<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Global Protect CLient &amp;quot;Startup Before Login&amp;quot; in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-client-quot-startup-before-login-quot/m-p/28123#M20522</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hopefully this is already addressed in soon to be released PANOS 5.0 which will have the "preauth" capabilities (using a machine cert to setup the global protect tunnel so its up and running when the client logins to the AD which then UserID will be able to pick up). This way you can setup security rules where userid=preauth to let those boxes to WSUS and AV-update servers and not until the user is actually authed to the domain they will be able to pass specific userid rules or where userid=known-user.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 25 Oct 2012 16:08:15 GMT</pubDate>
    <dc:creator>mikand</dc:creator>
    <dc:date>2012-10-25T16:08:15Z</dc:date>
    <item>
      <title>Global Protect CLient "Startup Before Login"</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-client-quot-startup-before-login-quot/m-p/28120#M20519</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is there a way to have the Global Protect client interface show up before a user logs into Windows?&amp;nbsp; For example, They want to manually connect to VPN before they login to their Windows machine. Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2012 21:36:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-client-quot-startup-before-login-quot/m-p/28120#M20519</guid>
      <dc:creator>eputnam</dc:creator>
      <dc:date>2012-10-19T21:36:31Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect CLient "Startup Before Login"</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-client-quot-startup-before-login-quot/m-p/28121#M20520</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This is not plausible as Single Sign On option uses windows credentials upon login to connect to GP portal and gateway respectively. On demand mode, well allows users to connect, on demand.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Oct 2012 04:45:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-client-quot-startup-before-login-quot/m-p/28121#M20520</guid>
      <dc:creator>gswcowboy</dc:creator>
      <dc:date>2012-10-20T04:45:35Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect CLient "Startup Before Login"</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-client-quot-startup-before-login-quot/m-p/28122#M20521</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As my colleague stated that is not plausible, so you might want to contact your local SE and have them submit a feature request to see if this will be possible in future releases.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you&amp;nbsp; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 25 Oct 2012 15:15:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-client-quot-startup-before-login-quot/m-p/28122#M20521</guid>
      <dc:creator>acamacho</dc:creator>
      <dc:date>2012-10-25T15:15:05Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect CLient "Startup Before Login"</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-client-quot-startup-before-login-quot/m-p/28123#M20522</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hopefully this is already addressed in soon to be released PANOS 5.0 which will have the "preauth" capabilities (using a machine cert to setup the global protect tunnel so its up and running when the client logins to the AD which then UserID will be able to pick up). This way you can setup security rules where userid=preauth to let those boxes to WSUS and AV-update servers and not until the user is actually authed to the domain they will be able to pass specific userid rules or where userid=known-user.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 25 Oct 2012 16:08:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-client-quot-startup-before-login-quot/m-p/28123#M20522</guid>
      <dc:creator>mikand</dc:creator>
      <dc:date>2012-10-25T16:08:15Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect CLient "Startup Before Login"</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/global-protect-client-quot-startup-before-login-quot/m-p/28124#M20523</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Pre-logon connection is available in PANOS 5.0. GlobalProtect can be configured to establish a connection using an already deployed machine certificate. VPN connection will be established before the user logs onto the machine. Please refer to the PANOS 5.0 documentation and perhaps your local Sales SE if 5.0 is an option for you and your environment before you deploy.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 06 Nov 2012 20:10:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/global-protect-client-quot-startup-before-login-quot/m-p/28124#M20523</guid>
      <dc:creator>gswcowboy</dc:creator>
      <dc:date>2012-11-06T20:10:37Z</dc:date>
    </item>
  </channel>
</rss>

