> ## Documentation Index
> Fetch the complete documentation index at: https://docs-xcor.paloaltonetworks.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Authenticate with Cortex XCOR as a user

> Authenticate with Palo Alto Networks Cortex XCOR by signing in with single sign-on, a password, or a personal access token.

To access Palo Alto Networks Cortex XCOR, a user must first use their user
account to authenticate. User accounts can authenticate interactively by signing in,
or non-interactively by using a personal access token.

For details about how to create and manage user accounts as an administrator, see
[User accounts](/administer/accounts-teams/user-accounts). To authenticate a service
with Cortex XCOR, see [Service accounts](/administer/accounts-teams/service-accounts).

## Sign in interactively

Cortex XCOR administrators can configure their organization to use a
single sign-on (SSO) provider for authentication, or to use an email address and
password, or to offer both methods to users.

Regardless of the method, use one of these supported web browsers to access your
organization's login page for Cortex XCOR:

* Google Chrome
* Mozilla Firefox
* Apple Safari
* Brave

For example, if the domain name of your organization's Cortex XCOR tenant
is `example.chronosphere.io`, go to `https://example.chronosphere.io/login`.

### Use single sign-on

Cortex XCOR supports several SSO providers, including:

* Okta
* Duo
* Azure Active Directory
* Google Suite

As an administrator, contact [Cortex XCOR Support](/support) to enable a service on
your account, or if you need to add another provider.

To sign in if your organization has enabled SSO:

1. Click **Log in with Single Sign On** on the login page. This redirects you to
   your SSO provider.
2. Authenticate with your SSO provider. If successful, this redirects you back to
   Cortex XCOR.

If an SSO user can't sign in, email
[xcorsupport@paloaltonetworks.com](mailto:xcorsupport@paloaltonetworks.com) or contact Cortex XCOR
Support.

### Use an email and password

When an administrator in your organization requests a user account for you,
Cortex XCOR sends an invitation email containing instructions and a link
to create your account to the address they provided.

For details about how to create and manage user accounts as an administrator, see
[User accounts](/administer/accounts-teams/user-accounts).

To create your user account after you receive your invitation email:

1. Click the invitation link you received from your account administrator. This
   opens the **Signup** page.
2. Enter your account details, including a password.
3. Click **Sign Up**. This sends a verification email to your address.
4. Open the verification email when it arrives.
5. Click the link inside the email.
6. After verification, sign in to your account from the login URL.

If your organization hasn't enabled SSO authentication, you must enter your email
address and password at the login page to access your user account.

After you sign in, Cortex XCOR redirects you to your organization's home
page.

### Reset your password

<Note>
  If you have any problems signing in, contact [Cortex XCOR Support](/support).
</Note>

If you forget your password, you can reset it from the login page.

1. Click the **FORGOT PASSWORD?** link on the login page.
2. Enter your email address.
3. Click **Reset Password**. This sends the password reset email, which can take a
   few minutes to deliver. If you don't receive the email after a few minutes,
   examine your email client's spam filter.
4. Follow the instructions in the email to reset your password.

To confirm if a user has an account, have a user who can sign in to Cortex XCOR. In
the navigation menu, click **<Icon icon="shield-user" /> Go to Admin** and then
select
**Platform <span aria-label="and then">></span> Users**
to ensure an account exists for the user's email address. If there's no account, have
an administrator invite the user. For details, see
[User accounts](/administer/accounts-teams/user-accounts).

## Authenticate with a personal access token

To access Cortex XCOR with your user account while using non-interactive
tools, such as [Chronoctl](/tooling/chronoctl) and
[Terraform](/tooling/infrastructure/terraform),
or to access [Cortex XCOR API](/tooling/api-info) or
[Prometheus API](/tooling/prometheus-api),
you can use a personal access token. For details, see
[Personal access tokens](/administer/accounts-teams/personal-access-tokens).


## Related topics

- [Authenticate with the Cortex XCOR MCP server](/integrate/mcp-server/authenticate.md)
- [Install the Cortex XCOR Terraform provider](/tooling/infrastructure/terraform/install.md)
- [User accounts](/administer/accounts-teams/user-accounts.md)
- [Cortex XCOR Pulumi provider](/tooling/infrastructure/pulumi.md)
- [Authenticate in Pipeline CLI](/ingest/pipeline/pipeline-cli/authenticate.md)


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.