<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Global Protect Pre-deployment with AlwaysOn and Network Connection  Enforcement in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-pre-deployment-with-alwayson-and-network/m-p/522589#M3469</link>
    <description>Hi all, 
We are currently deploying global protect but we are not using Portal to install Global Protect in the users Workstations, instead we are using SCCM. There are multiple configuration options that can be deployed with the installation but we have not been able to find a solution to deploy Global Protect with AlwaysON enabled and als Network Connection Enforcement unless the user first connects to the Portal/GW and download the configuration. Can you please point me in the right direction or send me an article  that I can follow so that when we deploy Global Protect with SCCM the computer is automatically locked down and the user only has access to the network if they are connected to the GP Portal/GW? Any solution/answer is greatly appreciated.

Thank you,</description>
    <pubDate>Mon, 28 Nov 2022 15:07:22 GMT</pubDate>
    <dc:creator>mmantilla</dc:creator>
    <dc:date>2022-11-28T15:07:22Z</dc:date>
    <item>
      <title>Global Protect Pre-deployment with AlwaysOn and Network Connection  Enforcement</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-pre-deployment-with-alwayson-and-network/m-p/522589#M3469</link>
      <description>Hi all, 
We are currently deploying global protect but we are not using Portal to install Global Protect in the users Workstations, instead we are using SCCM. There are multiple configuration options that can be deployed with the installation but we have not been able to find a solution to deploy Global Protect with AlwaysON enabled and als Network Connection Enforcement unless the user first connects to the Portal/GW and download the configuration. Can you please point me in the right direction or send me an article  that I can follow so that when we deploy Global Protect with SCCM the computer is automatically locked down and the user only has access to the network if they are connected to the GP Portal/GW? Any solution/answer is greatly appreciated.

Thank you,</description>
      <pubDate>Mon, 28 Nov 2022 15:07:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-pre-deployment-with-alwayson-and-network/m-p/522589#M3469</guid>
      <dc:creator>mmantilla</dc:creator>
      <dc:date>2022-11-28T15:07:22Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Pre-deployment with AlwaysOn and Network Connection  Enforcement</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-pre-deployment-with-alwayson-and-network/m-p/522791#M3472</link>
      <description>&lt;P&gt;You're going to want to pre-deploy the required registry keys so that GlobalProtect is actually configured properly. Look at HKEY_LOCAL_MACHINE\SOFTWARE\Palo Alto Networks\GlobalProtect\, specifically PanSetup and Settings on a device that has already connected. Exactly what keys you'll need in your environment I'm not positive, I generally work backwards and figure it out each time I'm tasked with this since people always have slightly different options configured.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Nov 2022 21:57:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-pre-deployment-with-alwayson-and-network/m-p/522791#M3472</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2022-11-29T21:57:20Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Pre-deployment with AlwaysOn and Network Connection  Enforcement</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-pre-deployment-with-alwayson-and-network/m-p/522863#M3474</link>
      <description>&lt;P&gt;Thank you very much. With this you are confirming that indeed is possible and that this is managed by the registry keys as the rest of the options. I am going to have to start researching backwards. I believe there is still some work in documentation required by Palo Alto in this subject.&lt;/P&gt;</description>
      <pubDate>Wed, 30 Nov 2022 12:36:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-pre-deployment-with-alwayson-and-network/m-p/522863#M3474</guid>
      <dc:creator>mmantilla</dc:creator>
      <dc:date>2022-11-30T12:36:07Z</dc:date>
    </item>
  </channel>
</rss>

