Global Protect Slowness issue
Hi Team I'm facing issue with when i connect to VPN then my laptop internet slows down.
Hi Team I'm facing issue with when i connect to VPN then my laptop internet slows down.
Hello everyone, We have two strange errors with Globalprotect (v. 5.2.11) since the update to PANOS 10.2.3-h2:- For internal connections (via tunnel) the connection fails with the event gateway-hip-check with the message "Invalid tunnel end point IP address". - The external portal is suddenly no longer accessible via https but pingable via the...
Env: PRisma Access ; GP Client 6.2.0-89 What variable controls the "finding the best available Gateway" ; We are experiencing anywhere between ~2 to 7 minutes to get connect the gateway? How can we manipulate this algorith to not do this 'Finding best gateway" TIA
Hi everyone, Hoping someone could tell me where I'm going wrong with this. We have recently acquired a secondary ISP line which is connected to our PA's eth1/1 via PPPoE, which includes /28 available IPs. I am looking at moving one of our client's GlobalProtect portal and gateway from our primary ISP line (Which is via static IP) to the seco...
Hello, I'm running out of ideas to tshoot a GP connection problem. I have a user that is in an AD group uservpn (checked on the cli and it's fine). Added this group to Portal and GW configuration and I can't connect. If I live any for the config under user/user group for portal and Gateway it works. I see the user has this group on the CLI but s...
I'm using GP 6.1.2 and GP 5.2.11 respectively in my environment. We are in the midst of upgrading the 5.2.11 to 6.1.2. There is also a need to add/update the portal entry with a new entry.Where is the file that store the portal entry? We are using SCCM to push the GP agent to UAT laptop and would like to push portal entry as well.
Please tell me how many concurrent Global Protect VPNs the PA1410 model supports.
Hello friends. For my workers, I am using 2FA (AD+DUO) as the authentication process. I would like to add additional to the 2FA authentication, by enforcing checking the existence of a client certificate. My goal is to eliminate using GP from laptops that don't have my PFX installed. (i will install them manually). I want the cert to be an addit...
In Palo Alto PA-220 We implemented a GlobalProtect VPN setup and a Palo Alto version 10 firmware upgradeAfter one month of implementing GP and upgrading PAN OS Version 10, our internet connection was slowInternet traffic is always highHigh CPU Device LoadIs this problem caused by:GlobalProtect VPN implementationUpgrade firmware Please get inform...
I have never created a vpn with local users on the PA to use the VPN before but I would think the only thing different is the auth profile but I am still getting this error
Planning on upgrading to 10.2.x this week and noticed this release note. Does this mean SAML is broken in this code release? Or am I reading it incorrectly? Also, the version number looks like a firewall version number, not a GlobalProtect app version number. Not sure what to make of this and whether GlobalProtect using SAML auth will work...
I'm seeing multiple failed login attempts from China & Russia. I know I can restrict access to source countries with GP Gateway which I'm currently doing but how can I do this with the Global Protect Portal?
Dear Team, I need a GlobalProtect certificate for IOS. The following error was confirmed in GP.log, and we solved the problem by installing it manually. However, we want to make the certificate automatically installed on IOS as well. In the current setup, Windows or Android will automatically install the certificate. I checked the gp l...
Currently FW used 5.2.11.The team have proposed to perfrom upgrade to next available stable version because there is a scanning internall and detected vulnerabilities for current version.Question : What version is next in line in term of stable, secure and worked.How should I approach this, as all user machine is using 5.2.11. Need to do testing...
Like many organizations, we have had to enable VPN access for more individuals during the COVID-19 crisis. We recently noticed that about half of the 42 machines display their home's local LAN IP address in our DNS server. This is in addition to the IP address that GlobalProtect issues. One of my sysadmins pointed out a way to fix this is to dis...
| Subject | Likes |
|---|---|
| 1 Like | |
| 1 Like | |
| 1 Like | |
| 1 Like | |
| 1 Like |

