GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

Resolved! New to GlobalProtect

Hey guys - Currently in a trial period with the VM-300 series and using GlobalProtect. When going through the initial setup with a tech, he mentioned that if we wanted to keep all external traffic off the VPN we could do so. This would mean that anything that would need internal traffic would use the VPN and anything the user is trying to acc...

GlobalProtect causing intermittent vanishing CMD Windows on Win10

I've looked for the source of this for months and I believe I've narrowed it down to GlobalProtect. Upon rebooting, only once a connection to PanGP has been established, will a CMD window appear on my main screen, vanishing almost immediately afterwards. It happens about once a day, usually when I am not connected to the VPN.Of course, given the...

Global protect split tunnel

Hi guys, How do i know if traffic is going through my local network as i enabled split tunnel and excluded *.youtube.com and *.netflix.com.I attached the cli output of the session also. Thanks

Global Protect won't connect using my Ethernet cable

Hi, My employer has recently changed their VPN and are now using Global Protect. I was given the installation software to install Global Protect version 5.2.2-4 onto my home PC (Windows 10). Windows specificationsEdition: Windows 10 ProVersion: 20H2OS Build: 19042.630 I installed the software and once I added my company's VPN port address to the...

adrian109 by L1 Bithead
  • 29873 Views
  • 13 replies
  • 0 Likes

Resolved! starting the GP linux client blocks inbound communication

Hello. I have a server that I use as a "bridge" that I use to keep a persistent VPN connection active to a restricted network, to extract report data. We were previously using the openconnect client for the bridge, but recently, the secure network changed to use GlobalProtect. When I tried to replace openclient with the linux GP client, somet...

chrisr by L0 Member
  • 3984 Views
  • 2 replies
  • 0 Likes

Can i do Multiple user VPN and different policy to access Via VPN by global protect ?

Dear AllI have Palo alto FW use function VPN .So my customer would like to do policy for VPNlike User A VPN to Palo Fw just access to zone internalUser B VPN to Palo FW can access to zone DMZ onlyUser C VPN to Palo FW can access to All zone this time the all VPN User can access to all zone in FW . my customer need to change it thank you

server certificate is invalid on chromebooks and phones

So for about the last month (just before xmas) we seem to be having certificate errors for our wildcard cert. Its a wildcard purchased from instantSSL. (sectigo) when using it with global protect client. It works fine on windows machines. Just seems to be chromebooks and phones. When you go to connect it prints the error "Gateway XXX: The server...

split DNS

Hello We need to test MS-Teams. hence I did a few tests with split DNS. The published manuals (e.g. https://live.paloaltonetworks.com/t5/general-articles/globalprotect-optimizing-office-365-traffic/ta-p/319669) are fine, as long as the VPN gateway is "near". In our case the user is located in South Africa, and the VPN gateway is in northern Euro...

GP connect before logon .

Has anyone configured connect before logon .Would need steps to configure this .I have a few queries as well .Do we need pre-logon user agent config for this or no ? The registry values found in this document are not exact to what i see on windows .Any help is appreciated . I have added this registeryPanGPS.exe -registerplap Rest options are not...

GlobalProtect with Azure MFA setup

Has anyone had any luck setting up MFA on the Palo Alto with Global Protect with Microsoft Azure MFA (Hybrid) I tried opening a ticket with the support team and they said they had no clue how to setup but could support it if broken and told me a "Sales" Engineer would reach out to me sometime that day. That was 4 business days ago. I have been ...

DNS logging with globalprotect

Hi, Wondered what people's experience/advise is on the following. We have palo alto VM series in azure which we are using globalprotect on. At the moment I am NATing the globalprotect VLAN to the IP address of the firewall, but in doing this I am finding that the DNS log traffic from our DCs is limiting in that all of the requests are appearing ...

Internal Host Detection Issue

Hi there, I have a question on the correct use of internal host detection and internal/external gateway config. The behaviour I want to achieve is when a client is internal to the LAN GlobalProtect will detect this and not bring up the tunnel and pass all network traffic transparently out the LAN connection, as if it wasn’t there. When external,...

Help Locking Down Global Protect Access

I'm switching our user over to the Always On VPN via the Portal App Config that auto connects the vpn and requires it for network access. The issue is I want to prevent my users from connecting via personal PC. I've set the Client Authentication to require User Credentials and Certificate. When I delete the certificate that I set up I get the w...

Walt by L1 Bithead
  • 2556 Views
  • 1 replies
  • 0 Likes

Global Protect client showing Gateway name instead of Best Available

In my companies environment we have about 12 Gateways. Most of our machines have GP 5.0.8-4 installed. With no preferred gateway selected, I've seen a few cases where the GP client shows the gateway it's connected to instead of Best Available. From what I've seen the norm seems to show Best Available and you have to go into the GP client setting...

popeja by L2 Linker
  • 5116 Views
  • 3 replies
  • 0 Likes

Remote Access through IPSEC?

Hello,I am looking at setting up a remote access VPN on a PA220. The idea, however, is that the user would have concurrent access to a server at the PA220's site as well as servers at another site, that the PA220 has a IPSEC VPN with.In case this isn't clear.... the WAN interface of the PA220 would service both the remote access vpn and the ipse...

  • 1685 Posts
  • 68 Subscriptions
Top Solution Authors
Labels