<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Global Protect Internal Gateway &amp;quot;Not Connected&amp;quot; in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-internal-gateway-quot-not-connected-quot/m-p/542675#M4027</link>
    <description>&lt;P&gt;I have a PA-440 running 10.2.3-h4.&amp;nbsp; I have a working external GlobalProtect gateway and created an internal gateway.&amp;nbsp; I have enabled "Internal Host Detection" added the internal gateway information to the config of the portal.&amp;nbsp; After trying to connect, the main GlobalProtect screen shows "Not Connected" with "Select the portal to connect and secure access to your applications and the internet.", however, the "Settings" screen shows "Connected - Internal".&amp;nbsp; I do not see any user information in the firewalls for this client connection, however the GlobalProtect logs show successful authenication.&amp;nbsp; Any idea why this would be happening?&lt;/P&gt;</description>
    <pubDate>Fri, 19 May 2023 02:48:46 GMT</pubDate>
    <dc:creator>jwalls</dc:creator>
    <dc:date>2023-05-19T02:48:46Z</dc:date>
    <item>
      <title>Global Protect Internal Gateway "Not Connected"</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-internal-gateway-quot-not-connected-quot/m-p/542675#M4027</link>
      <description>&lt;P&gt;I have a PA-440 running 10.2.3-h4.&amp;nbsp; I have a working external GlobalProtect gateway and created an internal gateway.&amp;nbsp; I have enabled "Internal Host Detection" added the internal gateway information to the config of the portal.&amp;nbsp; After trying to connect, the main GlobalProtect screen shows "Not Connected" with "Select the portal to connect and secure access to your applications and the internet.", however, the "Settings" screen shows "Connected - Internal".&amp;nbsp; I do not see any user information in the firewalls for this client connection, however the GlobalProtect logs show successful authenication.&amp;nbsp; Any idea why this would be happening?&lt;/P&gt;</description>
      <pubDate>Fri, 19 May 2023 02:48:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-internal-gateway-quot-not-connected-quot/m-p/542675#M4027</guid>
      <dc:creator>jwalls</dc:creator>
      <dc:date>2023-05-19T02:48:46Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Internal Gateway "Not Connected"</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-internal-gateway-quot-not-connected-quot/m-p/542714#M4028</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/15403"&gt;@jwalls&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;The logs you have provided shows that client is connecting and authenticating to the portal, but no logs from the internal gateway. You should see successfull authentication from internal gatway if connection is successful. &lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Have you checked if traffic is allowed? Traffic from GP client to GP portal/gateway is also passing the policy. In general the default intra-zone rule would allow this (inside user to inside interface), but I would suggest you to first start by confirming that FW is allowing the traffic to the internal gateway.&lt;/P&gt;
&lt;P&gt;- Check traffic logs filtering by the internal gateway IP&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;From the client screenshots it looks like the internal host detection is working fine, but to confirm you can check GP logs. &lt;/P&gt;
&lt;P&gt;- Check the logs "PanGPS.log" and "pan_gp_events.log". Here are some resources that might help you:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/kcSArticleDetail?id=kA10g000000ClUk" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/kcSArticleDetail?id=kA10g000000ClUk&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClaLCAS" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClaLCAS&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Last episode of PANCast by &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/53844"&gt;@jarena&lt;/a&gt;&amp;nbsp; can also help you - &lt;A href="https://live.paloaltonetworks.com/t5/pancast/pancast-episode-17-globalprotect-connections-and-troubleshooting/ta-p/541325" target="_blank"&gt;https://live.paloaltonetworks.com/t5/pancast/pancast-episode-17-globalprotect-connections-and-troubleshooting/ta-p/541325&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 19 May 2023 07:53:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-internal-gateway-quot-not-connected-quot/m-p/542714#M4028</guid>
      <dc:creator>aleksandar.astardzhiev</dc:creator>
      <dc:date>2023-05-19T07:53:30Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Internal Gateway "Not Connected"</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-internal-gateway-quot-not-connected-quot/m-p/543098#M4035</link>
      <description>&lt;P&gt;Thanks!&amp;nbsp; I dug into those logs a little deeper an saw: P1370-T31867 05/23/2023 14:34:24:869 Error(3312): Received DNS reverse lookup response error -65554&lt;/P&gt;
&lt;P&gt;My Reverse DNS was not working properly for my internal gateway. Once I corrected that it is working perfect!&lt;/P&gt;</description>
      <pubDate>Tue, 23 May 2023 20:22:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-internal-gateway-quot-not-connected-quot/m-p/543098#M4035</guid>
      <dc:creator>jwalls</dc:creator>
      <dc:date>2023-05-23T20:22:46Z</dc:date>
    </item>
  </channel>
</rss>

