<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Decrypt Error When Connecting to GlobalProtect via 3rd Party Office Network in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/decrypt-error-when-connecting-to-globalprotect-via-3rd-party/m-p/1231945#M124597</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Just as you have found out, you cannot SSL decrypt VPN traffic in the middle as its called a man-in-the-middle attack. They are either SSL decrypting it or not allowing it. Since its a 3rd party, I would recommend the user just use their hotspot. Its the same advice I give to our people.&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;</description>
    <pubDate>Tue, 17 Jun 2025 16:18:08 GMT</pubDate>
    <dc:creator>OtakarKlier</dc:creator>
    <dc:date>2025-06-17T16:18:08Z</dc:date>
    <item>
      <title>Decrypt Error When Connecting to GlobalProtect via 3rd Party Office Network</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/decrypt-error-when-connecting-to-globalprotect-via-3rd-party/m-p/1231915#M124587</link>
      <description>&lt;P&gt;We have a user currently working from a 3rd party remote office for a project. When connected to the 3rd party's local network and then to GlobalProtect VPN, the user is unable to access any websites. Our logs indicate a&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;decrypt error&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;occurring during this process.&lt;/P&gt;
&lt;P&gt;Interestingly, when the same user connects to GlobalProtect using a&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;mobile hotspot or other external network&lt;/STRONG&gt;, everything works fine—no decrypt errors, and full access is restored. This leads us to suspect that the issue lies within the 3rd party office's network configuration—possibly SSL inspection, firewall rules, or proxy interference.&lt;/P&gt;
&lt;P&gt;However, troubleshooting has been difficult as the 3rd party insists there are no issues on their end and has not been cooperative in further investigation.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Has anyone encountered a similar issue where a local network interferes with GlobalProtect VPN traffic, resulting in decrypt errors?&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jun 2025 11:06:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/decrypt-error-when-connecting-to-globalprotect-via-3rd-party/m-p/1231915#M124587</guid>
      <dc:creator>NickodeAndresACN</dc:creator>
      <dc:date>2025-06-17T11:06:19Z</dc:date>
    </item>
    <item>
      <title>Re: Decrypt Error When Connecting to GlobalProtect via 3rd Party Office Network</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/decrypt-error-when-connecting-to-globalprotect-via-3rd-party/m-p/1231945#M124597</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Just as you have found out, you cannot SSL decrypt VPN traffic in the middle as its called a man-in-the-middle attack. They are either SSL decrypting it or not allowing it. Since its a 3rd party, I would recommend the user just use their hotspot. Its the same advice I give to our people.&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jun 2025 16:18:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/decrypt-error-when-connecting-to-globalprotect-via-3rd-party/m-p/1231945#M124597</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2025-06-17T16:18:08Z</dc:date>
    </item>
  </channel>
</rss>

