- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
01-09-2025 01:22 PM
Looking for some assistance as I am building out a remote vpn using Connect before logon for my Palo Alto.
Does anyone know a simple, easy way to set this up with LDAP. Some article are outdated and some are inconsistent in their approach verse other documents.
Appreciate the help.
01-11-2025 08:30 PM
Hi @ITSMC24 ,
Please refer the below kb related to GP configuration with pre-logon.
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClEYCA0
Best Regards,
Mohammad Talib
01-13-2025 07:23 AM
Hi Mohammad,
Thanks for the link. So are Connect Before Logon and Pre-Logon the same thing?
01-13-2025 08:41 AM
Hi Mohammad,
This has been very helpful. Last question, when you say the same connect, do you mean I would follow the same "instructions" in setting up the Palo Alto for the Pre-logon as I would for the "Connect before Logon"? In other words, I could follow a video instruction for the Pre-logon and then make my windows registry modification for the connect before logon and be done?
01-13-2025 07:57 PM
CBL provides a way to connect to GlobalProtect VPN using user credentials even before the user logs into the Windows machine.
Connect Before Logon (CBL) is different from Pre-logon connect method. Pre-logon relies only on certificate authentication whereas CBL can be used with any authentication type like SAML, Username/Password etc.
CBL is user-triggered, while pre-logon is automatic. The user doesn't need to connect via CBL but can use GP after logging in. Pre-logon starts automatically.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!