<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Internal host detection not Working in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232107#M66623</link>
    <description>DMs lookup brings the whole fqdn- test.domain.local&lt;BR /&gt;&lt;BR /&gt;I have just ‘test’ set as the name for internal host detection, but it’s returning dnsquery = 0 which means it has resolved ok?</description>
    <pubDate>Mon, 24 Sep 2018 18:03:05 GMT</pubDate>
    <dc:creator>welly_59</dc:creator>
    <dc:date>2018-09-24T18:03:05Z</dc:date>
    <item>
      <title>Internal host detection not Working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232003#M66595</link>
      <description>&lt;P&gt;I have an external Gateway and I wish to setup always-on except when on local LAN. As a test i am doing this on my own username but it seems to always want to connect to external GW regardless of my settings.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have turned on Internal Host detection and this is returning "0" in the PanGPS logs so i would assume then it would realise i was internal and not try and connect me to external gateway?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Connection type is currently - prelogon always on&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;(T1848) 09/24/18 11:16:36:219 Debug(1712): host&amp;nbsp;TEST&amp;nbsp;&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;(T1848) 09/24/18 11:16:36:230 Debug(1729): DnsQuery returns 0&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;(T1848) 09/24/18 11:16:36:230 Debug(1744): Resolved X.X.X.X.IN-ADDR.ARPA for internal host detection with return value 0&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;(T1848) 09/24/18 11:16:36:230 Debug(1768): The host name is TEST.DOMAIN.local &lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;(T1848) 09/24/18 11:16:36:230 Debug(4040): NetworkDiscoverThread: network type is external.&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;(T1848) 09/24/18 11:16:36:230 Debug(4109): NetworkDiscoverThread: Discover external network&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Sep 2018 10:28:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232003#M66595</guid>
      <dc:creator>welly_59</dc:creator>
      <dc:date>2018-09-24T10:28:49Z</dc:date>
    </item>
    <item>
      <title>Re: Internal host detection not Working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232081#M66611</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/91200"&gt;@welly_59&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;As I'm reading your logs it's actually not able to resolve the DNS name that you are using. Attempt to test this with just an IP, preferrably a load-balanced VIP if you can, and see if it works.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Sep 2018 15:01:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232081#M66611</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2018-09-24T15:01:41Z</dc:date>
    </item>
    <item>
      <title>Re: Internal host detection not Working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232087#M66613</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/91200"&gt;@welly_59&lt;/a&gt;&lt;/P&gt;&lt;P&gt;Are you able to do a DNS (reverse)lookup for the IP that you configured and do you then get exactly the name that is configured?&lt;/P&gt;</description>
      <pubDate>Mon, 24 Sep 2018 15:31:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232087#M66613</guid>
      <dc:creator>Remo</dc:creator>
      <dc:date>2018-09-24T15:31:33Z</dc:date>
    </item>
    <item>
      <title>Re: Internal host detection not Working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232106#M66622</link>
      <description>Isn’t dnsquery = 0 meaning that it’s successfully resolved?</description>
      <pubDate>Mon, 24 Sep 2018 18:01:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232106#M66622</guid>
      <dc:creator>welly_59</dc:creator>
      <dc:date>2018-09-24T18:01:34Z</dc:date>
    </item>
    <item>
      <title>Re: Internal host detection not Working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232107#M66623</link>
      <description>DMs lookup brings the whole fqdn- test.domain.local&lt;BR /&gt;&lt;BR /&gt;I have just ‘test’ set as the name for internal host detection, but it’s returning dnsquery = 0 which means it has resolved ok?</description>
      <pubDate>Mon, 24 Sep 2018 18:03:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232107#M66623</guid>
      <dc:creator>welly_59</dc:creator>
      <dc:date>2018-09-24T18:03:05Z</dc:date>
    </item>
    <item>
      <title>Re: Internal host detection not Working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232109#M66624</link>
      <description>&lt;P&gt;Normally 0 means false while 1 equals true. So if you set the host also to test.domain.local the internal host detection should work and the client will not connect from internal.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Sep 2018 18:14:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232109#M66624</guid>
      <dc:creator>Remo</dc:creator>
      <dc:date>2018-09-24T18:14:34Z</dc:date>
    </item>
    <item>
      <title>Re: Internal host detection not Working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232113#M66625</link>
      <description>&lt;P&gt;not for this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;0 = succesful&lt;/P&gt;&lt;P&gt;9003 = not succesful&lt;/P&gt;&lt;P&gt;9852 = no dns servers configured&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/Management-Articles/Most-Common-DNS-Query-Responses-for-Internal-Host-Detection/ta-p/59629" target="_blank"&gt;https://live.paloaltonetworks.com/t5/Management-Articles/Most-Common-DNS-Query-Responses-for-Internal-Host-Detection/ta-p/59629&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I just tried this from home, where im obviously off-LAN, and i get this:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;(T10216) 09/24/18 19:18:04:105 Debug(1729): DnsQuery returns 9003&lt;BR /&gt;(T10216) 09/24/18 19:18:04:105 Debug(1744): Resolved x.x.x.x.IN-ADDR.ARPA for internal host detection with return value 9003&lt;BR /&gt;(T10216) 09/24/18 19:18:04:105 Debug(4040): NetworkDiscoverThread: network type is external.&lt;BR /&gt;(T10216) 09/24/18 19:18:04:105 Debug(4109): NetworkDiscoverThread: Discover external network.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Sep 2018 18:24:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232113#M66625</guid>
      <dc:creator>welly_59</dc:creator>
      <dc:date>2018-09-24T18:24:34Z</dc:date>
    </item>
    <item>
      <title>Re: Internal host detection not Working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232124#M66627</link>
      <description>&lt;P&gt;Good to know ...&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Sep 2018 18:31:04 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232124#M66627</guid>
      <dc:creator>Remo</dc:creator>
      <dc:date>2018-09-24T18:31:04Z</dc:date>
    </item>
    <item>
      <title>Re: Internal host detection not Working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232598#M66718</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Did you make any progress on this? I am going thru the exact same challenge. Should work but it does not. The only thing I have not tried yet is switching from On-Demand to User-Logon.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Jim&lt;/P&gt;</description>
      <pubDate>Wed, 26 Sep 2018 22:04:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/232598#M66718</guid>
      <dc:creator>ITSupportMedi</dc:creator>
      <dc:date>2018-09-26T22:04:41Z</dc:date>
    </item>
    <item>
      <title>Re: Internal host detection not Working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/302814#M78880</link>
      <description>&lt;P&gt;You must use Always-on when implementing internal host detection.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Dec 2019 23:49:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/302814#M78880</guid>
      <dc:creator>RonCarmack</dc:creator>
      <dc:date>2019-12-09T23:49:18Z</dc:date>
    </item>
    <item>
      <title>Re: Internal host detection not Working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/302824#M78883</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/91200"&gt;@welly_59&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We had similar problem earlier and PA TAC assisted us in resolving the issue.&lt;/P&gt;&lt;P&gt;Below are the things to check/configure:&lt;/P&gt;&lt;P&gt;--FQDN configured properly&lt;/P&gt;&lt;P&gt;--Try a portal config refresh:&lt;BR /&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClF1CAK" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClF1CAK&lt;/A&gt;&lt;/P&gt;&lt;P&gt;--Try latest GP version&lt;/P&gt;</description>
      <pubDate>Tue, 10 Dec 2019 02:57:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/302824#M78883</guid>
      <dc:creator>FarzanaMustafa</dc:creator>
      <dc:date>2019-12-10T02:57:05Z</dc:date>
    </item>
    <item>
      <title>Re: Internal host detection not Working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/422214#M94044</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Had the same issue, adding a PTR record for the internal gateway fixed it.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;"When the user attempts to log in, the agent does a reverse DNS lookup of an internal host using the specified&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Hostname&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;to the specified&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;IP Address&lt;/SPAN&gt;&lt;SPAN&gt;. The Dns server must have a PTR record in order to reply back to the reverse DNS query from the GP agent. In either case (failure or success) an entry would be made in the PanGPS.log file about the reverse DNS lookup result.&amp;nbsp;"&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClsWCAS" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClsWCAS&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 26 Jul 2021 20:44:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-host-detection-not-working/m-p/422214#M94044</guid>
      <dc:creator>MrDave</dc:creator>
      <dc:date>2021-07-26T20:44:54Z</dc:date>
    </item>
  </channel>
</rss>

