I don't see any drops and suspect it is failing with connecting via authentication or something along those lines. Works fine but as soon as a user connects to GP, whiteboard sharing no longer works. Curious if anybody else has run into this?
Hi @jhwarren ,
You need to provide more information, with this poor explanation of the problem it is shooting in the dark.
- Do you use full tunnel or split-tunnel VPN?
- How is you security policy look like? Do you allow specific ports or using AppID?
- How is you GP gateway configured - are you route the traffic base on route, domain or application?
- Have you understand how whiteboard is working? Do you know what port, protocol is used? From which direction the traffic is initiated - is it possible that you need rule allowing traffic from inside to GP VPN?
You need to understand that GlobalProtect is just building logical connection from the user PC to the firewall, after that is down to basic network principles - do you have route, do you have fw rule allowing traffic, do you have reply routed back.
We're running into this issue as well but here's what I was able to dig up. Issue likely is related to the Microsoft NLA & NCSI protocols mentioned above. All the rest of our MS products seem to work except MS Whiteboard. I have a hunch that it has been fixed for other MS Products as the person who brought it to our attention stated, "OneNote had the same issue and was fixed some months ago." There was no intervention from us or anyone else that I'm aware.
Fails on both GP Split-Tunnel and Full Tunnel (we have both) set to loopback interfaces, Default Gateway 0.0.0.0. It works on our Anyconnect VPN client which has a numbered Default Gateway.
Its probably an application that is missing or the traffic is being decrypted. Either way make sure you have logging enabled on all of your policies to see where the traffic is getting blocked or decrypted.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!
The Live Community thanks you for your participation!