<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: GlobalProtect Agent blocks DNS requests in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/390779#M90724</link>
    <description>&lt;P&gt;Does anyone know if they ever fix this?&amp;nbsp; Or shall we rephrase and say it is a "feature request" to unbreak this. Is there a client version that doesn't stop DNS requests.&amp;nbsp; I don't see any mention that the GP clients fakes DNS replies to other servers.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I can understand offering this for security purposes, but let's not keep it secret.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This makes GP client laptops hobbled for network engineers, desktop techs, domain and DNS engineers and many more IT people.&amp;nbsp; For many this is a foolish "feature".&amp;nbsp; It has prevented me from troubleshooting repeatedly.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 11 Mar 2021 20:57:19 GMT</pubDate>
    <dc:creator>Royalfr</dc:creator>
    <dc:date>2021-03-11T20:57:19Z</dc:date>
    <item>
      <title>GlobalProtect Agent blocks DNS requests</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/210047#M61362</link>
      <description>&lt;P&gt;I have case open with Palo but was wondering if anyone can verify and get same result as I.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have 0.0.0.0/0 route towards tunnel.&lt;/P&gt;&lt;P&gt;I have Primary and Secondary DNS servers configured in GP Gateway (Network Services tab).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When I perform nslookup from Windows command prompt then reply comes only if request is sent towards either Primary or Secondary DNS server in GP config.&lt;/P&gt;&lt;P&gt;If I change it to anything else then nslookup will fail. Wireshark packet capture taken in Windows shows as DNS reply came from DNS server with result "No such name..."&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now weird thing is that no requests are logged in firewall. So it seems like Windows GP agent itself is acting as filter and decides what DNS requests are good to pass on and what not &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;By the way works fine with MAC client.&lt;/P&gt;</description>
      <pubDate>Fri, 13 Apr 2018 15:47:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/210047#M61362</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2018-04-13T15:47:46Z</dc:date>
    </item>
    <item>
      <title>Re: GlobalProtect Agent blocks DNS requests</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/211144#M61602</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/15603"&gt;@Raido_Rattameister&lt;/a&gt;, Hi.&lt;/P&gt;&lt;P&gt;I have just had a call logged with our team for the same reason, have you had any luck or progress with this.&lt;/P&gt;</description>
      <pubDate>Fri, 20 Apr 2018 13:43:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/211144#M61602</guid>
      <dc:creator>Mick_Ball</dc:creator>
      <dc:date>2018-04-20T13:43:42Z</dc:date>
    </item>
    <item>
      <title>Re: GlobalProtect Agent blocks DNS requests</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/211147#M61605</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/15603"&gt;@Raido_Rattameister&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;For whatever reason I'm remembering a conversation around this that I can't seem to find anymore, and I'm not sure it wasn't during a call/conference. Essentially it was determined that Palo Alto was dropping any DNS requests to anything besides the DNS servers configured in the agent, and that while it was a only Windows thing for the time being it didn't stretch into the macOS client due to limitations in how the OS works.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I suspect that the response will be that this is expected and is how the agent is supposed to be functioning.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 20 Apr 2018 13:48:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/211147#M61605</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2018-04-20T13:48:12Z</dc:date>
    </item>
    <item>
      <title>Re: GlobalProtect Agent blocks DNS requests</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/211148#M61606</link>
      <description>&lt;P&gt;OK &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;, thanks for your reply.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;it's not a big deal as using rdp to resolve issue but just wanted to make sure it's not me going nuts!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks again.&lt;/P&gt;</description>
      <pubDate>Fri, 20 Apr 2018 13:50:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/211148#M61606</guid>
      <dc:creator>Mick_Ball</dc:creator>
      <dc:date>2018-04-20T13:50:27Z</dc:date>
    </item>
    <item>
      <title>Re: GlobalProtect Agent blocks DNS requests</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/211160#M61614</link>
      <description>&lt;P&gt;No solution yet.&lt;/P&gt;&lt;P&gt;Yesterday had another screen share with Palo TAC.&lt;/P&gt;&lt;P&gt;Case #00859418&lt;/P&gt;</description>
      <pubDate>Fri, 20 Apr 2018 14:37:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/211160#M61614</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2018-04-20T14:37:05Z</dc:date>
    </item>
    <item>
      <title>Re: GlobalProtect Agent blocks DNS requests</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/390779#M90724</link>
      <description>&lt;P&gt;Does anyone know if they ever fix this?&amp;nbsp; Or shall we rephrase and say it is a "feature request" to unbreak this. Is there a client version that doesn't stop DNS requests.&amp;nbsp; I don't see any mention that the GP clients fakes DNS replies to other servers.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I can understand offering this for security purposes, but let's not keep it secret.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This makes GP client laptops hobbled for network engineers, desktop techs, domain and DNS engineers and many more IT people.&amp;nbsp; For many this is a foolish "feature".&amp;nbsp; It has prevented me from troubleshooting repeatedly.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 11 Mar 2021 20:57:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-agent-blocks-dns-requests/m-p/390779#M90724</guid>
      <dc:creator>Royalfr</dc:creator>
      <dc:date>2021-03-11T20:57:19Z</dc:date>
    </item>
  </channel>
</rss>

