<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: New to GlobalProtect in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/new-to-globalprotect/m-p/382007#M845</link>
    <description>&lt;P&gt;Under network/GP/Gateways/Agent/Client setting you can play with split tunneling.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;easiest way would be to add all of your internal subnets into the "Include" section.&amp;nbsp; anything elas would not use the VPN tunnel.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Or, you can add your domain in the domain and application tab. has the same effect (ish)&amp;nbsp; it's up to you as will only work with fqdn and not IP.&lt;/P&gt;&lt;P&gt;oute&lt;/P&gt;&lt;P&gt;Just add 10.0.0.0/8, 172.16.0.0/12&amp;nbsp; and 192.168.0.0/16&amp;nbsp; to the split tunnel access route...&amp;nbsp; &amp;nbsp;Bingo....&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/globalprotect/10-0/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-access-route.html" target="_blank"&gt;https://docs.paloaltonetworks.com/globalprotect/10-0/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-access-route.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/globalprotect/9-1/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-domain-and-application.html" target="_blank"&gt;https://docs.paloaltonetworks.com/globalprotect/9-1/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-domain-and-application.html&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 25 Jan 2021 18:01:05 GMT</pubDate>
    <dc:creator>Mick_Ball</dc:creator>
    <dc:date>2021-01-25T18:01:05Z</dc:date>
    <item>
      <title>New to GlobalProtect</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/new-to-globalprotect/m-p/381974#M839</link>
      <description>&lt;P&gt;Hey guys -&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Currently in a trial period with the VM-300 series and using GlobalProtect.&amp;nbsp; When going through the initial setup with a tech, he mentioned that if we wanted to keep all external traffic off the VPN we could do so.&amp;nbsp; This would mean that anything that would need internal traffic would use the VPN and anything the user is trying to access on the web would use their ISP.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could someone either link some documentation or where to find this option so I can look into getting this implemented?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Mon, 25 Jan 2021 17:19:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/new-to-globalprotect/m-p/381974#M839</guid>
      <dc:creator>arothbauer</dc:creator>
      <dc:date>2021-01-25T17:19:30Z</dc:date>
    </item>
    <item>
      <title>Re: New to GlobalProtect</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/new-to-globalprotect/m-p/382007#M845</link>
      <description>&lt;P&gt;Under network/GP/Gateways/Agent/Client setting you can play with split tunneling.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;easiest way would be to add all of your internal subnets into the "Include" section.&amp;nbsp; anything elas would not use the VPN tunnel.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Or, you can add your domain in the domain and application tab. has the same effect (ish)&amp;nbsp; it's up to you as will only work with fqdn and not IP.&lt;/P&gt;&lt;P&gt;oute&lt;/P&gt;&lt;P&gt;Just add 10.0.0.0/8, 172.16.0.0/12&amp;nbsp; and 192.168.0.0/16&amp;nbsp; to the split tunnel access route...&amp;nbsp; &amp;nbsp;Bingo....&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/globalprotect/10-0/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-access-route.html" target="_blank"&gt;https://docs.paloaltonetworks.com/globalprotect/10-0/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-access-route.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/globalprotect/9-1/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-domain-and-application.html" target="_blank"&gt;https://docs.paloaltonetworks.com/globalprotect/9-1/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-domain-and-application.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Jan 2021 18:01:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/new-to-globalprotect/m-p/382007#M845</guid>
      <dc:creator>Mick_Ball</dc:creator>
      <dc:date>2021-01-25T18:01:05Z</dc:date>
    </item>
    <item>
      <title>Re: New to GlobalProtect</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/new-to-globalprotect/m-p/382080#M847</link>
      <description>&lt;P&gt;concur with &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/9981"&gt;@Mick_Ball&lt;/a&gt; , just set the 'include' list of subnets and everything else will break out locally (note that Domains and Applications requires a license)&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2021-01-26_00-21-38.png" style="width: 999px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/29665i1505281F291E5310/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="2021-01-26_00-21-38.png" alt="2021-01-26_00-21-38.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Jan 2021 23:26:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/new-to-globalprotect/m-p/382080#M847</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2021-01-25T23:26:01Z</dc:date>
    </item>
  </channel>
</rss>

