GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

How do I change global protect username on IOS?

With GlobalProtect for Apple IOS devices, how can I change my username? When I go to log in, it has my regular user email address and I can only fill out a password field. There’s nowhere to change the user. If we use a regular user account, it will enforce the vpn 24/7. If I use my admin user account, I can connect and disconnect at will. ...

ksauer507 by L3 Networker
  • 1636 Views
  • 0 replies
  • 0 Likes

Resolved! Cloud Identity Engine - Failed to get client configuration

Migrating from on-prem (radius/ldap) auth & group mapping to CIE using AAD for both directory and auth types.GP porta connection fails with "Failed to get client configuration". Things we've checked... * CIE Auth Type configured to use the 'name' SAML claim from Azure AD, which happens to be the UPN * CIE Group Mapping is using UPN as the ...

mb_equate by L3 Networker
  • 5463 Views
  • 3 replies
  • 0 Likes

GlobalProtect MacOs Connection

Hello, I am a PA-440 user, current globalprotect version is 6.2.3. When I try to connect to vpn via macos I get the following error (Could not connect to theGlobalProtect service. Make sure the Global Protect service is running.If the issue persists, contact your administrator.). I tried downgrading to GlobalProtect 5.2 with no solution.Can anyo...

Upgrade to GlobalProtect 6.2.3 client for Windows Does Not Complete

Hello. We moved from GlobalPotect 6.2.2 for Windows because it connected automatically even when configured for on-demand. Moving to GlobalProtect 6.2.0 or GP 6.2.3 was recommended as a solution. We chose the latter, but now users are reporting that GP 6.2.3 does not upgrade transparently. A popup message appears saying an upgrade is in progress...

jseregni by L0 Member
  • 3919 Views
  • 1 replies
  • 0 Likes

Need Help on Configuring GlobalProtect VPN

Hello there, I am working on setting up GlobalProtect VPN for our organization and could use some advice. We have a mixed environment with Windows, macOS, and Linux machines, and we're looking to ensure a seamless experience for our users. Specifically; I am interested in hearing about best practices for; Configuring GlobalProtect for a mixe...

How to use a Machine Cert with a Private Key for Global protect prelogon

Greetings, We utilize our own PKI infrastructure so the certificates we want to use for prelogon are already in place. I am also new to this so it may be working as designed but having a hard time validating. We have imported a rootCA into Strata Cloud Manager the resides in Trusted Root CA on windows We have an Intermediate CA signed by th...

Conditional rules for GP MFA auth?

Is it possible to apply conditional rules on a GlobalProtect login so the means of login can vary? For example; If a Windows client is operating within a particular country or public IP range, just require simple SAML user login and maybe AD machine membership. However, if the client is outside of the country/ip-range, prompt the user for an MFA...

Multiple versions needed to access different portals

We are a service company that needs to access various customer sites. Several of our customers use Palo Alto Global Protect, but not all of them are up to date, and we have to use several different versions of the Global Protect "client" software (note sure if that's the term to use) to access these various sites. As a service company, we are no...

VPN Attempts from Rotating IPs and Generic Usernames

Hello all, For several weeks, I have been getting many VPN login attempts from different IPs trying to login using generic usernames, like "guest", "support", "admin", etc. Is this normal? Is there anything that I can do to stop this from happening? I have attached a screenshot for additional context. Thanks.

mdmartin by L0 Member
  • 8755 Views
  • 5 replies
  • 0 Likes

Multiple bogus credentials on GP portal

I have noticed there are alot of random IPs that are trying to login to my GP portal. We are using pre-login method of GP so legit users do not login. GP starts and does an auto-login pre-windows login. The logs tell me these failures are coming from GP portal. They are not getting anywhere since a trusted cert on legit users PCs is required, bu...

Global Protect for IPad auto-connect option partially works

We have around 200 Ipads deployed to our field agents. Our configuration on our global protect portal is to have always-on enabled, so that when a device loses connection, that when connection is restored the vpn would automatically reconnect. my initial tests were with test mobile phones (iphone 12 and a Pixel 8), I rigorously tested these...

GP Update to 6.1 and PAN-OS 10.2.7-h3

Hello,We are planning to upgrade our GP client to 6.1.4. Currently we are running 6.0.7 and the PAN-OS (10.2.7-h3). Since we just recently upgraded our PAN-OS, we do not intend to upgrade to 11.0 anytime soon. My question is; what would be the behavior of the GP client 6.1.4 when we have PAN-OS (10.2.7-h3)? I know with 6.1 the End-user Notificat...

jesteves by L0 Member
  • 1511 Views
  • 1 replies
  • 0 Likes
  • 1684 Posts
  • 68 Subscriptions
Top Solution Authors
Top Liked Authors
Labels