Configuration
- Add or Delete an Identity Federation Owner
- Configure Palo Alto Networks as a Service Provider
- Delete an Identity Federation
- Map a Tenant for Authorization
- Update Tenant Mapping for Authorization
- PAN Resource Name Mapping Properties
- Manage Single Tenant Transition to Multitenant
- Release Updates
Remove User Access Through Common Services
Learn how to remove user access.
Common Services enables you to remove
user access from the platform, as well as from the tenants that
you created.
Hover over the email address in the Identity column, to
see any reasons why a user's access cannot be removed:
- If the tenant has only one user, that user’s access cannot be removed from the tenant.
- If you integrate with a third party IDP for your enterprise, you cannot remove user access directly from the tenant. You need to remove the access from the third party portal.
- If the user's access is inherited from a parent tenant, the access can only be removed at the parent level.
- Use one of the various ways to access Common ServicesIdentity & Access.Select Identity & Access/Access Management. Only one way is shown here.Select the tenant where you want to remove user access.Select one or more users whose access you want to remove.Select Remove.When prompted, Remove the user’s access from the selected tenant.