<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Prioritizing Teams  application traffic for Global Protect and Local users in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/prioritizing-teams-application-traffic-for-global-protect-and/m-p/441514#M2036</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/153031"&gt;@nikoolayy1&lt;/a&gt;&amp;nbsp; thanks for the reply. The issue is we need all the traffic to go through the full tunnel.So split tunnel is not an option for us.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So we need to know whether application based Qos Policy will work better on the firewall as we had previously seen PBF rule based on Application traffic will not work well due to technical constraints.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
    <pubDate>Mon, 18 Oct 2021 08:40:15 GMT</pubDate>
    <dc:creator>tamilvanan</dc:creator>
    <dc:date>2021-10-18T08:40:15Z</dc:date>
    <item>
      <title>Prioritizing Teams  application traffic for Global Protect and Local users</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/prioritizing-teams-application-traffic-for-global-protect-and/m-p/441310#M2034</link>
      <description>&lt;P&gt;Hi Team,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are facing slowness issue with the Teams Application traffic Voice and Video and there is some disruption on the voice and video.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is it possible to configure Qos for Teams application traffic and whether it will work correctly?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If any one had already implemented Qos for Team in your environment could you please let us know on how to do the configuration to achieve this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Epically the Qos Rule and applications needed to be included in the application tab.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 17 Oct 2021 07:45:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/prioritizing-teams-application-traffic-for-global-protect-and/m-p/441310#M2034</guid>
      <dc:creator>tamilvanan</dc:creator>
      <dc:date>2021-10-17T07:45:14Z</dc:date>
    </item>
    <item>
      <title>Re: Prioritizing Teams  application traffic for Global Protect and Local users</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/prioritizing-teams-application-traffic-for-global-protect-and/m-p/441331#M2035</link>
      <description>&lt;P&gt;Better to exclude this traffic using split tunnel with domain or process:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/globalprotect/9-1/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-domain-and-application.html" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/globalprotect/9-1/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-domain-and-application.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/globalprotect-articles/globalprotect-optimizing-office-365-traffic/ta-p/319669" target="_blank"&gt;https://live.paloaltonetworks.com/t5/globalprotect-articles/globalprotect-optimizing-office-365-traffic/ta-p/319669&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Also to exlude it for the&amp;nbsp;enforce globalprotect connection for network access if you use such option:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/globalprotect/5-1/globalprotect-app-new-features/new-features-released-in-gp-app/enforce-globalprotect-exclusions.html" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/globalprotect/5-1/globalprotect-app-new-features/new-features-released-in-gp-app/enforce-globalprotect-exclusions.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For more about VPN issue I recommend:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/general-topics/knowledge-sharing-community-account-fix-and-globalprotect/td-p/441311" target="_blank" rel="noopener"&gt;https://live.paloaltonetworks.com/t5/general-topics/knowledge-sharing-community-account-fix-and-globalprotect/td-p/441311&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 17 Oct 2021 10:34:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/prioritizing-teams-application-traffic-for-global-protect-and/m-p/441331#M2035</guid>
      <dc:creator>nikoolayy1</dc:creator>
      <dc:date>2021-10-17T10:34:14Z</dc:date>
    </item>
    <item>
      <title>Re: Prioritizing Teams  application traffic for Global Protect and Local users</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/prioritizing-teams-application-traffic-for-global-protect-and/m-p/441514#M2036</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/153031"&gt;@nikoolayy1&lt;/a&gt;&amp;nbsp; thanks for the reply. The issue is we need all the traffic to go through the full tunnel.So split tunnel is not an option for us.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So we need to know whether application based Qos Policy will work better on the firewall as we had previously seen PBF rule based on Application traffic will not work well due to technical constraints.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Oct 2021 08:40:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/prioritizing-teams-application-traffic-for-global-protect-and/m-p/441514#M2036</guid>
      <dc:creator>tamilvanan</dc:creator>
      <dc:date>2021-10-18T08:40:15Z</dc:date>
    </item>
    <item>
      <title>Re: Prioritizing Teams  application traffic for Global Protect and Local users</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/prioritizing-teams-application-traffic-for-global-protect-and/m-p/441539#M2037</link>
      <description>&lt;P&gt;If you are not decrypting the traffic it could be that you can't match corectlly the application etc. You may try using QOS based on the globalprotect zones or destination ports (services as palo alto calls them) , destination FQDN, URL or ip addresses:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/globalprotect/9-0/globalprotect-admin/get-started/create-interfaces-and-zones-for-globalprotect.html" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/globalprotect/9-0/globalprotect-admin/get-started/create-interfaces-and-zones-for-globalprotect.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/quality-of-service/configure-qos.html" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/quality-of-service/configure-qos.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Maybe helpfull:&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.youtube.com/watch?v=7fU91SZ5xDk" target="_blank" rel="noopener"&gt;https://www.youtube.com/watch?v=7fU91SZ5xDk&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Oct 2021 10:22:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/prioritizing-teams-application-traffic-for-global-protect-and/m-p/441539#M2037</guid>
      <dc:creator>nikoolayy1</dc:creator>
      <dc:date>2021-10-18T10:22:05Z</dc:date>
    </item>
    <item>
      <title>Re: Prioritizing Teams  application traffic for Global Protect and Local users</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/prioritizing-teams-application-traffic-for-global-protect-and/m-p/444944#M2091</link>
      <description>&lt;P&gt;Fully aree with Nikolai - I've lived it through - attempts to pritoritize MS Teams by application failed in my case (I've discovered many traffic missing the policy, also we are using UDP for calls, not TCP that can be recognized as ms-teams app - so in my case I've finished with working QoS policy based on MS Teams official endpoint list (&lt;A href="https://docs.microsoft.com/en-us/microsoft-365/enterprise/urls-and-ip-address-ranges?view=o365-worldwide#skype-for-business-online-and-microsoft-teams" target="_blank"&gt;https://docs.microsoft.com/en-us/microsoft-365/enterprise/urls-and-ip-address-ranges?view=o365-worldwide#skype-for-business-online-and-microsoft-teams&lt;/A&gt;)&lt;/P&gt;</description>
      <pubDate>Tue, 02 Nov 2021 07:48:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/prioritizing-teams-application-traffic-for-global-protect-and/m-p/444944#M2091</guid>
      <dc:creator>DDmchk</dc:creator>
      <dc:date>2021-11-02T07:48:21Z</dc:date>
    </item>
  </channel>
</rss>

