(PA3000 series FW running 6.0.2) Getting users being blocked by the captive portal from a local service account running on their machine.. only way around it is to disable the service and/or account and then flush the user to ip mapping cache. Any way to eliminate this???? It has been added to the "ignore list" text file on the server running pan agents, however, its a local account so its not working.
I believe the exclude list for the subnet will do what you want here and ignore this user account.
Sorry I misunderstood.
This is the document for adding user accounts to the ignore list.
What do you mean with "blocked by captive portal"? The captive portal should only be shown if the user is unknown. If there is already a user mapping the captive portal rule should not match. Even local accounts should be possible to ignore. Is there a user mapping for the ip if the client is blocked?
In accordance with company policies, this website has been blocked.
If access to this site is required for Business Usage, then please submit a support request.
**it is being blocked by a local account that does not have or should not have Internet access**
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!