Users are unable to authenticate through the Cloud SWG (Captive Portal), encountering errors such as "Credentials are Missing" or "Invalid Authentication Form." Authentication policies appear to be enforced, but requests are not being handled correctly
Symptoms:
GroupsOfInterestList::Check_goi_ready() entries indicating a group lookup failure (goi 0).
Cloud SWG requires a policy rule that references the Active Directory (AD) groups. Without a matching rule (even one with "no action"), the Groups of Interest (GOI) are not looked up or assigned by the Auth Connector, resulting in authentication failures.
To fix the issue, Create AD Group Policy Rules: