<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: GP - Pre-Login in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/gp-pre-login/m-p/590984#M5526</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/167427"&gt;@securehops&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Are you planning to use pre-logon for users&amp;nbsp;&lt;SPAN&gt;on an endpoint who have not previously logged in to the device? Or are you okay with having users login once for pre-logon? If the latter, you can create user group mapping for the specific users you'd like to test pre-logon. Once created add in the additional config and specify the user group you created.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 03 Jul 2024 05:53:58 GMT</pubDate>
    <dc:creator>JayGolf</dc:creator>
    <dc:date>2024-07-03T05:53:58Z</dc:date>
    <item>
      <title>GP - Pre-Login</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/gp-pre-login/m-p/590726#M5518</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have a GP Portal with a few different agent configurations.&amp;nbsp; Depending on the user's AD group, they may have different settings.&amp;nbsp; Current setup for all agent configs is Always-On.&amp;nbsp; I want to enable pre-logon(always on) for a specific use case without impacting all the other users.&amp;nbsp; What's the best way to go about this?&amp;nbsp; If I were create a new agent configuration and that to pre-logon,&amp;nbsp; I wouldn't be able to scope it to specific users, as pre-logon is not meant for users.&amp;nbsp; &amp;nbsp;What's the best way to accomplish this?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Eventually, maybe I would convert from always on to prelogon (always on) for all, but even then, would still need to maintain the couple different agent configuration settings.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jun 2024 17:50:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/gp-pre-login/m-p/590726#M5518</guid>
      <dc:creator>securehops</dc:creator>
      <dc:date>2024-06-28T17:50:39Z</dc:date>
    </item>
    <item>
      <title>Re: GP - Pre-Login</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/gp-pre-login/m-p/590984#M5526</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/167427"&gt;@securehops&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Are you planning to use pre-logon for users&amp;nbsp;&lt;SPAN&gt;on an endpoint who have not previously logged in to the device? Or are you okay with having users login once for pre-logon? If the latter, you can create user group mapping for the specific users you'd like to test pre-logon. Once created add in the additional config and specify the user group you created.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Jul 2024 05:53:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/gp-pre-login/m-p/590984#M5526</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2024-07-03T05:53:58Z</dc:date>
    </item>
    <item>
      <title>Re: GP - Pre-Login</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/gp-pre-login/m-p/591137#M5527</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/220841"&gt;@JayGolf&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind of a mixed bag.&amp;nbsp; That would be one use case.&amp;nbsp; Another use case would be for users who have never logged into the machine before, so would need it for profile creation on the device.&amp;nbsp; Basically, login to the device as a local account after imaging, connect to GP, add machine to AD domain.&amp;nbsp; After that a new user would need to login and have their profile created.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 04 Jul 2024 01:50:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/gp-pre-login/m-p/591137#M5527</guid>
      <dc:creator>securehops</dc:creator>
      <dc:date>2024-07-04T01:50:21Z</dc:date>
    </item>
  </channel>
</rss>

