<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Migrating existing Explict proxy to Palo alto Transparent Proxy in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/migrating-existing-explict-proxy-to-palo-alto-transparent-proxy/m-p/1237524#M7010</link>
    <description>&lt;P&gt;HI ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We want to migrate existing legacy Explicit proxy to palo alto in transparent proxy mode , we have palo alto with panorama , all the branches using legacy explicit proxy , Legacy Explicit proxy device in HQ and all the branch traffic is redirecting to explicit proxy.&amp;nbsp;&lt;/P&gt;&lt;P&gt;we want to remove explicit proxy .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is it possible using Global Protect we can redirect all the web traffic from branches to HQ palo alto in transparent proxy mode ?&lt;/P&gt;</description>
    <pubDate>Tue, 09 Sep 2025 06:08:30 GMT</pubDate>
    <dc:creator>praveen.dharmaraj</dc:creator>
    <dc:date>2025-09-09T06:08:30Z</dc:date>
    <item>
      <title>Migrating existing Explict proxy to Palo alto Transparent Proxy</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/migrating-existing-explict-proxy-to-palo-alto-transparent-proxy/m-p/1237524#M7010</link>
      <description>&lt;P&gt;HI ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We want to migrate existing legacy Explicit proxy to palo alto in transparent proxy mode , we have palo alto with panorama , all the branches using legacy explicit proxy , Legacy Explicit proxy device in HQ and all the branch traffic is redirecting to explicit proxy.&amp;nbsp;&lt;/P&gt;&lt;P&gt;we want to remove explicit proxy .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is it possible using Global Protect we can redirect all the web traffic from branches to HQ palo alto in transparent proxy mode ?&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2025 06:08:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/migrating-existing-explict-proxy-to-palo-alto-transparent-proxy/m-p/1237524#M7010</guid>
      <dc:creator>praveen.dharmaraj</dc:creator>
      <dc:date>2025-09-09T06:08:30Z</dc:date>
    </item>
    <item>
      <title>Re: Migrating existing Explict proxy to Palo alto Transparent Proxy</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/migrating-existing-explict-proxy-to-palo-alto-transparent-proxy/m-p/1237563#M7014</link>
      <description>&lt;P&gt;Not exactly enough information for me to understand what you are asking for. But transparent proxy means all your internal routes to the internet, run through the palo device, regardless. Basically the default method most edge firewalls operate in. Explicit proxy basically means without the explicit proxy setup, traffic is going some different way to the internet, potentially. Can you do this transparent proxy with gp, yes, but not all devices support gp, like multi-function printers, guest wifi networks.&amp;nbsp; You would want gp in a always connected method. Internet is used broad here, it could mean just the real internet, but could also include internal sites as well, that need more security.&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You could also do this with mpls, sdwan or ipsec tunnels, and have all the internal networks setup with default routes that end them up at the palo alto.&amp;nbsp; The far end devices don't even have to be palo devices to do this, they just have traffic end up at the hq palo device.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2025 13:45:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/migrating-existing-explict-proxy-to-palo-alto-transparent-proxy/m-p/1237563#M7014</guid>
      <dc:creator>JustinWoodman</dc:creator>
      <dc:date>2025-09-09T13:45:19Z</dc:date>
    </item>
    <item>
      <title>Re: Migrating existing Explict proxy to Palo alto Transparent Proxy</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/migrating-existing-explict-proxy-to-palo-alto-transparent-proxy/m-p/1237747#M7020</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you , solution which we are looking only for the laptop /desktop . branches instead of using explicit proxy we want to use transparent proxy using global protect . now all the sites are interconnected using fortigate sdwan solution . only interested traffic is reaching to HQ . palo alto firewall is poisoned as perimeter firewall in HQ .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;is there is any way we can use Global Protect to redirect traffic (Http+Https) from the branches to HQ in-order to remove explicit proxy architecture .&lt;/P&gt;</description>
      <pubDate>Thu, 11 Sep 2025 11:03:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/migrating-existing-explict-proxy-to-palo-alto-transparent-proxy/m-p/1237747#M7020</guid>
      <dc:creator>praveen.dharmaraj</dc:creator>
      <dc:date>2025-09-11T11:03:29Z</dc:date>
    </item>
  </channel>
</rss>

