<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: GlobalProtect configuration - Client Side. in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-configuration-client-side/m-p/1066321#M6345</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/853695225"&gt;@AllDay&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;GlobalProtect does not have the capability to directly make local system changes beyond its own application configuration and VPN-related (portal/GW) settings. This means the GP client doesn't modify file systems, unrelated settings, or system-wide configurations outside the scope of the VPN client.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;One thing to note is that when you're connected to their GP gateway, they could have policies in place that allow their network to communicate with their GlobalProtect client pool (your client connected to their GP).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As always, ensure you have systems in place to prevent host-based attacks and explicitly configure security policies to prevent any unintended traffic flow. It’s also a good idea to communicate with the customer to understand why the VPN connection is needed. If concerns still persist, consider connecting to their environment in a controlled VLAN and monitor client traffic while connected.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope this helps!&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 14 Jan 2025 02:47:44 GMT</pubDate>
    <dc:creator>JayGolf</dc:creator>
    <dc:date>2025-01-14T02:47:44Z</dc:date>
    <item>
      <title>GlobalProtect configuration - Client Side.</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-configuration-client-side/m-p/1000474#M6318</link>
      <description>&lt;P&gt;Is it possible to configure the GlobalProtect client to not accept configuration settings from the host server?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Jan 2025 11:35:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-configuration-client-side/m-p/1000474#M6318</guid>
      <dc:creator>AllDay</dc:creator>
      <dc:date>2025-01-08T11:35:55Z</dc:date>
    </item>
    <item>
      <title>Re: GlobalProtect configuration - Client Side.</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-configuration-client-side/m-p/1001460#M6320</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/853695225"&gt;@AllDay&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The GP client wont accept config settings (portal app and gw settings) until the client connects to the portal. What are you trying to accomplish?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jan 2025 05:50:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-configuration-client-side/m-p/1001460#M6320</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2025-01-09T05:50:13Z</dc:date>
    </item>
    <item>
      <title>Re: GlobalProtect configuration - Client Side.</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-configuration-client-side/m-p/1001562#M6326</link>
      <description>&lt;P&gt;Thanks &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/220841"&gt;@JayGolf&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a customer who requires us to connect to their system with GlobalProtect, but we don't want them to be able to make changes to our local computer configuration.&lt;/P&gt;</description>
      <pubDate>Mon, 13 Jan 2025 10:18:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-configuration-client-side/m-p/1001562#M6326</guid>
      <dc:creator>AllDay</dc:creator>
      <dc:date>2025-01-13T10:18:58Z</dc:date>
    </item>
    <item>
      <title>Re: GlobalProtect configuration - Client Side.</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-configuration-client-side/m-p/1066321#M6345</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/853695225"&gt;@AllDay&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;GlobalProtect does not have the capability to directly make local system changes beyond its own application configuration and VPN-related (portal/GW) settings. This means the GP client doesn't modify file systems, unrelated settings, or system-wide configurations outside the scope of the VPN client.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;One thing to note is that when you're connected to their GP gateway, they could have policies in place that allow their network to communicate with their GlobalProtect client pool (your client connected to their GP).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As always, ensure you have systems in place to prevent host-based attacks and explicitly configure security policies to prevent any unintended traffic flow. It’s also a good idea to communicate with the customer to understand why the VPN connection is needed. If concerns still persist, consider connecting to their environment in a controlled VLAN and monitor client traffic while connected.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope this helps!&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jan 2025 02:47:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/globalprotect-configuration-client-side/m-p/1066321#M6345</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2025-01-14T02:47:44Z</dc:date>
    </item>
  </channel>
</rss>

