> For the complete documentation index, see [llms.txt](https://cortex-docs.paloaltonetworks.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://cortex-docs.paloaltonetworks.com/xsoar-6-administrator-guide/6.14/onboard-cortex-xsoar/users-and-roles/authenticate-users-with-saml-2.0/duo-for-single-sign-on/create-duo-groups-for-cortex-xsoar-users.md).

# Create Duo Groups for Cortex XSOAR Users

To authenticate Cortex XSOAR users with Duo, you need to have at least one Duo group of Cortex XSOAR users. You can import a CSV file with a list of users, manually create users in the Duo application, or add your existing Duo users to a group.

There are two common methods for grouping and mapping users:

* Create a single Duo group for all users. For example, Cortex All Users.
* Create a Duo group for each business unit. For example, Cortex XSOAR IT, Cortex XSOAR Analysts, Cortex XSOAR Admins.

1. Log in to Duo and click **Groups**.
2. Select **Add Group**.
3. Type a name and description for the group.

   The name and description should enable you to easily identify the users of that group.
4. Click **Add Group**.
5. Leave the **Status** as **Active** and click **Save Changes**.
6. Select **+Add Users to Group** and select the users you want to add to the group.

   If you import a CSV file with your users, you can specify the group name(s) in the CSV file. If you import a CSV file before creating a group in Duo and the CSV file contains group name(s), the group(s) will be created automatically in Duo.
7. [Define the Duo application to authenticate Cortex XSOAR](/xsoar-6-administrator-guide/6.14/onboard-cortex-xsoar/users-and-roles/authenticate-users-with-saml-2.0/duo-for-single-sign-on/define-duo-to-authenticate-cortex-xsoar.md).


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://cortex-docs.paloaltonetworks.com/xsoar-6-administrator-guide/6.14/onboard-cortex-xsoar/users-and-roles/authenticate-users-with-saml-2.0/duo-for-single-sign-on/create-duo-groups-for-cortex-xsoar-users.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
