<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic GlobalProtect Connection Failed for Some Client Certificate Users in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-connection-failed-for-some-client-certificate/m-p/568094#M4691</link>
    <description>&lt;P&gt;We have several GlobalProtect gateways using LDAP and client certificate for authentication. A few users have reported receiving the "Connection Failed. Gateway x: The network connection is unreachable or the gateway is unresponsive. Check the network connection and reconnect". This is received for all gateways. The users are Windows 10 users who have valid client certificates and the gateway Globalprotect log shows no attempted connections to the gateway by the affected users.&lt;/P&gt;
&lt;P&gt;After checking the GP client PanGPA.log, the following was found: ERROR_WINHTTP_CLIENT_CERT_NO_ACCESS_PRIVATE_KEY. In checking certmgr.msc, the client certificate reports that the private key exists. I found references to this error after Windows 11 upgrades, but these users did not upgrade. The recommended fix was to remove the client cert and reissue it. We found that this does resolve the problem. After deleting the client cert and reissuing it, the user can successfully connect to GlobalProtect.&lt;/P&gt;</description>
    <pubDate>Fri, 01 Dec 2023 23:00:51 GMT</pubDate>
    <dc:creator>peppywoll</dc:creator>
    <dc:date>2023-12-01T23:00:51Z</dc:date>
    <item>
      <title>GlobalProtect Connection Failed for Some Client Certificate Users</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-connection-failed-for-some-client-certificate/m-p/568094#M4691</link>
      <description>&lt;P&gt;We have several GlobalProtect gateways using LDAP and client certificate for authentication. A few users have reported receiving the "Connection Failed. Gateway x: The network connection is unreachable or the gateway is unresponsive. Check the network connection and reconnect". This is received for all gateways. The users are Windows 10 users who have valid client certificates and the gateway Globalprotect log shows no attempted connections to the gateway by the affected users.&lt;/P&gt;
&lt;P&gt;After checking the GP client PanGPA.log, the following was found: ERROR_WINHTTP_CLIENT_CERT_NO_ACCESS_PRIVATE_KEY. In checking certmgr.msc, the client certificate reports that the private key exists. I found references to this error after Windows 11 upgrades, but these users did not upgrade. The recommended fix was to remove the client cert and reissue it. We found that this does resolve the problem. After deleting the client cert and reissuing it, the user can successfully connect to GlobalProtect.&lt;/P&gt;</description>
      <pubDate>Fri, 01 Dec 2023 23:00:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-connection-failed-for-some-client-certificate/m-p/568094#M4691</guid>
      <dc:creator>peppywoll</dc:creator>
      <dc:date>2023-12-01T23:00:51Z</dc:date>
    </item>
  </channel>
</rss>

