- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
04-26-2018 02:59 AM
Hi,
We have a Palo alto in which if you try to access to the global protect portal using http, its automactically redirected to https.
For example: if we access to http://vpn.xxx.com , the browser redirects to https://vpn.xxx.com. So thats perfect.
But we have another PA with another GP Portal (https://vpn.yyy.com, in which is not redirected to https. Where is this option configured??? I can not find this option in Pa config GP.
thanks
04-26-2018 06:06 AM
There is PAN-75340 that would help with this, but as a workaround you can enable the portal to function as a clientless vpn portal and it will allow the redirect to take place.
I'm going to guess that the difference that you are seeing is caused by one of these two possible scenarios.
1) You have the Clientless VPN Portal configured on one but not the other, which would allow the redirect to function correctly.
2) You have a load-balancer/ARR or something of that nature that is actually performing this redirect before the request hits the firewall.
04-26-2018 06:27 AM
It could be the option 1. LB is discarded.
Where can i get info about that open bug?
04-26-2018 06:51 AM
Unfortunately the bug ID is something that I don't really have the details on, I simply know that it was associated with this issue and was referenced by another Palo Alto employee on the 8.0 documentation HERE. You could likely reach out to your SE to see what the status is or bug reaper, jdelio, or kiwi to see if they could look it up for you on the internal database.
04-26-2018 07:28 AM
The PA in which is working has the version 8.0.8
The another PA when its not working redirect has 7.1.15 version.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!