<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: New Global Protect 3.0 is not good enough in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75977#M42120</link>
    <description>&lt;P&gt;Better release notes here:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.paloaltonetworks.com/documentation/30/globalprotect-agent-rns" target="_blank"&gt;https://www.paloaltonetworks.com/documentation/30/globalprotect-agent-rns&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Other features are tied to PAN OS 7.1 - &lt;A href="https://www.paloaltonetworks.com/documentation/71/globalprotect" target="_blank"&gt;https://www.paloaltonetworks.com/documentation/71/globalprotect&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 07 Apr 2016 03:07:30 GMT</pubDate>
    <dc:creator>googol</dc:creator>
    <dc:date>2016-04-07T03:07:30Z</dc:date>
    <item>
      <title>New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75922#M42104</link>
      <description>&lt;P&gt;I was looking forwad to the 'new and improved' Global Protect.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am still very dissapointed at how it works from a UI standpoint.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When I am connected to the VPN how do I disconnect? Is there a button hiding around in this awful GUI? The only way I know of is to go to the task bar and do it from there. Can anyone please let me know of another way?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Why Am I able to resize&amp;nbsp;the GUI so it's smaller than the minimal size required?&amp;nbsp;It's not a deal breaker but really just signs of shoddy programming.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="OrN8ikM.png" style="width: 198px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/3426i31E778E735E2901F/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="OrN8ikM.png" alt="OrN8ikM.png" /&gt;&lt;/span&gt;﻿&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The user's need 1 button - Connect.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Once the VPN is connected change the button to Disconnect.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I wish you would hurry up and design it so it's something like Anyconnect:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="original.png" style="width: 433px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/3427i484E24E3FDF34252/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="original.png" alt="original.png" /&gt;&lt;/span&gt;﻿&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here's my post from last year wondering about the same problems, I was hoping that PA engineers were listening but I'm still waiting for a Global Protect application&amp;nbsp;that's as equal quality to the rest of the PA platform.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/General-Topics/When-will-a-new-GlobalProtectClient-GUI-UI-be-written/m-p/65676" target="_blank"&gt;https://live.paloaltonetworks.com/t5/General-Topics/When-will-a-new-GlobalProtectClient-GUI-UI-be-written/m-p/65676&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 06 Apr 2016 23:21:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75922#M42104</guid>
      <dc:creator>pmc</dc:creator>
      <dc:date>2016-04-06T23:21:15Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75942#M42106</link>
      <description>&lt;P&gt;While I'm still in rant mode here's a few other quirks that are frustrating.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When a user is connected to the VPN the 'Connect' button should be greyed out as they are already connected:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="gp1.png" style="width: 381px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/3428iF01BE57B76EA772E/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="gp1.png" alt="gp1.png" /&gt;&lt;/span&gt;﻿&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;People often get confused as most applications have a UI that conforms to this. People will see the connect button still clickable and keep trying to connect rather than looking at the status window below.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Ways to improve this:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;When the VPN is connected grey it out. Get rid of the 'Clear' button and change it to 'Disconnect.'&lt;/LI&gt;
&lt;LI&gt;A better solution is to change the 'Connect' button to 'Disconnect' when the VPN is active.&amp;nbsp;
&lt;UL&gt;
&lt;LI&gt;Edit - And get rid of the clear button altogether. I don't think there's any need for it.&amp;nbsp;&lt;/LI&gt;
&lt;/UL&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Another possible issue, I attempted to remove the 'Enable Advanced Mode' option in the PA's client config section and it just displays a blank panel. Anyone know what the use of this panel is for?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="gp2.png" style="width: 369px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/3430i3D49740F090FC61E/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="gp2.png" alt="gp2.png" /&gt;&lt;/span&gt;﻿&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Edit - Anyone know&amp;nbsp;how I tag/label this post with Globalprotect?&lt;/P&gt;</description>
      <pubDate>Thu, 07 Apr 2016 00:26:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75942#M42106</guid>
      <dc:creator>pmc</dc:creator>
      <dc:date>2016-04-07T00:26:22Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75946#M42107</link>
      <description>&lt;P&gt;I wholeheartedly agree with this. I have brought it up with multiple people at ignite this year and previously with product managers.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The programming you refer to is a few minutes in visual studio for the UI, but can be cosmetically improved 1000 fold. I understand they were going for function, but we are in a world where the user experience matters. If the user experience is not great, they won't accept and use the product.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;They made a change so that they can provide updates to GlobalProtect without having to wait for OS updates, which is great and needed for the development of the product, so hopefully they will utilize that and we see improvements via that route.&lt;/P&gt;</description>
      <pubDate>Wed, 06 Apr 2016 23:19:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75946#M42107</guid>
      <dc:creator>googol</dc:creator>
      <dc:date>2016-04-06T23:19:37Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75949#M42110</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I opened a case about the Connect button that doesn't turn into a disconnect button when connected. Product management refused to acknowledge it was a shortcoming&amp;nbsp;and instead said it was a design decision that it works like that. I will make a feature request to my SE to add a Disconnect button in the panel.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Benjamin&lt;/P&gt;</description>
      <pubDate>Wed, 06 Apr 2016 23:41:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75949#M42110</guid>
      <dc:creator>BenjAudy.MTL</dc:creator>
      <dc:date>2016-04-06T23:41:18Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75952#M42113</link>
      <description>&lt;P&gt;Glad to see I'm not the only one with these frustrations. I'll try and raise a feature request as well.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Apr 2016 00:19:43 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75952#M42113</guid>
      <dc:creator>pmc</dc:creator>
      <dc:date>2016-04-07T00:19:43Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75953#M42114</link>
      <description>I feel your pain.  The Global Protect client UI has been horrible since it came out.  We've complained about it for years to Palo Alto, even to a top Global Protect developer when he came down to visit.</description>
      <pubDate>Thu, 07 Apr 2016 01:00:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75953#M42114</guid>
      <dc:creator>jambulo</dc:creator>
      <dc:date>2016-04-07T01:00:59Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75965#M42115</link>
      <description>&lt;P&gt;Question for you guys...Other than the UI / asthetics are there any detractors over AnyConnect?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;My company has around 3,000 remote users at peak, but typically around 1,500. &amp;nbsp;A great feature around the ASA is a function called CWS. &amp;nbsp;Essentially it allows us to cloud enable web content filtering. &amp;nbsp;With CWS we can allow clients to go "direct out" to the Internet w/o having to force all remote clients back to a corporate HQ get processed and then sent back out to the Internet.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Unfortunately CWS only works for HTTP(S) traffic.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;With GP can we leverage PAN-DB and have users get filtered in the cloud as well?&lt;/P&gt;</description>
      <pubDate>Thu, 07 Apr 2016 01:52:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75965#M42115</guid>
      <dc:creator>Brandon_Wertz</dc:creator>
      <dc:date>2016-04-07T01:52:28Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75974#M42117</link>
      <description>&lt;P&gt;I think someone missed something we they put together the release notes doc for GP 3.0 (2.3?)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="GP_ReleaseNotes.JPG" style="width: 600px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/3446iF523C532793B7323/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="GP_ReleaseNotes.JPG" alt="GP_ReleaseNotes.JPG" /&gt;&lt;/span&gt;﻿&lt;/P&gt;</description>
      <pubDate>Thu, 07 Apr 2016 02:27:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75974#M42117</guid>
      <dc:creator>Brandon_Wertz</dc:creator>
      <dc:date>2016-04-07T02:27:46Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75976#M42119</link>
      <description>&lt;P&gt;Only way I can see you doing that is if you deploy their PAN FW VM on AWS or Azure, get URL Filtering and have your Gateway be that VM, instead of back home in HQ.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Their whole idea around GlobalProtect and I have to agree, is leveraging the features of the PAN firewall like the threat prevention suite, but you can certainly do that in a VM out in the cloud.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It is not just the UI, that is just one thing in a list of things that can be improved.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;another issue is the upgrading process or lack of allowing us to do inplace upgrades so we can deploy using other deployment methods like SystemCenter. The upgrade process has left users stranded without GlobalProtect installed since the 2nd phase never completed.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Another is performance related. GP IPSEC gets to about the same speeds as SSL VPN with anyconnect, which should not be happening. If I run SSLVPN on GP, its horribly slower. Definitely would like to see it improved/optimized, I should be able to push a decent amount of traffic when you have the bandwidth on both ends of the connection.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I don't want to take away from the sole purpose of this thread, which is the cosmetic/UI.&lt;/P&gt;</description>
      <pubDate>Thu, 07 Apr 2016 03:04:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75976#M42119</guid>
      <dc:creator>googol</dc:creator>
      <dc:date>2016-04-07T03:04:47Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75977#M42120</link>
      <description>&lt;P&gt;Better release notes here:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.paloaltonetworks.com/documentation/30/globalprotect-agent-rns" target="_blank"&gt;https://www.paloaltonetworks.com/documentation/30/globalprotect-agent-rns&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Other features are tied to PAN OS 7.1 - &lt;A href="https://www.paloaltonetworks.com/documentation/71/globalprotect" target="_blank"&gt;https://www.paloaltonetworks.com/documentation/71/globalprotect&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Apr 2016 03:07:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75977#M42120</guid>
      <dc:creator>googol</dc:creator>
      <dc:date>2016-04-07T03:07:30Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75982#M42123</link>
      <description>&lt;P&gt;PS: The intent of this response is not to engage in a conversation of whether the app UI can be improved or not , nor the product roadmap will be discussed in this forum. For product roadmap discussion please engage with your account team to schedule one.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To have constructive discussion curious to understand the issues discussed in this thread. &amp;nbsp;In an Always On mode user does not interact with the application to connect or disconnect because it happens automatically for the user. The issues raised here for on-demand mode i.e. a pure remote access use case.&lt;/P&gt;
&lt;P&gt;Lets go through the user workflow , user want to connect to VPN , &amp;nbsp;user locates the GlobalProtect icon from system try and right clicks , the menu options appear with list of options , since the primary action of the user is to connect , the user chooses the connect option , the app will prompt the user to enter credentials and the user gets connected. Now the user does the work that needs to be done. Now the user wants to disconnect from the VPN , the user l&lt;SPAN&gt;ocates the GlobalProtect icon from system try and right clicks , the menu options appear with list of options , since the primary action of the user is to disconnect , the user chooses the disconnect option and VPN is disonnected. &amp;nbsp;No reason for the user to open up the app to the home screen in the primary workflow.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Now lets gp through the workflow when the user do open the app to the home screen.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;user want to connect to VPN , &amp;nbsp;user locates the GlobalProtect icon from system try and right clicks , the menu options appear with list of options , the primary action of the user is to connect , the user&amp;nbsp;instead of choosing the connect option &amp;nbsp;(1 click to connect), say the user chooses to open the app , the app opens to the home screen , the user&amp;nbsp;&lt;SPAN&gt;enter credentials and the user gets connected&lt;/SPAN&gt;, user closes the GlobalProtect app , &lt;SPAN&gt;the user does the work that needs to be done,&amp;nbsp;&lt;SPAN&gt;Now the user wants to disconnect from the VPN , the user l&lt;/SPAN&gt;&lt;SPAN&gt;ocates the GlobalProtect icon from system try and right clicks , the menu options appear with list of options , since the primary action of the user is to disconnect , the user chooses the disconnect option and VPN is disonnected. No reason for the user to open up the app to the home screen in this workflow either.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;Will the user try to disonnect from the home panel only during lab/poc/testing , as oppose to day to day regualr user ?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Apr 2016 06:17:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75982#M42123</guid>
      <dc:creator>jmenon</dc:creator>
      <dc:date>2016-04-07T06:17:22Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75994#M42125</link>
      <description>&lt;P&gt;Excellent points and I agree the UI comes into play more with an on-demand scenario.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In an Always On mode, the user interface comes into play during troubleshooting (or they simply want to see the status), when the user wants to have some control over it, or to like speed it up.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In an always on setup, I agree that they should not have to open the client much, but the gateway authentication process prompts them for their username and password on first connection (if not already placed into the client UI), but other times SSO works as it should. They also go into the client UI to update such password every time their password changes (depending on policy and requirements of various businesses). Other VPN Clients do not ask for username/password, is SSO and seamless. Ultimately this would be the most ideal as credentials are not stored.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It sounds like you are gearing towards having the main processes accessible via the GP submenu from the taskbar (to avoid opening up the main UI). This is fine and most folks can do that as well. Disable is there for those that need to "disconnect" from Always on for whatever reason. All it takes is double clicking the GP icon and the UI home is open or misclicking on Show panel, and the UI is shown.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Why are you limiting the "Status" button of the 3.x client? Having it be whatever size, as previously mentioned by others, does not make sense for some of these screens such as the "status page". It is a lot of deadspace. I rather instruct my users to go to show panel (or simply doubleclick the GP icon) because it gives them access to more data that they need, such as how they are connected, IP addresses. etc or troubleshooting. I get that you are keeping it resizable/large for essentially the details and troubleshooting tabs.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Menu&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="gp-menu.JPG" style="width: 172px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/3452i4F9AB08E40544C4C/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="gp-menu.JPG" alt="gp-menu.JPG" /&gt;&lt;/span&gt;﻿&lt;/P&gt;
&lt;P&gt;Status&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="gp-connected.JPG" style="width: 523px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/3453i881FC774E593021E/image-dimensions/523x283/is-moderation-mode/true?v=v2" width="523" height="283" role="button" title="gp-connected.JPG" alt="gp-connected.JPG" /&gt;&lt;/span&gt;﻿&lt;/P&gt;
&lt;P&gt;Show Panel (shows status as well)&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="gp-panel.JPG" style="width: 600px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/3454i184FF202722107E0/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="gp-panel.JPG" alt="gp-panel.JPG" /&gt;&lt;/span&gt;﻿&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In the end, the user is going to open the panel at some point or two and perception is key. Especially to acceptance of the product.&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Apr 2016 12:38:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/75994#M42125</guid>
      <dc:creator>googol</dc:creator>
      <dc:date>2016-04-07T12:38:38Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76004#M42131</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Jmenon,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Yes I'm strictly talking about the on-demand VPN. We have a 2-factor on-demand setup and don't allow the always on VPN in our network.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;From your post:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;&lt;STRONG&gt;Lets go through the user workflow , user want to connect to VPN , &amp;nbsp;user locates the GlobalProtect icon from system try and right clicks&lt;/STRONG&gt;&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;I have a problem with this very first step. When I ask an end user on a Windows computer to open an application they do the following:&lt;/SPAN&gt;&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;SPAN&gt;Search for a shortcut on the desktop&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Search the task bar&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Search the start menu&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Perform a search&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&lt;SPAN&gt;It doesn't always happen in this order but none (of my users at least) ever go to the system tray to open an application. Our end users also have many icons in their system tray that they don't know or care about. It's frustrating to try an explain to them to 'find the circle Earth shaped icon and right click.' The system tray icons are now hidden by default in the later versions of Windows so it's bad enough trying to get them to 'click on the arrow in the taskbar to expand the system tray.'&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;It's just not how the layperson works.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Do you see how frustrating this is when other (Anyconnect) VPN solutions are much cleaner and simpler?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Also, yes, our users will try to open the application to disconnect in day to day regular use.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/28325"&gt;@jmenon&lt;/a&gt; wrote:&lt;BR /&gt;
&lt;P&gt;PS: The intent of this response is not to engage in a conversation of whether the app UI can be improved or not , nor the product roadmap will be discussed in this forum. For product roadmap discussion please engage with your account team to schedule one.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To have constructive discussion curious to understand the issues discussed in this thread. &amp;nbsp;In an Always On mode user does not interact with the application to connect or disconnect because it happens automatically for the user. The issues raised here for on-demand mode i.e. a pure remote access use case.&lt;/P&gt;
&lt;P&gt;Lets go through the user workflow , user want to connect to VPN , &amp;nbsp;user locates the GlobalProtect icon from system try and right clicks , the menu options appear with list of options , since the primary action of the user is to connect , the user chooses the connect option , the app will prompt the user to enter credentials and the user gets connected. Now the user does the work that needs to be done. Now the user wants to disconnect from the VPN , the user l&lt;SPAN&gt;ocates the GlobalProtect icon from system try and right clicks , the menu options appear with list of options , since the primary action of the user is to disconnect , the user chooses the disconnect option and VPN is disonnected. &amp;nbsp;No reason for the user to open up the app to the home screen in the primary workflow.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Now lets gp through the workflow when the user do open the app to the home screen.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;user want to connect to VPN , &amp;nbsp;user locates the GlobalProtect icon from system try and right clicks , the menu options appear with list of options , the primary action of the user is to connect , the user&amp;nbsp;instead of choosing the connect option &amp;nbsp;(1 click to connect), say the user chooses to open the app , the app opens to the home screen , the user&amp;nbsp;&lt;SPAN&gt;enter credentials and the user gets connected&lt;/SPAN&gt;, user closes the GlobalProtect app , &lt;SPAN&gt;the user does the work that needs to be done,&amp;nbsp;&lt;SPAN&gt;Now the user wants to disconnect from the VPN , the user l&lt;/SPAN&gt;&lt;SPAN&gt;ocates the GlobalProtect icon from system try and right clicks , the menu options appear with list of options , since the primary action of the user is to disconnect , the user chooses the disconnect option and VPN is disonnected. No reason for the user to open up the app to the home screen in this workflow either.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;Will the user try to disonnect from the home panel only during lab/poc/testing , as oppose to day to day regualr user ?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Apr 2016 17:13:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76004#M42131</guid>
      <dc:creator>pmc</dc:creator>
      <dc:date>2016-04-07T17:13:54Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76108#M42170</link>
      <description>&lt;P&gt;Good&amp;nbsp;points.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 02 May 2016 23:00:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76108#M42170</guid>
      <dc:creator>rbista</dc:creator>
      <dc:date>2016-05-02T23:00:03Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76109#M42171</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/27589"&gt;@rbista&lt;/a&gt; wrote:&lt;BR /&gt;
&lt;P&gt;You didn't make any points.&amp;nbsp;&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Are you replying to me? I'm not sure. I think I've been pretty clear but let me know if there's any points&amp;nbsp;I can be clearer on.&lt;/P&gt;</description>
      <pubDate>Sat, 09 Apr 2016 03:47:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76109#M42171</guid>
      <dc:creator>pmc</dc:creator>
      <dc:date>2016-04-09T03:47:51Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76333#M42271</link>
      <description>&lt;P&gt;I completely agree, the Global Protect UI is buggy and unintuitive. &amp;nbsp;We&amp;nbsp;use Global Protect in on-demand mode so the lack of a clear way to disconnect is very frustrating.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Since migratating from Cisco ASA to PAN we've received numerous complaints from users regarding Global Protect. &amp;nbsp;Cisco AnyConnect is way more functional and intuitive to use than Global Protect.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The poorly designed VPN client has been the biggest pitfall of our migration to Palo Alto Networks. &amp;nbsp;If they would fix this they could improve the customer experiencly greatly.&lt;/P&gt;</description>
      <pubDate>Wed, 13 Apr 2016 13:55:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76333#M42271</guid>
      <dc:creator>Retired Member</dc:creator>
      <dc:date>2016-04-13T13:55:14Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76336#M42274</link>
      <description>&lt;P&gt;Piling on here. I completely agree with everything in this post. &amp;nbsp;We've made similiar complaints to our reps at PA and have met with silence.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I made a post here about the lack of profiles in the GP client:&amp;nbsp;&lt;A href="https://live.paloaltonetworks.com/t5/General-Topics/Global-Protect-s-lack-of-connection-profiles-is-making-everyone/m-p/76254#U76254" target="_blank"&gt;https://live.paloaltonetworks.com/t5/General-Topics/Global-Protect-s-lack-of-connection-profiles-is-making-everyone/m-p/76254#U76254&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;I don't know if it will make any difference at all, but if you agree please go in there and click the "me too" button or whatever. Nothing is going to change unless we make some noise about these issues.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 13 Apr 2016 14:06:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76336#M42274</guid>
      <dc:creator>melliott</dc:creator>
      <dc:date>2016-04-13T14:06:14Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76342#M42276</link>
      <description>&lt;P&gt;I was just going through some other Global Protect threads and here's someone complaining about the UI in 2014.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;DIV class="lia-message-heading lia-component-message-header"&gt;
&lt;DIV class="lia-quilt-row lia-quilt-row-standard"&gt;
&lt;DIV class="lia-quilt-column lia-quilt-column-20 lia-quilt-column-left"&gt;
&lt;DIV class="lia-quilt-column-alley lia-quilt-column-alley-left"&gt;
&lt;DIV class="lia-message-subject"&gt;
&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;HR /&gt;
&lt;DIV class="lia-message-heading lia-component-message-header"&gt;
&lt;DIV class="lia-quilt-row lia-quilt-row-standard"&gt;
&lt;DIV class="lia-quilt-column lia-quilt-column-20 lia-quilt-column-left"&gt;
&lt;DIV class="lia-quilt-column-alley lia-quilt-column-alley-left"&gt;
&lt;DIV class="lia-message-subject"&gt;
&lt;H2&gt;Re: Global Protect client issue - really annoying&lt;/H2&gt;
&lt;SPAN class="lia-message-subject-status"&gt;[&amp;nbsp;New&amp;nbsp;]&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;DIV class="lia-quilt-column lia-quilt-column-04 lia-quilt-column-right"&gt;
&lt;DIV class="lia-quilt-column-alley lia-quilt-column-alley-right"&gt;
&lt;DIV class="lia-message-options"&gt;
&lt;DIV id="actionMenuDropDown_1" class="lia-menu-navigation-wrapper lia-menu-action message-menu"&gt;
&lt;DIV class="lia-menu-navigation"&gt;
&lt;DIV class="dropdown-default-item"&gt;&lt;A id="dropDownLink_1" class="lia-js-menu-opener default-menu-option lia-js-click-menu lia-link-navigation" title="Show option menu" href="https://live.paloaltonetworks.com/t5/General-Topics/Global-Protect-client-issue-really-annoying/td-p/34463/page/2" target="_blank"&gt;Options&lt;/A&gt;
&lt;DIV class="dropdown-positioning"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;P class="lia-message-dates lia-message-post-date lia-component-post-date-last-edited"&gt;&lt;SPAN class="DateTime lia-message-posted-on lia-component-common-widget-date"&gt;&lt;SPAN class="local-date"&gt;‎01-22-2014&lt;/SPAN&gt; &lt;SPAN class="local-time"&gt;03:42 AM&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV id="messagebodydisplay_0_0" class="lia-message-body lia-component-body"&gt;
&lt;DIV class="lia-message-body-content"&gt;
&lt;P&gt;@jmenon - Hi! You've come out to our headquarters before and we've expressed these views to you... honestly I don't need you guys to come out and talk to us, I just need the product to perform and be intuitive for users.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Go copy the CheckPoint Endpoint Connect R73 client if you have to... that VPN client seems to be pretty intuitive for our users and has served us well.&lt;/P&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/BLOCKQUOTE&gt;
&lt;H2&gt;&lt;BR /&gt;Link: &lt;A href="https://live.paloaltonetworks.com/t5/General-Topics/Global-Protect-client-issue-really-annoying/td-p/34463/highlight/true/page/2&amp;nbsp;" target="_blank"&gt;https://live.paloaltonetworks.com/t5/General-Topics/Global-Protect-client-issue-really-annoying/td-p/34463/highlight/true/page/2&amp;nbsp;&lt;/A&gt;&lt;/H2&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Wed, 13 Apr 2016 16:02:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76342#M42276</guid>
      <dc:creator>pmc</dc:creator>
      <dc:date>2016-04-13T16:02:49Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76344#M42277</link>
      <description>&lt;P&gt;good find, looks like they missed their own statements "intuitive for users"&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;a fresh clean interface that is very simplistic to use would go a long way.&lt;/P&gt;</description>
      <pubDate>Wed, 13 Apr 2016 16:16:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76344#M42277</guid>
      <dc:creator>googol</dc:creator>
      <dc:date>2016-04-13T16:16:02Z</dc:date>
    </item>
    <item>
      <title>Re: New Global Protect 3.0 is not good enough</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76362#M42293</link>
      <description>&lt;P&gt;Thank you for bringing this up. I've told multiple SE's about this and got crickets back. GP Ui is abismal and embarrasing. So glad others out there feel the same way.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 13 Apr 2016 19:38:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-global-protect-3-0-is-not-good-enough/m-p/76362#M42293</guid>
      <dc:creator>ulti</dc:creator>
      <dc:date>2016-04-13T19:38:05Z</dc:date>
    </item>
  </channel>
</rss>

