GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

GP vs ZCC

Hi Team, If we have installed GP with No split tunnel and the Zscaler Client connector with tunnel2.0 which one will take precedence. GlobalProtect

Edsnow by L3 Networker
  • 1555 Views
  • 1 replies
  • 0 Likes

GlobalProtect blocking access internet using browser

My company uses GlobalProtect VPN and I have a problem that needs help connecting Globalprotect on MacOS.On the company device, it requires a GlobalProtect VPN connection to access company systems, allowed applications. But on MacOS, every time the employee takes the device out of the office and uses a wifi network other than internal wifi, all ...

binn698 by L1 Bithead
  • 3281 Views
  • 4 replies
  • 0 Likes

Single alert produces Session denied multiple DC servers LDAP 389 and why ?

Hi,Login Successful After Scan Attempt I have a question regarding when user connecting VPN --which means session denied for multiple DC servers--Via global protect VPN. SourceZone:GP-cType -TRAFFICDenied Port-389 which means LDAP.Session End Reason-policy-deny@everyoneonce the user connected VPN with successful authentication Why scanning happe...

Resolved! DNS traffic outside of GlobalProtect tunnel

Hello, We use Global Protect to connect our employees via VPN to our site. We think we have configured it that way, that the complete traffic is tunneled to our site after establishing the Global Portect connection. Now we see that unencrypted DNS traffic is visible outside the tunnel. The target adress of that DNS traffic is the IP of our G...

MikeHinz by L1 Bithead
  • 2409 Views
  • 3 replies
  • 0 Likes

GlobalProtect VPN not working on T-Mobile Home Internet

Over the past couple of weeks we have been getting more and more support tickets stating that our users can't connect to GlobalProtect VPN. The one common thread they have is they all have T-Mobile Home Internet. Has anyone else noticed this? Is there a fix or workaround? Thank you.

jambulo by L4 Transporter
  • 56511 Views
  • 7 replies
  • 0 Likes

GlobalProtect SAML Login Loop

Hi All, I am using CIE and EntraID with SAML to allow logins to GP. This is working very well but I am having an issue. I had a user whose name changed. When logging into GP, it just continuously asks her to log in. Inside of the GP Portal, I get the error 'username from cas sso response is different from the input' and can see where it is tryin...

HIP check Patch Management

Hello, I am trying to setup a HIP Profile for contractors accessing our network over Global Protect.This HIP Profile is checking if version of Windows is supported(allowing only 8.1 and 10), then checking if Anti-Malware and Firewall is enabled and as a last check I want to check if Windows patches are up to date.Checks for OS, Anti-Malware and ...

hip check.PNG
hip object.PNG
Henley by L1 Bithead
  • 4533 Views
  • 3 replies
  • 0 Likes

HIP Global Protect

I want to create a security policy containing a HIP profile as follows: if the connecting machine has ALL category 3 updates installed, certain traffic will be released. I'm very confused about creating this in HIP object, as it is about MISSING PATCHES.

Device cannot access network resources or SSO

My company uses GlobalProtect and we access our net drives through the VPN and access our website using SSO. For some reason, a user cannot access them or log in to our portal when off-prem. Everything works perfectly fine when on-prem, of course, but we've tried everything we can think of. User's device is a Latitude 7420.No rules on home netwo...

Clientless/GP portal does not load in browser on 10.2.9-h1

We are facing an issue where the Clientless/GP Portal does not show the login page on the browser. When traffic reaches the external firewall, we see the connection being allowed. We are using the Go Daddy cert and have ensured the cert chain is complete on the firewall. The strange part is it works if we use GP Client we can connect to GP Porta...

Resolved! MacOS Sequoia & Global Protect

Hey Palo Alto, EXPLAIN WHY... "Your device doesn't meet security requirements." Then possibly there's something I can do. OR LET ME TURN OFF seeing this EVERY TIME I LOGON TO VPN. PALO ALTO controls this security check, OR my company does... EITHER WAY... the software works... ...just LET ME TURN OFF THE POPUP!

GP_SecReqPopup.jpg
GP_About.jpg
vte888 by L1 Bithead
  • 4306 Views
  • 3 replies
  • 0 Likes

Could not verify the server certificate of the gateway. If the issue persists, contact your administrator

Hello, I've a case where some users can not connect to our GP gateway. Connection through the portal seems fine but then the client won't connect to the gateway. We manually reimported the self signed root certificate into the cert store of the client. Also, this issue only happens to users using a specific ISP. All other users using another...

  • 2062 Posts
  • 68 Subscriptions
Top Solution Authors
Top Liked Authors
Labels