<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Clientless VPN and bypassing the Guacamole admin login page in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/clientless-vpn-and-bypassing-the-guacamole-admin-login-page/m-p/341619#M85682</link>
    <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;I am not sure about bypassing gucamole login page.&lt;/P&gt;&lt;P&gt;Suggesting an alternate ,&lt;/P&gt;&lt;P&gt;as this is POC you can try SAML authentication of&amp;nbsp;&lt;SPAN&gt;SecurEnvoy for global protect client authentication . Configure the SAML in gucamole as well.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Once the client enters the GP clienless VPN and click on the Gucamole link it tends to reuse the existing credentials of clientless VPN to gucamole , so you can bypass the procedure of reentering the credentials.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Ram&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 31 Jul 2020 16:18:53 GMT</pubDate>
    <dc:creator>RamprakashRT</dc:creator>
    <dc:date>2020-07-31T16:18:53Z</dc:date>
    <item>
      <title>Clientless VPN and bypassing the Guacamole admin login page</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/clientless-vpn-and-bypassing-the-guacamole-admin-login-page/m-p/338047#M85062</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In the middle of POC testing accessing internal servers via RDP, using Clientless VPN and Guacamole. The Clientless VPN and Guacamole side are already set up and working fine.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is how I would like to see the POC working:&lt;/P&gt;&lt;P&gt;1. External users connect to the Clientless VPN gateway.&lt;/P&gt;&lt;P&gt;2. Enter their 2-Factor-Authentication details (I will be using SecurEnvoy as the 2FA software).&lt;/P&gt;&lt;P&gt;3. Log into the Clientless VPN portal page.&lt;/P&gt;&lt;P&gt;4. Users click on the Guacamole RPD link within the Clientless VPN page and go straight to the list of RDP sessions within Guacamole, instead of logging into the Guacamole admin web page.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is it possible to bypass the Guacamole web page where you normally enter 'guacadmin', then the password? If not, this means a user will have to login three times ie. first into the 2FA software, then the Clientless VPN page and lastly the Guacamole web page.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Many thanks.&lt;/P&gt;&lt;P&gt;Roberto&lt;/P&gt;</description>
      <pubDate>Mon, 13 Jul 2020 10:02:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/clientless-vpn-and-bypassing-the-guacamole-admin-login-page/m-p/338047#M85062</guid>
      <dc:creator>rchung54</dc:creator>
      <dc:date>2020-07-13T10:02:54Z</dc:date>
    </item>
    <item>
      <title>Re: Clientless VPN and bypassing the Guacamole admin login page</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/clientless-vpn-and-bypassing-the-guacamole-admin-login-page/m-p/341619#M85682</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;I am not sure about bypassing gucamole login page.&lt;/P&gt;&lt;P&gt;Suggesting an alternate ,&lt;/P&gt;&lt;P&gt;as this is POC you can try SAML authentication of&amp;nbsp;&lt;SPAN&gt;SecurEnvoy for global protect client authentication . Configure the SAML in gucamole as well.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Once the client enters the GP clienless VPN and click on the Gucamole link it tends to reuse the existing credentials of clientless VPN to gucamole , so you can bypass the procedure of reentering the credentials.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Ram&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 31 Jul 2020 16:18:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/clientless-vpn-and-bypassing-the-guacamole-admin-login-page/m-p/341619#M85682</guid>
      <dc:creator>RamprakashRT</dc:creator>
      <dc:date>2020-07-31T16:18:53Z</dc:date>
    </item>
    <item>
      <title>Re: Clientless VPN and bypassing the Guacamole admin login page</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/clientless-vpn-and-bypassing-the-guacamole-admin-login-page/m-p/343234#M85939</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/148784"&gt;@RamprakashRT&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your reply. I have lately been testing with Thinfinity RDP gateway and that works very well. I am curious about SAML on Guacamole so will configure and test that too at some point.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Aug 2020 10:13:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/clientless-vpn-and-bypassing-the-guacamole-admin-login-page/m-p/343234#M85939</guid>
      <dc:creator>rchung54</dc:creator>
      <dc:date>2020-08-11T10:13:30Z</dc:date>
    </item>
  </channel>
</rss>

