GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

When GlobalProtect exceeds Login Lifetime cannot reset/access the application

When GlobalProtect times out and disconnects user from VPN after exceeding the end of the "Login Lifetime" setting. (15 hours in my case) You cannot run the application to restart a new session. You have to go to the Task Manager, kill the GlobalProtect task and then you can go and run GlobalProtect to login and start a new session.

Auto connect based on interesting traffic

Hello, Currently we have deployed GP in On Demand mode where users have to manually open GP client and connect to VPN. I'm looking for possibility of auto connecting to GP VPN when interesting traffic is detected without enabling Always ON VPN. For example, an employee is working without connecting to GP VPN. However, if they click on a link f...

PAFWNoob by L1 Bithead
  • 1655 Views
  • 1 replies
  • 0 Likes

Resolved! SPlit tunneling issue on GlobalProtect

Hello Community, We would like to configure split tunneling on Global Protect settings for Webex traffic. We have the GlobalProtect Gateway License active and enabled. We have already configured a list of Subnet network excluded in GW >> Agent >> Clients settings >> Split Tunnel >> Access route >> Exclude H...

Multiple Logins on internal network (macOS Platform SSO)

Hi guys, we`ve just extended our platform sso for macOS compareable to bestpractise from microsoft (or even linked here in the forum to set up psso with intune) The goal was to have a more seamlessly user experience and on the other hand let Entra receive the device state from apps like GlobalProtect so that we can enable Compliance based acce...

sebamedo by L0 Member
  • 1343 Views
  • 2 replies
  • 0 Likes

Resolved! Global Protect VPN only on domain joined devices

Hello we are using SCM for our NGFWs and try to connect via Global Protect. Using Radius Auth we can login with any client/os we those, but we want only domain joined device (w11,ios,ipad) to be connected via VPN. Where we must configure SCM to look at M365 for company devices? Kind regards

R.Kniger by L1 Bithead
  • 2192 Views
  • 4 replies
  • 0 Likes

GlobalProtect Design Question

We have two on-premises GlobalProtect Portals on two different HA systems in different locations in the state, we would like a simple process to handle when/if a site goes down for the end-users. Both portals are named different: East-Portal West-Portal Is it possible to have an AWS Application Load Balancer send traffic to the portals? Has ...

Wireless not connecting prior to login - Windows 11

Hi All, Thanks for taking the time to read this post. About 3 weeks ago, we started experiencing issues on Windows 11 where the wireless NIC does not connect prior to login. Users have to authenticate in order for the wireless to connect to the last known good SSID. Once authenticated and connected, wireless stays connected until reboot. ...

GlobalProtect Azure Saml user/group attribute Mapping

Hi Support, I am trying to configure Globalprotect with Azure Saml integration. The authentication part is configured following the link ( https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g0000008U48CAE). Additionally usergroup in Azure are configured with the attribute "group" and is mapped to each usergroup name. Sam...

Resolved! Global Protect is blocking my internet

Help! I recently relocated to another state for a few months. My company laptop requires Global Protect VPN. It's always worked fine on any network I've used as well as my wifi hotspot or tethered to my phone. But, with the new Nextlink service, I can log into global protect and use all company resources normally. Teams, Outlook etc all work gre...

GlobalProtect: How to combine both Machine Certificate and User Certificate Check

Hello everyone, For the remote users in order to connect and authenticate themselves on GlobalProtect we want to enable both Machine Certificate and User certificate Check (not User Credentials) on the PAN GW.Is that possible, has anyone any similar use case? Our current PAN FW is PA-3220 with SW 11.1.6-h3 and GlobalProtect version 6.28.8-223. T...

Migrating existing Explict proxy to Palo alto Transparent Proxy

HI , We want to migrate existing legacy Explicit proxy to palo alto in transparent proxy mode , we have palo alto with panorama , all the branches using legacy explicit proxy , Legacy Explicit proxy device in HQ and all the branch traffic is redirecting to explicit proxy. we want to remove explicit proxy . Is it possible using Global Protect we ...

  • 1700 Posts
  • 68 Subscriptions
Top Solution Authors
Labels