<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Exclude all Zoom traffic from GlobalProtect VPN in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/326194#M83146</link>
    <description>&lt;P&gt;HI!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For Zoom domain excluded. So far it is not working. Symptom is not stable some client works and then stopped when they go zoom from Browser. It will not display. Case is on engineering team. If anyone got excluded domain working and stable. Please share your comments&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Daniel&lt;/P&gt;</description>
    <pubDate>Tue, 05 May 2020 16:35:10 GMT</pubDate>
    <dc:creator>Daniel_Li</dc:creator>
    <dc:date>2020-05-05T16:35:10Z</dc:date>
    <item>
      <title>Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/316766#M81437</link>
      <description>&lt;P&gt;We have been trying to exclude all Zoom-related traffic from the GlobalProtect VPN tunnel.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So far we have tried with: "*.zoom.us" exclusion configured directly on the GP gateway as a domain in:&lt;/P&gt;&lt;P&gt;Network --&amp;gt; GlobalProtect --&amp;gt; Gateways --&amp;gt; GW NAME --&amp;gt; Agent --&amp;gt; CLient Settings --&amp;gt; Split tunnel --&amp;gt; Domain and Application&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But this seems to not completely do the trick as Zoom use some AWS default domains, not under *.zoom.us.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What approaches will work that does not involve having to manually exclude all the IP ranges as defined here?&lt;/P&gt;&lt;P&gt;&lt;A href="https://support.zoom.us/hc/en-us/articles/201362683-Network-Firewall-or-Proxy-Server-Settings-for-Zoom&amp;nbsp;%20" target="_self"&gt;https://support.zoom.us/hc/en-us/articles/201362683-Network-Firewall-or-Proxy-Server-Settings-for-Zoom&amp;nbsp;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The Zoom binary path seems to be this one, but I'm not sure PA supports wildcards on the path like this:&lt;/P&gt;&lt;P&gt;C:\Users\*\AppData\Roaming\Zoom\bin\Zoom.exe&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 17 Mar 2020 10:24:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/316766#M81437</guid>
      <dc:creator>MarcelST</dc:creator>
      <dc:date>2020-03-17T10:24:21Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/316801#M81446</link>
      <description>&lt;P&gt;Hi Marchel,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Wildcards are not supported in the path, try one of the following variables %appdata%\&lt;SPAN&gt;Zoom\bin\Zoom.exe or c:\users\%USERNAME%\appdata\roaming\zoom\bin\Zoom.exe and let us know the outcome.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 17 Mar 2020 16:20:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/316801#M81446</guid>
      <dc:creator>SuperMario</dc:creator>
      <dc:date>2020-03-17T16:20:54Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/316978#M81474</link>
      <description>&lt;P&gt;It's not working. After pushing changes &amp;amp; refreshing still can see some tcp/8801 Zoom connections going through the GP gateway.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I found the documentation not good enough on this specific feature.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Mar 2020 08:04:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/316978#M81474</guid>
      <dc:creator>MarcelST</dc:creator>
      <dc:date>2020-03-18T08:04:59Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317018#M81483</link>
      <description>&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/Prisma-Access-Articles/GlobalProtect-Implement-Split-Domain-and-Applications/ta-p/316929" target="_blank"&gt;https://live.paloaltonetworks.com/t5/Prisma-Access-Articles/GlobalProtect-Implement-Split-Domain-and-Applications/ta-p/316929&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Mar 2020 10:47:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317018#M81483</guid>
      <dc:creator>Sai_Tumuluri</dc:creator>
      <dc:date>2020-03-18T10:47:41Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317073#M81498</link>
      <description>&lt;P&gt;Make sure your GP client fetches the new configuration from the portal.&lt;/P&gt;&lt;P&gt;The best way to make sure you fetch the latest config from your portal is by restarting the PanGPS service or rebooting the computer.&lt;/P&gt;&lt;P&gt;Performing a refresh connection action on the GP client options not always forces the client to request the lastest portal configuration as it may depend on how you configure the client connection.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Mar 2020 16:24:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317073#M81498</guid>
      <dc:creator>SuperMario</dc:creator>
      <dc:date>2020-03-18T16:24:11Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317076#M81500</link>
      <description>&lt;P&gt;We did that, the only difference is in our case the path is different:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;"%AppData%\Zoom\bin\Zoom.exe" instead of: "%AppData%\Roaming\Zoom\bin\Zoom.exe".&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;But we keep facing the same issue: all traffic is correctly split tunneled except for the UDP traffic going throug port udp/8801 (which is the most bandwidth consumption).&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;And thanks for the tip, but yes we were doing the "Refresh connection" after each change.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Mar 2020 16:40:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317076#M81500</guid>
      <dc:creator>MarcelST</dc:creator>
      <dc:date>2020-03-18T16:40:08Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317080#M81501</link>
      <description>&lt;P&gt;In windows, run the command: "netstat -anob" to verify if traffic is generated by zoom's PID and executable [Zoom.exe].&lt;/P&gt;&lt;P&gt;Make sure you are using our latest GP client version 5.0.8 or 5.1.1.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Mar 2020 17:07:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317080#M81501</guid>
      <dc:creator>SuperMario</dc:creator>
      <dc:date>2020-03-18T17:07:35Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317086#M81504</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Here the sessions I was talking about that still going through the GP VPN:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="PA log.png" style="width: 999px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/24508i780DE7CACDF00A3E/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="PA log.png" alt="PA log.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If I run your command I do not see anu udp/8801 connection for some reason I don't understand:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;TCP 10.0.2.168:51592 52.202.62.202:443 CLOSE_WAIT 8680&lt;BR /&gt;[Zoom.exe]&lt;BR /&gt;TCP 10.0.2.168:53002 213.244.140.46:443 ESTABLISHED 26124&lt;BR /&gt;[Zoom.exe]&lt;BR /&gt;TCP 10.0.2.168:53043 52.202.62.243:443 CLOSE_WAIT 26124&lt;BR /&gt;[Zoom.exe]&lt;/P&gt;&lt;P&gt;TCP 10.0.2.168:64912 52.202.62.248:443 ESTABLISHED 8680&lt;BR /&gt;[Zoom.exe]&lt;BR /&gt;TCP 10.0.2.168:64922 3.208.72.69:443 ESTABLISHED 8680&lt;BR /&gt;[Zoom.exe]&lt;/P&gt;&lt;P&gt;UDP 0.0.0.0:53997 *:* 26124&lt;BR /&gt;[Zoom.exe]&lt;BR /&gt;UDP 0.0.0.0:53998 *:* 26124&lt;BR /&gt;[Zoom.exe]&lt;BR /&gt;UDP 0.0.0.0:59513 *:* 5236&lt;BR /&gt;[PanGPS.exe]&lt;BR /&gt;UDP 0.0.0.0:60162 *:* 26124&lt;BR /&gt;[Zoom.exe]&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Mar 2020 17:23:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317086#M81504</guid>
      <dc:creator>MarcelST</dc:creator>
      <dc:date>2020-03-18T17:23:32Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317100#M81507</link>
      <description>&lt;P&gt;The netstat output shows that UDP traffic is going through the physical interface, hence, the heavy traffic is being split. Only the TCP traffic with Destination Port 443 is going through the tunnel.&lt;/P&gt;&lt;P&gt;Your traffic logs which illustrate the UDP traffic are from one hour and a half ago.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Are you still seeing UDP traffic on the latest traffic logs?&lt;BR /&gt;If so, are they from a device that was recently connected or have verified it received the latest Prisma Access - GlobalProtect Portal configuration?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Mar 2020 17:52:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317100#M81507</guid>
      <dc:creator>SuperMario</dc:creator>
      <dc:date>2020-03-18T17:52:01Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317122#M81510</link>
      <description>&lt;P&gt;My last reply was not send somehow..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Here you can see the exceptions we have in place:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="PA excpetions.png" style="width: 999px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/24513i658FA2C07DB63E13/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="PA excpetions.png" alt="PA excpetions.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Here you can see all the Zoom traffic from my user that is tunneled through the GP VPN instead of doing local breakout. The amount of bytes is huge. And this is only happening with the udp/8801 traffic for some reason.&lt;/P&gt;&lt;P&gt;It's still happening, after refreshing connection, restart,...:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="PA logs 2.png" style="width: 838px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/24514i839688B618BAC9E5/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="PA logs 2.png" alt="PA logs 2.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Mar 2020 18:18:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317122#M81510</guid>
      <dc:creator>MarcelST</dc:creator>
      <dc:date>2020-03-18T18:18:21Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317156#M81519</link>
      <description>&lt;P&gt;Same type of behavior on my end, so I went ahead an added the Zoom IP blocks listed for port 8801:&lt;/P&gt;&lt;P&gt;&lt;A href="https://support.zoom.us/hc/en-us/articles/201362683-Network-Firewall-or-Proxy-Server-Settings-for-Zoom" target="_blank"&gt;https://support.zoom.us/hc/en-us/articles/201362683-Network-Firewall-or-Proxy-Server-Settings-for-Zoom&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Which came out to be 57 entries. Doing this seems to have helped, somewhat, while doing 1-on-1 tests, I wouldn't see traffic show up in the firewall logs, even testing with other users, however we now have ~3,000+ employees working remotely, so I am starting to see these logs appear but it seems not as much as you would think. I have a case open with Palo Alto, they are able to replicate but unable to provide a solution.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;On top of adding the IP blocks, we are excluding the domains,&lt;/P&gt;&lt;P&gt;*.zoom.us&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;and application processes for both PC and macOS&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Macintosh HD/Applications/Zoom.app&lt;BR /&gt;C:\Program Files (x86)\Zoom\bin\Zoom.exe&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/8-1/pan-os-new-features/globalprotect-features/split-tunnel-for-public-applications.html" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/8-1/pan-os-new-features/globalprotect-features/split-tunnel-for-public-applications.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;This article gives great instructions but doesn't obviously seem to work.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am also attempting the same with BOX and will see how things go in the coming days.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Mar 2020 20:43:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317156#M81519</guid>
      <dc:creator>brischust</dc:creator>
      <dc:date>2020-03-18T20:43:53Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317159#M81521</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;You might want to check your companies policy and regulations regarding split tunnels as most dont allow it. I'm sure there is a reason for the request, however why would you want to lose that viability?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Wed, 18 Mar 2020 21:42:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317159#M81521</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2020-03-18T21:42:50Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317231#M81545</link>
      <description>&lt;P&gt;Thanks for the feedback, seems you are facing the exact same scenario.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In our case, we want to avoid add the network ranges as it's something we would need to keep updated as they add/remove ranges, plus we would need to do manual configurations in multiple gateways. The API could be an option to automate this, but anyway we would need to keep an eye at Zoom article while their add/remove them.&lt;/P&gt;</description>
      <pubDate>Thu, 19 Mar 2020 07:55:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317231#M81545</guid>
      <dc:creator>MarcelST</dc:creator>
      <dc:date>2020-03-19T07:55:36Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317234#M81547</link>
      <description>&lt;P&gt;There is not much added value on sending Zoom traffic through the VPN when Zoom is classified as a low-risk app by applipedia, it's an allowed application meaning no need to block/restrict, we want to give this application the best performance due to the current situation (and send it through the VPN is for sure not the way to achieve this). The only thing we might lose here is the ability to see&amp;amp;block files transfers as they flow through the Zoom sharing connection, but that's something we accept.&lt;/P&gt;</description>
      <pubDate>Thu, 19 Mar 2020 07:58:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317234#M81547</guid>
      <dc:creator>MarcelST</dc:creator>
      <dc:date>2020-03-19T07:58:33Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317281#M81560</link>
      <description>&lt;P&gt;Can you start a zoom meeting with screen sharing and video ON. Add at least 2 people with video&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;While on meeting run -&amp;nbsp;netstat -aenob&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClQjCAK" target="_blank" rel="noopener"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClQjCAK&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Also, for IPs in the traffic logs, enable host lookup, by checking the box at bottom. Resolve hostname. And share the screenshot again. Above link will help&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://support.zoom.us/hc/en-us/articles/201362683-Network-Firewall-or-Proxy-Server-Settings-for-Zoom?mobile_site=true" target="_blank" rel="noopener"&gt;https://support.zoom.us/hc/en-us/articles/201362683-Network-Firewall-or-Proxy-Server-Settings-for-Zoom?mobile_site=true&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 19 Mar 2020 10:46:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317281#M81560</guid>
      <dc:creator>Sai_Tumuluri</dc:creator>
      <dc:date>2020-03-19T10:46:39Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317957#M81690</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This config is working just fine for me.&lt;/P&gt;&lt;P class="p1"&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2020-03-23 at 11.05.49 AM.png" style="width: 999px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/24599i77DADDFF996BFBB4/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2020-03-23 at 11.05.49 AM.png" alt="Screen Shot 2020-03-23 at 11.05.49 AM.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P class="p1"&gt;&amp;nbsp;&lt;/P&gt;&lt;P class="p1"&gt;The config was tested on PAN-OS 0.04 and PAN-OS 9.0.6 and it's working in both cases.&lt;/P&gt;&lt;P class="p1"&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Mon, 23 Mar 2020 10:07:43 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317957#M81690</guid>
      <dc:creator>RamiAkermi</dc:creator>
      <dc:date>2020-03-23T10:07:43Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317958#M81691</link>
      <description>&lt;P&gt;What GlobalProtect version are you using?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We did some more tests and we conclude with: Win10 and:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;- With Global Protect 5.1 is working fine&lt;/P&gt;&lt;P&gt;- We are not yet sure about GlobalProtect 5.0&lt;/P&gt;&lt;P&gt;- With GlobalProtect 4.1 is not working&lt;/P&gt;</description>
      <pubDate>Mon, 23 Mar 2020 10:17:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317958#M81691</guid>
      <dc:creator>MarcelST</dc:creator>
      <dc:date>2020-03-23T10:17:56Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317959#M81692</link>
      <description>&lt;P&gt;We are using&amp;nbsp; GlobalProtect client version&amp;nbsp; 5.0.2&lt;/P&gt;&lt;P&gt;Thanks&lt;BR /&gt;&lt;BR /&gt;.&lt;/P&gt;</description>
      <pubDate>Mon, 23 Mar 2020 11:13:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/317959#M81692</guid>
      <dc:creator>RamiAkermi</dc:creator>
      <dc:date>2020-03-23T11:13:35Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/318183#M81723</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Did you get&amp;nbsp; the&amp;nbsp;feature&amp;nbsp;exclude &amp;nbsp;video traffic from vpn tunnel to work?&lt;/P&gt;&lt;P&gt;For me, I'm sure we are using the correct config and we upgraded the GlobalProtect Gateway appliance to PAN-OS 9.0.6 ( the issue was fixed in this release) but still no positive result.&lt;/P&gt;&lt;P&gt;I went through debug and dump logs. Checked the monitoring tab in the PA and I'm still seeing the video streaming traffic go across the tunnel (dailymotion for example).&lt;/P&gt;&lt;P&gt;I opened a case with support but still no answer yet.&lt;/P&gt;&lt;P&gt;Any help will be appreciated.&lt;/P&gt;&lt;P&gt;In case we find a solution with the support team I will share it here&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 24 Mar 2020 11:10:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/318183#M81723</guid>
      <dc:creator>RamiAkermi</dc:creator>
      <dc:date>2020-03-24T11:10:01Z</dc:date>
    </item>
    <item>
      <title>Re: Exclude all Zoom traffic from GlobalProtect VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/318223#M81728</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/136293"&gt;@RamiAkermi&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Try configuring both the "Exclude Video Application" option on agent and also domain name under exclude domains. Can you share a screenshot of config&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/8-1/pan-os-new-features/globalprotect-features/split-tunnel-for-public-applications.html" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/8-1/pan-os-new-features/globalprotect-features/split-tunnel-for-public-applications.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 24 Mar 2020 13:13:43 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/exclude-all-zoom-traffic-from-globalprotect-vpn/m-p/318223#M81728</guid>
      <dc:creator>Sai_Tumuluri</dc:creator>
      <dc:date>2020-03-24T13:13:43Z</dc:date>
    </item>
  </channel>
</rss>

