---
title: Setting up a RADIUS profile in the New Generation Firewall
description: To configure Palo Alto Global Protect to work with PingID multi-factor authentication (MFA), you must set up a RADIUS profile.
component: pingid
page_id: pingid:pingid_integrations:pid_setting_up_radius_profile_in_new_generation_firewall
canonical_url: http://docs.pingidentity.com/pingid/pingid_integrations/pid_setting_up_radius_profile_in_new_generation_firewall.html
revdate: January 23, 2024
section_ids:
  steps: Steps
  result: Result:
  next-steps: Next steps
---

# Setting up a RADIUS profile in the New Generation Firewall

To configure Palo Alto Global Protect to work with PingID multi-factor authentication (MFA), you must set up a RADIUS profile.

## Steps

1. Go to **Device → Server Profiles → RADIUS**, and click **Add**.

   ### Result:

   The following window is displayed.

   ![A screen capture of the RADIUS Server Profile window. The window shows a field for Profile Name at the top of the window with a check box for the Administrator Use Only option. In the Server Settings section after the Profile Name field, there are fields for Timeout (sect), Retries, and Authentication Protocol, which has a drop-down list. In the Servers section after the Server Settings section is a list of available servers with categories for each server including Name, RADIUS Server, Secret, and Port. At the bottom of this list are buttons for Add and Delete. The bottom of the window has buttons for OK and Cancel.](_images/fsf1575287163804.png)

2. In the **Profile Name** field, enter a name for the server.

3. In the **Server Settings** section, set the **Timeout** and **Retries**fields according to your policy.

4. From the **Authentication Protocol**list, select **PAP**.

5. In the **Servers** section, click **Add**, and then add the RADIUS server details.

## Next steps

For further information about setting the RADIUS profile, see [Configure RADIUS Authentication](https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/authentication/configure-radius-authentication).
