<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Help Allowing VDI Connections in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/help-allowing-vdi-connections/m-p/598907#M119121</link>
    <description>&lt;P&gt;AT&amp;amp;T has provided our users with virtual machines using VMware Horizon Client.&amp;nbsp; However, when in the office, our users cannot connect to their VDI machine.&amp;nbsp; However, when external, using our GlobalProtect VPN, they connect successfully.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Error:&lt;/STRONG&gt;&amp;nbsp;Loading Failed​&lt;BR /&gt;&lt;EM&gt;VDPCONNECT_CONNECT_TLS: The connection to the gateway or the remote computer could not be established because of a TLS error. This could be due to a TLS handshake failure, a certificate check failure or other related errors. If the issue persists, please contact your system administrator."&lt;/EM&gt;&lt;BR /&gt;&lt;BR /&gt;We are using PA-220 in this office location and are on Panorama 10.2 . Googling the error points to me having to allow or set up VDI connections in the firewall?&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;May I get direction on how to do this or how to check it please?&lt;/P&gt;</description>
    <pubDate>Thu, 26 Sep 2024 21:53:48 GMT</pubDate>
    <dc:creator>RDominguez</dc:creator>
    <dc:date>2024-09-26T21:53:48Z</dc:date>
    <item>
      <title>Help Allowing VDI Connections</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/help-allowing-vdi-connections/m-p/598907#M119121</link>
      <description>&lt;P&gt;AT&amp;amp;T has provided our users with virtual machines using VMware Horizon Client.&amp;nbsp; However, when in the office, our users cannot connect to their VDI machine.&amp;nbsp; However, when external, using our GlobalProtect VPN, they connect successfully.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Error:&lt;/STRONG&gt;&amp;nbsp;Loading Failed​&lt;BR /&gt;&lt;EM&gt;VDPCONNECT_CONNECT_TLS: The connection to the gateway or the remote computer could not be established because of a TLS error. This could be due to a TLS handshake failure, a certificate check failure or other related errors. If the issue persists, please contact your system administrator."&lt;/EM&gt;&lt;BR /&gt;&lt;BR /&gt;We are using PA-220 in this office location and are on Panorama 10.2 . Googling the error points to me having to allow or set up VDI connections in the firewall?&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;May I get direction on how to do this or how to check it please?&lt;/P&gt;</description>
      <pubDate>Thu, 26 Sep 2024 21:53:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/help-allowing-vdi-connections/m-p/598907#M119121</guid>
      <dc:creator>RDominguez</dc:creator>
      <dc:date>2024-09-26T21:53:48Z</dc:date>
    </item>
    <item>
      <title>Re: Help Allowing VDI Connections</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/help-allowing-vdi-connections/m-p/598911#M119122</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/171433"&gt;@RDominguez&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would check the monitor tab and view traffic between your internal network and the VDI environment. What do the logs look like? Are you seeing the traffic being allowed? If you click into the advanced details, do you see see bytes being sent and returned?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would verify you have the proper security policies created to allow connectivity from your internal network to the VDI as well. You mentioned this connection works while connected to GP. Is split-tunnel setup to where all traffic to internal resources are tunneled and external traffic does not go through the VPN? This could be a reason why GP clients are able to connect to the VDI environment.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Sep 2024 22:44:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/help-allowing-vdi-connections/m-p/598911#M119122</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2024-09-26T22:44:42Z</dc:date>
    </item>
    <item>
      <title>Re: Help Allowing VDI Connections</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/help-allowing-vdi-connections/m-p/598925#M119126</link>
      <description>&lt;P&gt;You can check your SSL decryption logs if you have enabled SSL decryption. And try to exclude the same for testing. If that resolved the problem you can further dig into SSL decryption part. But SSL Decryption is recommended so, only exclude the minimal number of system and verify.&lt;/P&gt;</description>
      <pubDate>Fri, 27 Sep 2024 03:00:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/help-allowing-vdi-connections/m-p/598925#M119126</guid>
      <dc:creator>Edsnow</dc:creator>
      <dc:date>2024-09-27T03:00:23Z</dc:date>
    </item>
    <item>
      <title>Re: Help Allowing VDI Connections</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/help-allowing-vdi-connections/m-p/600073#M119275</link>
      <description>&lt;P&gt;thats the crux of the issue, not quite sure how to do that? About to start my Panorama learning journey next week, but in the meantime, we've had this issue for months..&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;I log into Panoram, I click Monitor tab &amp;gt; traffic &amp;gt; then how do I narrow my search down?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have it down to this specific office location in my search"&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;( device_name eq 'off2-ngfw1' )&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;but from the monitor &amp;gt; traffic tab how do I narrow it down further?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Or is there a better way to do so?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;p.s. how would you recommend to me as the best method of learning the Panorama Firewall system from Palo Alto as a total green horn?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 10 Oct 2024 15:49:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/help-allowing-vdi-connections/m-p/600073#M119275</guid>
      <dc:creator>RDominguez</dc:creator>
      <dc:date>2024-10-10T15:49:10Z</dc:date>
    </item>
  </channel>
</rss>

