<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Global Protect on Mobile Devices in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16603#M12111</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No, just the common part of the hostname. See my example screenshot above. So every device starts with the common part of the hostname &lt;STRONG&gt;iPhone-7CC53795BECF- &lt;/STRONG&gt;the rest of the hostname can be unique.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Example: iPhone-7CC53795BECF-Device001&lt;/P&gt;&lt;P&gt;With HIP your checking hostname with qualifier "Contains" iPhone-7CC53795BECF&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 17 Apr 2014 20:09:26 GMT</pubDate>
    <dc:creator>gafrol</dc:creator>
    <dc:date>2014-04-17T20:09:26Z</dc:date>
    <item>
      <title>Global Protect on Mobile Devices</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16596#M12104</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;GP v2.0.1.&amp;nbsp; Successful authentication is based on a particular AD user group.&amp;nbsp; If the user is not part of the group, he/she would be able to connect.&amp;nbsp; We want to implement this solution for smart devices.. however, how can we control who connects and who doesn't?&amp;nbsp; we don't want a user with a personal device to be able to connect to the portal/gateway.&amp;nbsp; Is there a way to lock this down further?&amp;nbsp; without client certificates.&amp;nbsp; we want to have control on who can connect on their personal device.&amp;nbsp; Some exceptions, but not all users.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 16 Apr 2014 15:23:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16596#M12104</guid>
      <dc:creator>rrau</dc:creator>
      <dc:date>2014-04-16T15:23:01Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect on Mobile Devices</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16597#M12105</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You could use HIP for that purpose. Only if the device is "compliant" it is able to connect.For example Insert a hidden registry entry for the devices you want to connect, then check that registry entry with HIP.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Apr 2014 12:38:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16597#M12105</guid>
      <dc:creator>gafrol</dc:creator>
      <dc:date>2014-04-17T12:38:15Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect on Mobile Devices</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16598#M12106</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I could do that..however, how could I do that for IOS and Android devices wanting to connect?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Apr 2014 17:47:09 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16598#M12106</guid>
      <dc:creator>rrau</dc:creator>
      <dc:date>2014-04-17T17:47:09Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect on Mobile Devices</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16599#M12107</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Quick and dirty for mobile devices you could configure a hostname and let HIP check for that. With PAN MSM you have more options available for that purpose. With MSM you can check whether a device is managed, if yes allow access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="12885" alt="Capture.JPG.jpg" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/12885_Capture.JPG.jpg" style="width: 620px; height: 329px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="Capture.JPG.jpg" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/12886_Capture.JPG.jpg" style="width: 620px; height: 387px;" /&gt;&lt;/P&gt;&lt;P&gt;MSM requires additional Hardware and licensing but you get a complete Mobile Device Management Solution.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Apr 2014 19:27:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16599#M12107</guid>
      <dc:creator>gafrol</dc:creator>
      <dc:date>2014-04-17T19:27:56Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect on Mobile Devices</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16600#M12108</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;additional HW?&amp;nbsp; currently running 3000 series FW&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Apr 2014 19:51:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16600#M12108</guid>
      <dc:creator>rrau</dc:creator>
      <dc:date>2014-04-17T19:51:00Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect on Mobile Devices</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16601#M12109</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;MSM is an additional Appliance &lt;A href="https://www.paloaltonetworks.com/products/platforms/gp-100/overview.html" title="https://www.paloaltonetworks.com/products/platforms/gp-100/overview.html"&gt;GP-100 Overview - Palo Alto Networks&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Configuring and checking&amp;nbsp; hostnames on your mobile devices does not require MSM.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Apr 2014 19:57:09 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16601#M12109</guid>
      <dc:creator>gafrol</dc:creator>
      <dc:date>2014-04-17T19:57:09Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect on Mobile Devices</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16602#M12110</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;so I will need to know and then add all hostnames from the smart devices?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Apr 2014 19:59:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16602#M12110</guid>
      <dc:creator>rrau</dc:creator>
      <dc:date>2014-04-17T19:59:50Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect on Mobile Devices</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16603#M12111</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No, just the common part of the hostname. See my example screenshot above. So every device starts with the common part of the hostname &lt;STRONG&gt;iPhone-7CC53795BECF- &lt;/STRONG&gt;the rest of the hostname can be unique.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Example: iPhone-7CC53795BECF-Device001&lt;/P&gt;&lt;P&gt;With HIP your checking hostname with qualifier "Contains" iPhone-7CC53795BECF&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Apr 2014 20:09:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16603#M12111</guid>
      <dc:creator>gafrol</dc:creator>
      <dc:date>2014-04-17T20:09:26Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect on Mobile Devices</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16604#M12112</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ok, thanks.. makes sense&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Apr 2014 20:12:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16604#M12112</guid>
      <dc:creator>rrau</dc:creator>
      <dc:date>2014-04-17T20:12:23Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect on Mobile Devices</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16605#M12113</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;this wont affect the laptops/desktops that connect?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Apr 2014 20:15:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16605#M12113</guid>
      <dc:creator>rrau</dc:creator>
      <dc:date>2014-04-17T20:15:36Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect on Mobile Devices</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16606#M12114</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It does not as long as you define the OS in the HIP Object, see screenshot above.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 Apr 2014 20:19:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-on-mobile-devices/m-p/16606#M12114</guid>
      <dc:creator>gafrol</dc:creator>
      <dc:date>2014-04-17T20:19:41Z</dc:date>
    </item>
  </channel>
</rss>

