Secure Access SAML Gateway Services
Required by Cisco Secure Client deployments with the Umbrella Roaming Security or Zero Trust modules and Secure Access integrations with SAML identity providers (IdPs).
You must deploy either a Network Tunnel or PAC file in your organization to connect user devices to the Secure Access Secure Web Gateway (SWG).
We recommend that you allow all traffic on port 443 over TCP for the Secure Access SAML Gateway services domains.
Unless noted, send id.sse.cisco.com requests to the SWG, not directly to the internet.
Domain | Port/Protocol | Description |
---|---|---|
saml.fg.id.sse.cisco.com | 443 TCP | Secure Access SAML Gateway |
*.fg.id.sse.cisco.com | 443 TCP | Secure Access SAML Gateway (multiple entity IDs) |