GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

Global Protect - frequent drops with SQL Server Management Studio....not with Windows VPN

Getting users complaining about frequent disconnects when the use SQL Server Management Studio over Global Protect....but when they are connected with the old school Windows PPTP VPN, it never drops. Not only that, they say it is faster.My GP policy is pretty open and not seeing any drops in the logs. Since it works with Windows VPN and gives me...

Assigning the same IP to a GP client based on it's MAC address

I'm trying to connect a client computer to my corporate network via global protect, and once I'm connected, I need to print to that computer through the Linux service called CUPS. In order to print to this computer, I need to know what it's IP address is. So, once I connect the client computer to the internet, download global protect, and connec...

Jamescy by L0 Member
  • 3966 Views
  • 2 replies
  • 0 Likes

GP with SAML to Azure not prompting MFA on phone

Hello Everyone, GP is fully configured but there is an issue with SAML authentication to Azure. The authentication part is fine but I am not getting prompted on my phone for MFA. In fact my Azure credentials need to be entered twice before the client connects. Any idea what could be going on? Thank in you in advance.

GP client keeps prompting for credentials even with save user cred selected in portal config.

Hello, So as the title says, but the catch is this is not consistent - one user we tested with GP client 5.2.7 and .10 and .4 and he logs in without the credentials prompt. But for others with 5.2.4 it keeps prompting for login after every time it disconnects.. This should be a good thing right, but oh well, their users are complaining so they w...

Not using AppID but GP connections are denying on apps for 10 minutes before allowing traffic to work properly

We are currently working on trying to get PA-3220s working properly and Global protect working but are running into an issue. Once a user connects, recently its starting to deny based on app ID, however in our VPN policy we have any specified. The thing is this is pretty random. In 5 to 10 minutes the VPN starts working normally and those deni...

palo-drops.jpg
palo-vpn-rules.jpg
palo-allows.jpg
ksauer507 by L3 Networker
  • 4709 Views
  • 4 replies
  • 0 Likes

Resolved! Compatibility Global Protect Client - 4.1.11 and Pan OS 9.1

Hi All, We are planning to upgrade our Pan OS from 8.1.21 to 9.1.x. Some of our Global Protect clients - still on very old version - which is 4.1.11. We are in process to upgrade them to latest 5.2.x. My query is - Once we upgrade our pan OS to 9.1 and if we miss out few clients on old version - will 9.1.x allow them to download and update t...

Resolved! You have X seconds remaining to log in and reconnect to GlobalProtect

Any idea how you can "log in" to global protect?When it switches from pre-logon to the user, it should pop the Microsoft AzureAD window to log in and saml auth to azure. But when you clickon this notification nothing happens. Same thing in v 5.2 and 6.0 of globalprotect. This does not always happen. Its intermittant across Windows 10 and 11.  

seconds-remaing-to-connect-to-gp.jpg
ksauer507 by L3 Networker
  • 3774 Views
  • 1 replies
  • 0 Likes

Resolved! GP IPsec tunnel always falling back to SSL

Hi All, A customer recently migrated for 2 x PA-3020 to 2 x PA-460 running PAN OS 10.1.1. Since migrating they are having some odd issues with Global Protect, 90% of the time GP is connecting as SSL, even though IPsec is enabled on the tunnel, and when occasionally it does connect as IPsec, after 5 mins or some times a couple of hours it will fa...

Ben-Price by L4 Transporter
  • 25931 Views
  • 13 replies
  • 0 Likes

Global Protect Transparent upgrade failing on a small number of clients

We have recently upgraded our Global Protect client from 5.2.9>5.2.10 via transparent upgrade. This was successful on most clients, however a small percentage of clients failed the upgrade process. The new version was downloaded to the client as expected, however this does not install and then the process proceeds the rip off the previous cli...

Rdashian by L0 Member
  • 2160 Views
  • 0 replies
  • 0 Likes

Using GlobalProtect on multi-user server to gain User-ID visibility - possible?

We've enjoyed using globalprotect in combination with palo alto firewall policies over the past few years to allow particular policies to only apply to particular users, who are of course identified by the user signing into the globalprotect client. We were wondering if we could expand on this capability. We don't need VPN capability, we just wa...

  • 2069 Posts
  • 68 Subscriptions
Top Solution Authors
Labels