<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic GlobalProtect doesn't upgrade transparently. in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-doesn-t-upgrade-transparently/m-p/588559#M5413</link>
    <description>&lt;P&gt;In Prisma Access Mobile User, the user GP version was distributed as 6.2.0. However, due to an issue, I needed to upgrade to 6.2.3, so I set upgrade globalprotect to allow transparently in the app settings. However, there was no change for 6.2.0 users, so I installed 6.1.4 as a test and waited, and it was automatically upgraded to 6.2.3 within 5 minutes. What I'm curious about here is whether it only works if there is a difference in the &lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;A&lt;/STRONG&gt;&lt;/FONT&gt; part from 6.&lt;FONT color="#FF0000"&gt;A&lt;/FONT&gt;.B Does anyone know exactly?&lt;/P&gt;</description>
    <pubDate>Mon, 03 Jun 2024 06:58:22 GMT</pubDate>
    <dc:creator>tjsrhkd8741</dc:creator>
    <dc:date>2024-06-03T06:58:22Z</dc:date>
    <item>
      <title>GlobalProtect doesn't upgrade transparently.</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-doesn-t-upgrade-transparently/m-p/588559#M5413</link>
      <description>&lt;P&gt;In Prisma Access Mobile User, the user GP version was distributed as 6.2.0. However, due to an issue, I needed to upgrade to 6.2.3, so I set upgrade globalprotect to allow transparently in the app settings. However, there was no change for 6.2.0 users, so I installed 6.1.4 as a test and waited, and it was automatically upgraded to 6.2.3 within 5 minutes. What I'm curious about here is whether it only works if there is a difference in the &lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;A&lt;/STRONG&gt;&lt;/FONT&gt; part from 6.&lt;FONT color="#FF0000"&gt;A&lt;/FONT&gt;.B Does anyone know exactly?&lt;/P&gt;</description>
      <pubDate>Mon, 03 Jun 2024 06:58:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-doesn-t-upgrade-transparently/m-p/588559#M5413</guid>
      <dc:creator>tjsrhkd8741</dc:creator>
      <dc:date>2024-06-03T06:58:22Z</dc:date>
    </item>
    <item>
      <title>Re: GlobalProtect doesn't upgrade transparently.</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-doesn-t-upgrade-transparently/m-p/588575#M5415</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/278797"&gt;@tjsrhkd8741&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I personally don't have practical experience with Prisma Access, but in nutshell it is the same technollogy for on-prem GlobalProtect.&lt;/P&gt;
&lt;P&gt;I can confirm GlobalProtect transperant upgrade works for major, minor and patch version of GP agent. Meaning transparent upgrade should trigger agent upgrade from 6.2.0 to 6.2.3.&lt;BR /&gt;&lt;BR /&gt;I am guessing the following has happened in your case:&lt;/P&gt;
&lt;P&gt;1. You have activated the new GP agent 6.2.3 and enabled transparent upgrade in GP portal setting&lt;/P&gt;
&lt;P&gt;2. Test machine has reconnected to VPN, but this didn't triggered upgrade. I assume this is because GP agent has reconnected using cached gateway config. For that reason GP agent "didn't got the message" that it should upgrade - using cached gateway config haven't the transperant upgrade enabled.&lt;/P&gt;
&lt;P&gt;3. Manually uninstalling and installing GP 6.1.4 have force the GP agent to connect to portal first and got fresh copy of the config. Which has triggered the transparent upgrade.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When GlobalProtect is connecting to the tunnel it will first try to connect to the previous "known good gateway". If gateway is still reachable and authentication is successful, GP will not connect to portal first. The check for transparent upgrade is performed during GP portal login (when GP is taking the latest copy of the config). Once connected GP will periodically connect to portal to check for update, but in most cases this portal refresh timer is set to 4 or 8hour (or more). I have noticed that when user disconnect and reconnect, this timer is reset. So it is quite common for most of the users to not get latest portal config for long time.&lt;/P&gt;</description>
      <pubDate>Mon, 03 Jun 2024 08:45:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-doesn-t-upgrade-transparently/m-p/588575#M5415</guid>
      <dc:creator>aleksandar.astardzhiev</dc:creator>
      <dc:date>2024-06-03T08:45:15Z</dc:date>
    </item>
  </channel>
</rss>

