GlobalProtect stops to connect

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

GlobalProtect stops to connect

L1 Bithead

Hi all,
GlobalProtect stopped to connect to server. 
So it works before ( I did not install any new software, firewals, proxies, .... etc) It contiue work under VirtualBox machine, so it is not a problem of my internet provider, but it stops to connect from my machine:
I can reach portal throgh browser (chrome), or curl on 443 port without problems.
I tried without success reboot, reinstall GlobalProtect, etc..
So any help very appreciated I don't want to reinstall whole system without understanding what problem is.

My logs (just XXXXed real portal url): 

(T11260) 07/30/17 12:25:58:494 Debug(6677): Saved password is empty.
(T8556) 07/30/17 12:25:58:494 Info ( 734): HipMonitorThread starts
(T11260) 07/30/17 12:25:58:494 Debug(1675): Pre-logon-then-on-demand value is no
(T11260) 07/30/17 12:25:58:494 Debug(1336): SSO starts.
(T11260) 07/30/17 12:25:58:494 Debug(1365): SSO ----- PanCredGet failed with error=0x2
(T11260) 07/30/17 12:25:58:494 Debug(6693): SSO password is empty
(T11260) 07/30/17 12:25:58:494 Debug(1760): empty domain name.
(T11260) 07/30/17 12:25:58:495 Debug(4326): Set state to Retrieving configuration...
(T8556) 07/30/17 12:25:58:495 Debug( 387): Wscapi.dll is loaded.
(T8556) 07/30/17 12:25:58:495 Debug( 401): Register -- WscRegisterForChanges
(T11260) 07/30/17 12:25:58:495 Debug(1289): unknown network type.
(T11260) 07/30/17 12:25:58:495 Debug(4614): ServerThread: ProcessServerPortal -- GetConfigFromPortal
(T7100) 07/30/17 12:25:58:495 Debug( 351): Active session id is 1
(T8556) 07/30/17 12:25:58:495 Info ( 403): HipMonitorThread wait for exit event.
(T8556) 07/30/17 12:25:58:495 Debug( 405): before WaitForMultipleObjects
(T11260) 07/30/17 12:25:58:495 Debug(5021): entering.
(T11260) 07/30/17 12:25:58:495 Debug(5057): SSO enable status is 0, user name is slogvine, domain name is .
(T11260) 07/30/17 12:25:58:495 Debug(5060): reset user authentication status to true.
(T11260) 07/30/17 12:25:58:495 Debug(1795): open http session.
(T11260) 07/30/17 12:25:58:496 Debug( 370): set WINHTTP_OPTION_SECURE_PROTOCOLS
(T11260) 07/30/17 12:25:58:496 Debug(1398): Auto detect proxy for host XXXXXXXX
(T11260) 07/30/17 12:25:58:496 Debug(1411): CPanMSServiceWin::SetProxyForHost: fAutoDetect: 0 url: proxy: bypass:
url:https://XXXXXXXX/ returned proxystr:
(T11260) 07/30/17 12:25:58:496 Debug(1436): m_proxyInfo.dwAccessType is 0, m_proxyInfo.lpszProxy is (null)
(T11260) 07/30/17 12:25:58:496 Debug(7855): Scep clean
(T11260) 07/30/17 12:25:58:496 Debug(7857): Clean m_pScepCert
(T11260) 07/30/17 12:25:58:496 Debug(3194): Clean m_szScepCertPanName
(T11260) 07/30/17 12:25:58:496 Debug(2997): TriggerCaptivePortalDetection() end
(T8568) 07/30/17 12:25:58:496 Debug(3094): CaptivePortalDetectionThread: delay 2 seconds before captive portal detection. m_bIsDetectingCaptivePortal=1, m_bPreLoginIsDone = 0
(T8568) 07/30/17 12:25:58:496 Debug(3072): CaptivePortalDetectionThread: wait (2000 ms) for captive portal detection event.
(T11260) 07/30/17 12:25:58:497 Debug(4381): Pre-login...,verifyportalcert=yes
(T11260) 07/30/17 12:25:58:497 Debug( 76): pan_get_full_path(): full path in multibyte char is C:\Program Files\Palo Alto Networks\GlobalProtect\tca.cer
(T11260) 07/30/17 12:25:58:497 Info (1259): File C:\Program Files\Palo Alto Networks\GlobalProtect\tca.cer does not exist.
(T11260) 07/30/17 12:25:58:497 Debug(7000): File C:\Program Files\Palo Alto Networks\GlobalProtect\tca.cer does not exist.
(T11260) 07/30/17 12:25:58:497 Debug(7037): CheckServerCert() returns FALSE
(T11260) 07/30/17 12:25:58:497 Debug(2328): portal proxyparam is empty
(T11260) 07/30/17 12:25:58:497 Debug(2350): OID, oid=
(T11260) 07/30/17 12:25:58:497 Debug(2394): IPADDR=XXXXXXXX,PORT=443,URL=/global-protect/prelogin.esp,POST=1,PROXY_AUTO=0,PROXY_CFGURL=NULL,PROXY=NULL,PROXY_BYPASS=NULL,PROXY_USER=NULL,PROXY_PASS=****,VERIFY_CERT=1,ADDITIONAL_CHECK=1,SCEP_CERT=,oid=
(T11260) 07/30/17 12:25:58:497 Debug( 910): Send response to client for request https_request
(T11260) 07/30/17 12:25:58:497 Debug(2424): gpapintimeout not set, set it to 600 seconds
(T7100) 07/30/17 12:25:58:497 Debug( 274): Found PanGPA pid 6596
(T7100) 07/30/17 12:25:58:497 Debug( 278): Found active PanGPA pid is 6596
(T7100) 07/30/17 12:25:58:497 Debug( 55): Session id is 1 for pid 6596
(T7100) 07/30/17 12:25:58:497 Debug( 95): User profile directory is C:\Users\Lenovo-PC
(T7100) 07/30/17 12:25:58:497 Debug( 110): Found session 1
(T7100) 07/30/17 12:25:58:497 Debug( 140): Skip calling NetUserGetInfo for non-roaming profile.
(T7100) 07/30/17 12:25:58:497 Debug( 153): info4_buf is NULL
(T7100) 07/30/17 12:25:58:497 Debug( 155): profileInfo username Lenovo-PC, profile path (null), server (null)
(T7100) 07/30/17 12:25:58:587 Debug( 169): User profile loaded.
(T7100) 07/30/17 12:25:58:587 Debug( 185): Impersonated logged on user.
(T7100) 07/30/17 12:25:58:587 Debug( 187): Profile type is 0
(T7100) 07/30/17 12:25:58:588 Debug( 239): User profile unloaded
(T7100) 07/30/17 12:25:58:588 Debug( 76): pan_get_full_path(): full path in multibyte char is C:\WINDOWS\system32\config\systemprofile\AppData\Local\Palo Alto Networks\GlobalProtect\PanGpMPR.dat
(T11260) 07/30/17 12:25:58:613 Debug(2494): receive pan_msg_ping, 3
(T11260) 07/30/17 12:26:00:300 Debug(2494): receive pan_msg_ping, 3
(T8568) 07/30/17 12:26:00:501 Debug( 56): pan_captive_portal_detection: remote server address= 0xE12D9AC
(T8568) 07/30/17 12:26:00:501 Debug( 47): WSAGetLastError() returns 10035
(T11260) 07/30/17 12:26:00:522 Debug(2659): HTTP_RPC, len=0, result is
(NULL)...
(T11260) 07/30/17 12:26:00:522 Debug(4418): prelogin to portal result is
(null)
(T11260) 07/30/17 12:26:00:522 Debug(4574): Failed to pre-login to the portal XXXXXXXX. Error 0
(T11260) 07/30/17 12:26:00:522 Debug(1820): close WinHttp close handle.
(T11260) 07/30/17 12:26:00:522 Info (6175): Portal config does not exist, try registry/plist
(T11260) 07/30/17 12:26:00:522 Debug(6185): Failed to get version from config, try local
(T11260) 07/30/17 12:26:00:522 Info (5188): failed to retrieve value of the tag version.
(T11260) 07/30/17 12:26:00:522 Info (5228): Skip reading cached portal config.
(T11260) 07/30/17 12:26:00:522 Debug(7509): No scep profile
(T11260) 07/30/17 12:26:00:522 Debug(5241): portal status is Invalid portal.
(T11260) 07/30/17 12:26:00:522 Debug(5242): returns 0.
(T11260) 07/30/17 12:26:00:522 Debug(4326): Set state to Disconnected
(T11260) 07/30/17 12:26:00:522 Debug(1289): unknown network type.
(T11260) 07/30/17 12:26:00:522 Debug( 910): Send response to client for request portal
(T11260) 07/30/17 12:26:00:522 Debug(7269): Set m_bPreviousSwitchOffMsg to 0
(T8568) 07/30/17 12:26:00:638 Debug( 152): pan_http_captive_portal_detection: status is 204
(T8568) 07/30/17 12:26:00:638 Debug(3014): DetectCaptivePortal: captive portal is not detected for CP server index = 0. iStatus = 204
(T8568) 07/30/17 12:26:00:701 Debug( 56): pan_captive_portal_detection: remote server address= 0xC937FD11
(T8568) 07/30/17 12:26:00:701 Debug( 47): WSAGetLastError() returns 10035
(T8568) 07/30/17 12:26:00:885 Debug( 152): pan_http_captive_portal_detection: status is 200
(T8568) 07/30/17 12:26:00:885 Debug( 185): pan_http_captive_portal_detection(): head start=657, end=685.
(T8568) 07/30/17 12:26:00:885 Debug( 197): pan_http_captive_portal_detection() - captive portal isn't detected against server.
(T8568) 07/30/17 12:26:00:885 Debug(3014): DetectCaptivePortal: captive portal is not detected for CP server index = 1. iStatus = 200
(T8568) 07/30/17 12:26:00:885 Debug(3165): CaptivePortalDetectionThread: Didn't detect captive portal currently, and bCaptivePortalDetectedOnce=(0).
(T8568) 07/30/17 12:26:00:885 Debug(3072): CaptivePortalDetectionThread: wait (-1 ms) for captive portal detection event.

28 REPLIES 28

L4 Transporter

Hi @Udineverisch

 

T11260) 07/30/17 12:26:00:522 Debug(4418): prelogin to portal result is
(null)
(T11260) 07/30/17 12:26:00:522 Debug(4574): Failed to pre-login to the portal XXXXXXXX. Error 0

This indicates that the GP client couldn't even connect to the portal. Not much detail is present here. As a test, can you browse to the https page of the portal and login there? Also, share PanGPA.log for attempt from the GP client.

 

Regards,

Anurag

================================================================
ACE 7.0, 8.0, PCNSE 7

I already wrote that it is acceptable using browser or curl. I tried site at all and pre-login action. I did not find any problems with firewall or proxy. I completelly switched off windows firewall and I don't have antivirus installed. 
Any help to understand what problem could be very appreciated. I don't want to reinstall OS.
Thanks

PanGPA logs: 

= Windows 10 Pro
(T10748) 07/31/17 07:53:36:701 Debug( 358): COSVersion::OSProductName - fetch OS productName successful = Windows 10 Pro
(T10748) 07/31/17 07:53:36:701 Debug( 125): Skip calling GetProductInfo for Windows 10
(T12224) 07/31/17 07:53:36:756 Debug(2501): gbCheckInsertSmardCard is false, quit the enum loop
(T13576) 07/31/17 07:53:37:030 Debug(2475): enum result is 0000000000000000
(T13576) 07/31/17 07:53:37:030 Debug(2501): gbCheckInsertSmardCard is false, quit the enum loop
(T10748) 07/31/17 07:54:42:576 Debug( 73): CTranslate: dwSidLen is 24
(T10748) 07/31/17 07:54:42:614 Debug(3703): CPanClient::GetSavedPasswdAttribute - cannot resolve binarry item.
(T10892) 07/31/17 07:54:42:614 Debug( 517): Command = <request><type>user_credential</type><user>slogvine</user><passwd>***********</passwd><pid>10744</pid><restart>true</restart><portal>XXXXXXXX</portal><checkupdate>no</checkupdate><allow-cached-portal>no</allow-cached-portal><remember-me>yes</remember-me><manual-select-gateway-ip></manual-select-gateway-ip><portal-certificate-verification>yes</portal-certificate-verification><win-user>Lenovo-PC</win-user><pre-logon-then-on-demand>no</pre-logon-then-on-demand><user-profile-type>0</user-profile-type><saved-user></saved-user><saved-passwd></saved-passwd><portal-2fa>no</portal-2fa></request>
(T10748) 07/31/17 07:54:42:614 Debug( 435): CPanGASetting:OnBnClickedSave - resend credentials
(T10748) 07/31/17 07:54:42:614 Debug( 358): COSVersion::OSProductName - fetch OS productName successful = Windows 10 Pro
(T10748) 07/31/17 07:54:42:614 Debug( 358): COSVersion::OSProductName - fetch OS productName successful = Windows 10 Pro
(T10748) 07/31/17 07:54:42:614 Debug( 125): Skip calling GetProductInfo for Windows 10
(T10748) 07/31/17 07:54:42:744 Debug( 959): status message received from the service:
<?xml version="1.0" encoding="UTF-8"?>
<response>
<type>status</type>
<status>Disconnected</status>
<protocol/>
<portal-config-version>0</portal-config-version>
<error/>
<product-version>3.1.4-7</product-version>
<product-code>&quot;{6AC613AB-3F53-424B-BED2-570C7869F30F}&quot;</product-code>
<portal-status>Invalid portal</portal-status>
<user-name>slogvine</user-name>
<state>Retrieving configuration...</state>
<check-version>no</check-version>
<mdm-is-enabled>no</mdm-is-enabled>
</response>

(T10748) 07/31/17 07:54:42:744 Debug( 519): pManualGateways->RemoveAll()
(T10748) 07/31/17 07:54:42:791 Debug( 358): COSVersion::OSProductName - fetch OS productName successful = Windows 10 Pro
(T10748) 07/31/17 07:54:42:791 Debug( 358): COSVersion::OSProductName - fetch OS productName successful = Windows 10 Pro
(T10748) 07/31/17 07:54:42:791 Debug( 125): Skip calling GetProductInfo for Windows 10
(T9604) 07/31/17 07:54:42:791 Debug(3374): OID is (null)
(T9604) 07/31/17 07:54:42:791 Debug( 407): not force 1.2
(T9604) 07/31/17 07:54:42:791 Debug( 440): REUSE, set context=000002D6B7CD91F0
(T9604) 07/31/17 07:54:42:791 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_HANDLE_CREATED, this=000002D6B7CD91F0)
(T9604) 07/31/17 07:54:42:791 Debug( 479): REUSE, new session 000002D6B7D52D50, m_server=XXXXXXXX, port=443
(T9604) 07/31/17 07:54:42:791 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_HANDLE_CREATED, this=000002D6B7CD91F0)
(T9604) 07/31/17 07:54:42:791 Debug( 622): setReceiveTimeOut, set time out to 30000 ms
(T9604) 07/31/17 07:54:42:791 Debug( 669): setConnectTimeOut, set time out to 30000 ms
(T9604) 07/31/17 07:54:42:791 Debug( 652): kerberos, set HTTP_OPTION_AUTOLOGON_POLICY success
(T9604) 07/31/17 07:54:42:791 Info (3472): winhttpObj->SendRequest, first try
(T9604) 07/31/17 07:54:42:791 Info (1365): winhttpObj, SendRequest, bIngoreClientCert=0
(T9604) 07/31/17 07:54:42:791 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_RESOLVING_NAME, this=000002D6B7CD91F0)
(T12220) 07/31/17 07:54:42:791 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_NAME_RESOLVED, this=000002D6B7CD91F0)
(T12220) 07/31/17 07:54:42:791 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_CONNECTING_TO_SERVER, this=000002D6B7CD91F0)
(T9604) 07/31/17 07:54:42:907 Debug(3848): send alive message now 3
(T10748) 07/31/17 07:54:42:907 Debug( 517): Command = <request><type>pan_msg_ping</type><result>3</result></request>
(T12220) 07/31/17 07:54:43:544 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_CONNECTED_TO_SERVER, this=000002D6B7CD91F0)
(T5000) 07/31/17 07:54:44:061 Debug(2475): enum result is 0000000000000000
(T12220) 07/31/17 07:54:44:472 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_SECURE_FAILURE, this=000002D6B7CD91F0)
(T12220) 07/31/17 07:54:44:472 Info (2536): winhttpObj, dwCertError is:
(T12220) 07/31/17 07:54:44:472 Info (2542): WINHTTP_CALLBACK_STATUS_FLAG_SECURITY_CHANNEL_ERROR
(T12220) 07/31/17 07:54:44:472 Debug(2549): do not force 1.2 now
(T12220) 07/31/17 07:54:44:472 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_REQUEST_ERROR, this=000002D6B7CD91F0)
(T12220) 07/31/17 07:54:44:472 Debug(2604): WINHTTP_CALLBACK_STATUS_REQUEST_ERROR, error=12175, result=5, dwCertificateError=-2147483648
(T12220) 07/31/17 07:54:44:472 Debug(3888): we get cert error, so remove previousCertificate
(T9604) 07/31/17 07:54:44:532 Info (1433): winhttpObj, get WINHTTP_CALLBACK_STATUS_REQUEST_ERROR
(T9604) 07/31/17 07:54:44:532 Info (1435): winhttpObj, ERROR_WINHTTP_SECURE_FAILURE set
(T9604) 07/31/17 07:54:44:532 Error(1460): error = ERROR_WINHTTP_SECURE_FAILURE
(T9604) 07/31/17 07:54:44:532 Info ( 856): Server cert query failed with error 12019, ERROR_WINHTTP_INCORRECT_HANDLE_STATE
(T9604) 07/31/17 07:54:44:532 Info (1009): Server cert query failed with error 12019
(T9604) 07/31/17 07:54:44:532 Debug(3502): do not enforce 1.2, retry it now
(T9604) 07/31/17 07:54:44:532 Info (1365): winhttpObj, SendRequest, bIngoreClientCert=0
(T9604) 07/31/17 07:54:44:532 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_RESOLVING_NAME, this=000002D6B7CD91F0)
(T9604) 07/31/17 07:54:44:532 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_NAME_RESOLVED, this=000002D6B7CD91F0)
(T9604) 07/31/17 07:54:44:532 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_CONNECTING_TO_SERVER, this=000002D6B7CD91F0)
(T5000) 07/31/17 07:54:44:579 Debug(2501): gbCheckInsertSmardCard is false, quit the enum loop
(T12744) 07/31/17 07:54:44:632 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_CONNECTED_TO_SERVER, this=000002D6B7CD91F0)
(T9604) 07/31/17 07:54:44:648 Debug(3848): send alive message now 3
(T10748) 07/31/17 07:54:44:648 Debug( 517): Command = <request><type>pan_msg_ping</type><result>3</result></request>
(T12744) 07/31/17 07:54:44:748 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_SECURE_FAILURE, this=000002D6B7CD91F0)
(T12744) 07/31/17 07:54:44:748 Info (2536): winhttpObj, dwCertError is:
(T12744) 07/31/17 07:54:44:748 Info (2542): WINHTTP_CALLBACK_STATUS_FLAG_SECURITY_CHANNEL_ERROR
(T12744) 07/31/17 07:54:44:748 Debug(2549): do not force 1.2 now
(T12744) 07/31/17 07:54:44:748 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_REQUEST_ERROR, this=000002D6B7CD91F0)
(T12744) 07/31/17 07:54:44:748 Debug(2604): WINHTTP_CALLBACK_STATUS_REQUEST_ERROR, error=12175, result=5, dwCertificateError=-2147483648
(T12744) 07/31/17 07:54:44:748 Debug(3888): we get cert error, so remove previousCertificate
(T9604) 07/31/17 07:54:44:763 Info (1433): winhttpObj, get WINHTTP_CALLBACK_STATUS_REQUEST_ERROR
(T9604) 07/31/17 07:54:44:763 Info (1435): winhttpObj, ERROR_WINHTTP_SECURE_FAILURE set
(T9604) 07/31/17 07:54:44:763 Error(1460): error = ERROR_WINHTTP_SECURE_FAILURE
(T9604) 07/31/17 07:54:44:763 Info ( 856): Server cert query failed with error 12019, ERROR_WINHTTP_INCORRECT_HANDLE_STATE
(T9604) 07/31/17 07:54:44:763 Info (1009): Server cert query failed with error 12019
(T9604) 07/31/17 07:54:44:763 Error(3650): winhttpObj, error! ipaddress XXXXXXXX
bRetryWithoutCert is 0, bClientCertNeeded=0
(T9604) 07/31/17 07:54:44:763 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_HANDLE_CLOSING, this=000002D6B7CD91F0)
(T9604) 07/31/17 07:54:44:763 Debug(2622): handle b43f7250 closed
(T9604) 07/31/17 07:54:44:763 Debug(2626): REUSE, request closed
(T9604) 07/31/17 07:54:44:763 Info ( 575): wait for closing callback success!
(T10748) 07/31/17 07:54:44:763 Debug( 517): Command = <request><type>https_request</type><result>NULL</result></request>
(T10748) 07/31/17 07:54:44:763 Debug( 959): status message received from the service:
<?xml version="1.0" encoding="UTF-8"?>
<response>
<type>status</type>
<status>Disconnected</status>
<protocol/>
<portal-config-version>0</portal-config-version>
<error/>
<product-version>3.1.4-7</product-version>
<product-code>&quot;{6AC613AB-3F53-424B-BED2-570C7869F30F}&quot;</product-code>
<portal-status>Invalid portal</portal-status>
<user-name>slogvine</user-name>
<state>Disconnected</state>
<check-version>no</check-version>
<mdm-is-enabled>no</mdm-is-enabled>
</response>

(T10748) 07/31/17 07:54:44:763 Debug( 519): pManualGateways->RemoveAll()
(T10748) 07/31/17 07:54:44:763 Debug(1145): HandlePortal - portal messsage with Invalid portal status received. m_nAuthTries = 1
(T10748) 07/31/17 07:54:44:763 Debug( 961): message type from the service = portal
(T10748) 07/31/17 07:54:44:763 Debug( 963): received message details:
<?xml version="1.0" encoding="UTF-8"?>
<response>
<type>portal</type>
<status>Disconnected</status>
<protocol/>
<portal-config-version>0</portal-config-version>
<error/>
<product-version>3.1.4-7</product-version>
<product-code>&quot;{6AC613AB-3F53-424B-BED2-570C7869F30F}&quot;</product-code>
<portal-status>Invalid portal</portal-status>
<user-name>slogvine</user-name>
<state>Disconnected</state>
<check-version>no</check-version>
<mdm-is-enabled>no</mdm-is-enabled>
</response>

(T10748) 07/31/17 07:54:44:763 Debug( 519): pManualGateways->RemoveAll()
(T10748) 07/31/17 07:54:44:763 Debug( 358): COSVersion::OSProductName - fetch OS productName successful = Windows 10 Pro
(T10748) 07/31/17 07:54:44:763 Debug( 358): COSVersion::OSProductName - fetch OS productName successful = Windows 10 Pro
(T10748) 07/31/17 07:54:44:763 Debug( 125): Skip calling GetProductInfo for Windows 10
(T10748) 07/31/17 07:54:44:813 Debug( 358): COSVersion::OSProductName - fetch OS productName successful = Windows 10 Pro
(T10748) 07/31/17 07:54:44:813 Debug( 358): COSVersion::OSProductName - fetch OS productName successful = Windows 10 Pro
(T10748) 07/31/17 07:54:44:813 Debug( 125): Skip calling GetProductInfo for Windows 10
(T13972) 07/31/17 07:54:45:149 Debug(2475): enum result is 0000000000000000
(T13972) 07/31/17 07:54:45:149 Debug(2501): gbCheckInsertSmardCard is false, quit the enum loop

Is the portal and gateway on the same firewall and IP address? 

Is there a problem with the certificates on your portal/gateway (revoked, expired, missing root cert on your computer, 

...)?

(T12744) 07/31/17 07:54:44:748 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_SECURE_FAILURE, this=000002D6B7CD91F0)
(T12744) 07/31/17 07:54:44:748 Info (2536): winhttpObj, dwCertError is:
(T12744) 07/31/17 07:54:44:748 Info (2542): WINHTTP_CALLBACK_STATUS_FLAG_SECURITY_CHANNEL_ERROR
(T12744) 07/31/17 07:54:44:748 Debug(2549): do not force 1.2 now
(T12744) 07/31/17 07:54:44:748 Info (2523): PanWinhttpCallback(dwInternetStatus=WINHTTP_CALLBACK_STATUS_REQUEST_ERROR, this=000002D6B7CD91F0)

Something's not right with the certificates used. Make sure the certificate used in the portal's SSL-TLS profile is not using RSASSA-PSS as the algorithm. That is not supported.

 

Regards,
Anurag

================================================================
ACE 7.0, 8.0, PCNSE 7
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!