GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

Network Connection Unreachable/Portal Unresponsive

Has anyone seen this error "The network connection is unreachable or the portal is unresponsive. Check the network connection and reconnect" while on their company internal network? I recently got this while at one of our locations and did the following: 1) rebooted 2) turned wifi off and on 3) connect to ethernet And nothing has worked. I wen...

Resolved! Global Protect 6.2.7 and Advisory

Hello Team, Regarding the Security advisory in the link https://securityadvisories.paloaltonetworks.com/CVE-2025-0120 its talking about Global Protect 6.2.7-1077, but so far there is not 1077 update patch but only 1047,even when I check the Global Protect versions available fro mthe firewall. Does that means that 6.2.7-1077 is ty...

Resolved! SSL vpn VPN and Fortinet stpping support

Hello Team, Regarding the latest new received, We got informed that Fortinet has stopped supporting SSL VPN tunnel mode starting FortiOS 7.6.3 and they strongly recommends customers to migrate to IPsec VPN. well, my VPN remote access in my company based on Paloalto SSL VPN, and my question is that is there any plans intentions i...

Need to change Gp portal Via SCCM

In my environment, the GP client is deployed with the portal name Test1, and I want to change it to Test2. I am able to do this using Intune through the remediation method via a script, but the same script package is not working with SCCM. Please suggest a method to deploy it successfully so that the portal name changes. Also, if there are any s...

Resolved! GlobalProtect MFA With Radius and Email

Has anyone setup a free MFA with GlobalProtect? I was thinking something along the lines of using a FreeRadius server to generate an email code to the user. It has to be doable... FreeRadius, connected to LDAP/AD, pulls the email address and sends a code, which the user appends to their password on the GlobalProtect Client. Doable? Or wishfu...

wocomike by L1 Bithead
  • 8331 Views
  • 6 replies
  • 0 Likes

Resolved! Failed to create tunnel with gateway

We have some Windows 11 clients in our environment, which cannot create a tunnel to the gateway. The Global Protect Version is 6.2.7-1047. In the PanGPS.log, I see the following errors: connect failed with 5 seconds timeout. Failed to connect to captive.apple.com on 80 with return value -1 and socket error 0(0) TSLog: Set error_stage = Tunnel...

Global Protect and AXON fleet 3 Dashboard

Good afternoon, I am having trouble with connecting to this fleet 3 dashboard, with GP. It appears to be a a DNS issue, because it will find the local network when GP is disabled. The virtual adapter takes over, and uses our DNS server, so it is not on a local network at that point. I have tried changing the DNS addresses, in the adpater an...

Resolved! GlobalProtect Installation stalls on MacOS 15.4 Sequoia

I am attempting to install GlobalProtect on my MacBook Pro (M1 chip).I am currently using macOS 15.4After downloading the GlobalProtect client, launching the installer and clicking through the default steps, the installer stalls on the "Installation" phase.The message "Preparing for installation..." remains in the status window indefinitely.Acco...

global protect vpn client -> microsoft edge -> pick an account - multiple microsoft-accounts and member of different m365 tenants

hi,working with multiple microsoft-accounts and member of different m365 tenants you have to log-off from your browser sessions.this because global protect opens a browser page without the possibility to select your microsoft account like "pick an account" with edge and you are logging-in with single sign on and with your account.it is possible ...

Current GlobalProtect scanning campaign

We've been tracking the scanning campaign that made the news recently concerning scanning and dictionary attacks against GlobalProtect portals. We've been able to put together a parser to pull and deduplicate IP addresses from our logs for those attempts. Anyone doing something similar? Palo Alto, would there be interest in ingesting these som...

Global Protect Embargo Rules

Hi! Been trying the Embargo Rule for Geo Location restrictions in for Global Protect in Prisma Cloud. This works prefect to exclude the countries you do not want logins from. What I would like to know is if someone been able to use similar rules to add EDLs or Palo Alto Built in EDLs in the same type of rule. I cannot find any information on...

Mismatched HIP Profiles

Seeing a strange issue where the wrong HIP Profile is being used to check HIP compliance. We have two GP gateways, one for staff and one for contractors. To match that we have two HIP Profiles doing different checks for each gateway. The contractor one works fine but the staff one is performing HIP checks on the contractor HIP profile, even ...

SRowe5_0-1746045551835.png
SRowe5_1-1746046294286.png
SRowe5_2-1746046440979.png
SRowe5 by L1 Bithead
  • 1245 Views
  • 2 replies
  • 0 Likes

Initial configuration of GlobalProtect

Very new (this is my first time playing with it) and having some issues with getting GlobalProtect up and running in a lab environment. Topology is pretty simple: ethernet1/1 uses DHCP connecting directly to my upstream Internet carrier - zone: outside. ethernet1/2 uses a /30 connecting to my core switch - zone: inside. tunnel.1 is my GP-VPN tu...

  • 2062 Posts
  • 68 Subscriptions
Top Solution Authors
Top Liked Authors
Labels