<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FQDN exclusion Global Protect enforce connection in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/391956#M90820</link>
    <description>&lt;P&gt;do you mean your company domain that is local when at work or any localdomain at that time, only the first option is possible.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;are you actually using internal host detection?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="MickBall_0-1616060789648.jpeg" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/30419i818D365812473A70/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="MickBall_0-1616060789648.jpeg" alt="MickBall_0-1616060789648.jpeg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 18 Mar 2021 09:46:37 GMT</pubDate>
    <dc:creator>Mick_Ball</dc:creator>
    <dc:date>2021-03-18T09:46:37Z</dc:date>
    <item>
      <title>FQDN exclusion Global Protect enforce connection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/391813#M90806</link>
      <description>&lt;P&gt;Is it possible to FQDN exclude&amp;nbsp; your local domain *.localdomain&amp;nbsp; when enforcing network Global Protect connection?&amp;nbsp; &amp;nbsp;Could this be used as a workaround for not having pre-logon configured?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How/why is there not a enforce global protect connection only while "outside" of the network?&lt;/P&gt;</description>
      <pubDate>Wed, 17 Mar 2021 17:36:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/391813#M90806</guid>
      <dc:creator>Sec101</dc:creator>
      <dc:date>2021-03-17T17:36:27Z</dc:date>
    </item>
    <item>
      <title>Re: FQDN exclusion Global Protect enforce connection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/391828#M90808</link>
      <description>&lt;P&gt;Hi, not sure i understand the first part of your post, and&amp;nbsp; second part (i think) would not be enforced if using internal host detection.&lt;/P&gt;</description>
      <pubDate>Wed, 17 Mar 2021 17:50:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/391828#M90808</guid>
      <dc:creator>Mick_Ball</dc:creator>
      <dc:date>2021-03-17T17:50:33Z</dc:date>
    </item>
    <item>
      <title>Re: FQDN exclusion Global Protect enforce connection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/391874#M90810</link>
      <description>&lt;P&gt;This would be for updates in the case a user is not signed in/signed out.&amp;nbsp; &amp;nbsp;Machine would lose connection if no prelogon is setup until user authenticates I think? Mostly regarding updates when a user is not signed into a machine.&amp;nbsp; &amp;nbsp; But if internal it appears it still enforces sign on for network connectivity even when inside a trusted network.&lt;/P&gt;</description>
      <pubDate>Wed, 17 Mar 2021 21:58:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/391874#M90810</guid>
      <dc:creator>Sec101</dc:creator>
      <dc:date>2021-03-17T21:58:24Z</dc:date>
    </item>
    <item>
      <title>Re: FQDN exclusion Global Protect enforce connection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/391956#M90820</link>
      <description>&lt;P&gt;do you mean your company domain that is local when at work or any localdomain at that time, only the first option is possible.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;are you actually using internal host detection?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="MickBall_0-1616060789648.jpeg" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/30419i818D365812473A70/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="MickBall_0-1616060789648.jpeg" alt="MickBall_0-1616060789648.jpeg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Mar 2021 09:46:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/391956#M90820</guid>
      <dc:creator>Mick_Ball</dc:creator>
      <dc:date>2021-03-18T09:46:37Z</dc:date>
    </item>
    <item>
      <title>Re: FQDN exclusion Global Protect enforce connection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/392021#M90835</link>
      <description>&lt;P&gt;Thank you for the quick reply Mick.&amp;nbsp; &amp;nbsp;Yes and yes.&amp;nbsp; &amp;nbsp;If memory serves correct, when not logged in and enforce global protect, computers don't connect to local network I think?&lt;/P&gt;</description>
      <pubDate>Thu, 18 Mar 2021 13:00:45 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/392021#M90835</guid>
      <dc:creator>Sec101</dc:creator>
      <dc:date>2021-03-18T13:00:45Z</dc:date>
    </item>
    <item>
      <title>Re: FQDN exclusion Global Protect enforce connection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/392023#M90836</link>
      <description>&lt;P&gt;OK i was not aware of that, I have never used the enforce GP option so cant really advise any further....&amp;nbsp; also I don't have lab access just now so cant even test.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Mar 2021 13:16:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/392023#M90836</guid>
      <dc:creator>Mick_Ball</dc:creator>
      <dc:date>2021-03-18T13:16:22Z</dc:date>
    </item>
    <item>
      <title>Re: FQDN exclusion Global Protect enforce connection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/392025#M90837</link>
      <description>&lt;P&gt;I could be missing something, but wish there was an option to not enforce when on local trusted network if internal host detection occurred.&amp;nbsp; &amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Mar 2021 13:17:52 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/392025#M90837</guid>
      <dc:creator>Sec101</dc:creator>
      <dc:date>2021-03-18T13:17:52Z</dc:date>
    </item>
    <item>
      <title>Re: FQDN exclusion Global Protect enforce connection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/392036#M90839</link>
      <description>&lt;P&gt;sure, I can see what you are asking as GP is not running so how can the local host detection work, it only works when you connect to the portal. if you do manage to apply a local domain then what will happen when outside the office....&amp;nbsp; &amp;nbsp;will it traverse the VPN or go direct when connected....&lt;/P&gt;</description>
      <pubDate>Thu, 18 Mar 2021 13:24:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/392036#M90839</guid>
      <dc:creator>Mick_Ball</dc:creator>
      <dc:date>2021-03-18T13:24:54Z</dc:date>
    </item>
    <item>
      <title>Re: FQDN exclusion Global Protect enforce connection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/392187#M90871</link>
      <description>&lt;P&gt;Perhaps the only way to take this is with IP address exclusions then?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Mar 2021 17:31:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fqdn-exclusion-global-protect-enforce-connection/m-p/392187#M90871</guid>
      <dc:creator>Sec101</dc:creator>
      <dc:date>2021-03-18T17:31:26Z</dc:date>
    </item>
  </channel>
</rss>

