Network connection unreachable on MAC OS newer version 15.3.2 o higher

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Network connection unreachable on MAC OS newer version 15.3.2 o higher

L3 Networker

Hi All,

 

PAN-OS version: 11.1.10-h1

GlobalProtect Agent version: 6.3.3-711

 

We experiencing on the all MAC OS with The connection cannot be established and the following error message is displayed:
“The network connection is unreachable or the portal is unresponsive. Check the network connection and reconnect.”

 

We able to resolve for the older MAC OS version by installing the CA certificate on the client machine 

 

But for the newer macOS versions (higher than 15.3.2) after installing the CA certificate, the client is still unable to establish the VPN connection.

 

any suggestion how to fix this?

 

Thank you

 

2 REPLIES 2

L4 Transporter

This error message is generic and does not explain the real issue. Are you able to log in successfully to the portal with the same authentication, certificate, and TLS profile? If its related to CA certificate its advisable to take pcap and look for the error message.

Cyber Elite

@Fariq_Zaidi,

All of Apple devices have become harder to utilize any self-signed certificates for communication, and the fact that you previously needed to import the certificate points towards you using self-signed certs to secure the portal correct? I would highly recommend using a publicly signed certificate for GlobalProtect so you don't have to deal with this. 

 

The logs that you really need to look at are the PanGPS.log file of the impacted client to determine what the actual issue is. I'm assuming that you're going to see a certificate validation error on the client and that there's an issue with how you've structured that self-signed certificate with the restrictions that Apple keeps adding. 

  • 2153 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!