GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

Resolved! Force user credentials at every login Azure AD SAML SSO

I have had GlobalProtect working for years with RADIUS based authentication and MFA. We are now moving to SAML based SSO with Azure AD. I have everything working, but, our environment requires that we provide login credentials every time we login to the VPN. So instead of using the credentials of the user that is logged into the machine by def...

Global Protect IPv6

Greetings folks, I have GP working perfectly with IPv4, when I'm on any network that is v4 only I can VPN into my GP and it's fine. My cellular carrier is Telstra and they assign a CGNAT v4 address and a public v6 address. When I hit my GP portal while hotspotting I get a 404 error and when I look through the logs I can see an error "gateway...

S.Hille by L0 Member
  • 1565 Views
  • 1 replies
  • 0 Likes

Windows 11 Global Protect App not booting at login screen for Prelogon Solution

Machines affected at the time of writing are running the following: OS Version: Windows 11 Build # 10.0.22631.5624Global Protect Client Version: 6.2.7-1047 We are introducing our environment to our PA Prelogon Solution which is using a certificate to connect to the network and then LDAP credentials at the login screen. Which allows new users t...

Share office space + Global Protect

Hi all, has anyone had any issues with GP clients in share office areas? We have recently added a few remote users that work out of a shared space. Very weird, GP connects fine, I can ping internal machines and resolve names no problems. RDP works. We have a few small internal web servers hosting some browser based apps. Unable to connect to htt...

Dekkar by L1 Bithead
  • 2162 Views
  • 2 replies
  • 0 Likes

Global protect multiple authentication methods on same portal

We currently use GlobalProtect with LDAP + machine cert authentication on our production firewalls (managed by Strata Cloud Manager). We’ve tested SAML auth via Azure AD on a non-production firewall using Cloud Identity Manager and it works fine. Now we’d like to test it on production without forcing it as the default profile (to avoid impacting...

ParisVcr by L0 Member
  • 833 Views
  • 1 replies
  • 0 Likes

No internet access after connecting to Global Protect client

First, I'm just a simple user of a Global Protect client since this is required by our company. I'm not proficient with technical terms and stuff. Issue: I successfully connected to the gateway however, I have no internet connection. No sites can be accessed. Troubleshooting I have done so far:1. Reinstalling the client and restarting my device....

GP Split Tunnel in Windows 11 Issue

Hardware: Lenovo x1 Gen12GP Version: 6.2.7I am using windows 11 24h2, currently when I connected PaloAlto GlobalProtect and access the URL by split tunnel. The connectivity will get reset.Example, Accessing the teams.microsoft.com by edge or chrome, it will show Connection Reset. If I disconnect the GlobalProtect client, it will resume normal.Is...

Global Protect Authentication Questions

Hi, I'm going to setup Global Protect in our environment but have some questions before I configure it. 1. Can both a client certificate & SAML be used in conjunction for authentication? If not, would an internal RADIUS server make the most sense for secondary authentication? I want to use the client certificate to control device-ba...

Configure GlobalProtect to Facilitate Multi-Factor Authentication Notifications

I am trying to upgrade the GP username/password login to an MFA login. The username/password login is now working correctly. I am using a local database to authenticate users. I followed the instructions https://docs.paloaltonetworks.com/globalprotect/9-1/globalprotect-admin/authentication/configure-globalprotect-to-facilitate-multi-factor-authe...

Situation with PA-5250s and Global Protect connections

Specific situation we're dealing with, looking to see if anybody else has and has any input. Over the past few years we have worked a Global Protect build and deployment in our org. We opted to use PA-5250s solely on the basis that they documentation claims that model supports 30k GlobalProtect connections (IPsec AND SSL specifically).In our con...

  • 2069 Posts
  • 68 Subscriptions
Top Solution Authors
Labels