GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

GP vs ZCC

Hi Team, If we have installed GP with No split tunnel and the Zscaler Client connector with tunnel2.0 which one will take precedence. GlobalProtect

Edsnow by L3 Networker
  • 1670 Views
  • 1 replies
  • 0 Likes

GlobalProtect blocking access internet using browser

My company uses GlobalProtect VPN and I have a problem that needs help connecting Globalprotect on MacOS.On the company device, it requires a GlobalProtect VPN connection to access company systems, allowed applications. But on MacOS, every time the employee takes the device out of the office and uses a wifi network other than internal wifi, all ...

binn698 by L1 Bithead
  • 3792 Views
  • 4 replies
  • 0 Likes

Single alert produces Session denied multiple DC servers LDAP 389 and why ?

Hi,Login Successful After Scan Attempt I have a question regarding when user connecting VPN --which means session denied for multiple DC servers--Via global protect VPN. SourceZone:GP-cType -TRAFFICDenied Port-389 which means LDAP.Session End Reason-policy-deny@everyoneonce the user connected VPN with successful authentication Why scanning happe...

Resolved! DNS traffic outside of GlobalProtect tunnel

Hello, We use Global Protect to connect our employees via VPN to our site. We think we have configured it that way, that the complete traffic is tunneled to our site after establishing the Global Portect connection. Now we see that unencrypted DNS traffic is visible outside the tunnel. The target adress of that DNS traffic is the IP of our G...

MikeHinz by L1 Bithead
  • 2632 Views
  • 3 replies
  • 0 Likes

GlobalProtect VPN not working on T-Mobile Home Internet

Over the past couple of weeks we have been getting more and more support tickets stating that our users can't connect to GlobalProtect VPN. The one common thread they have is they all have T-Mobile Home Internet. Has anyone else noticed this? Is there a fix or workaround? Thank you.

jambulo by L4 Transporter
  • 63775 Views
  • 7 replies
  • 0 Likes

GlobalProtect SAML Login Loop

Hi All, I am using CIE and EntraID with SAML to allow logins to GP. This is working very well but I am having an issue. I had a user whose name changed. When logging into GP, it just continuously asks her to log in. Inside of the GP Portal, I get the error 'username from cas sso response is different from the input' and can see where it is tryin...

HIP check Patch Management

Hello, I am trying to setup a HIP Profile for contractors accessing our network over Global Protect.This HIP Profile is checking if version of Windows is supported(allowing only 8.1 and 10), then checking if Anti-Malware and Firewall is enabled and as a last check I want to check if Windows patches are up to date.Checks for OS, Anti-Malware and ...

hip check.PNG
hip object.PNG
Henley by L1 Bithead
  • 5023 Views
  • 3 replies
  • 0 Likes

HIP Global Protect

I want to create a security policy containing a HIP profile as follows: if the connecting machine has ALL category 3 updates installed, certain traffic will be released. I'm very confused about creating this in HIP object, as it is about MISSING PATCHES.

Clientless/GP portal does not load in browser on 10.2.9-h1

We are facing an issue where the Clientless/GP Portal does not show the login page on the browser. When traffic reaches the external firewall, we see the connection being allowed. We are using the Go Daddy cert and have ensured the cert chain is complete on the firewall. The strange part is it works if we use GP Client we can connect to GP Porta...

Resolved! MacOS Sequoia & Global Protect

Hey Palo Alto, EXPLAIN WHY... "Your device doesn't meet security requirements." Then possibly there's something I can do. OR LET ME TURN OFF seeing this EVERY TIME I LOGON TO VPN. PALO ALTO controls this security check, OR my company does... EITHER WAY... the software works... ...just LET ME TURN OFF THE POPUP!

GP_SecReqPopup.jpg
GP_About.jpg
vte888 by L1 Bithead
  • 4753 Views
  • 3 replies
  • 0 Likes

Could not verify the server certificate of the gateway. If the issue persists, contact your administrator

Hello, I've a case where some users can not connect to our GP gateway. Connection through the portal seems fine but then the client won't connect to the gateway. We manually reimported the self signed root certificate into the cert store of the client. Also, this issue only happens to users using a specific ISP. All other users using another...

Costa Rica Global Protect users are automatically falling back to the Hong Kong gateway

Hello Team, We can see the user through STRATA logging services logs that user in Costa Rica regions are automatically connected to the Hong Kong gateway. Also, we got escalation from client that they have seen Hong Kong users are accessing the URL. The users are facing high latency issue if they automatically connect to Hong Kong gateway. We...

N.Madiye by L0 Member
  • 835 Views
  • 1 replies
  • 0 Likes
  • 1683 Posts
  • 68 Subscriptions
Top Solution Authors
Labels