GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

post connect vpn

Does running commands from the registry using post connect vpn only support .bat files or is powershell supported? I am running PANOS v11 and GP v6.0.7 If its only .bat files that are supported here, can I call a PowerShell file from within the batch file. Is my config correct? command: c:\scripts\powershell.ps1 context: admin (what's the...

A valid client certificate is required for authentication - PanOS:9.1.16-h3

Hello Team We recently upgraded to 9.1.16-h3 on Dec 15th and we started having issues with Global Protect where users are not able to authenticate using the certificate. We have checked and made sure that the correct with its private key is present in the User's Personal Cert Store and has the correct "subject" in the certificate as well. We k...

PAN OS 9.1.17 Global Protect Issues

I upgraded from PAN OS 9.1.14 to 9.1.17 on Dec 27, 2023 Ever since the upgrade, I have random users that cannot connect through VPN GP at the first time. Some users experience connect disconnect issues as well. Some users are working just fine. We have different GP versions from 5.1 to 6.0 to 6.2 - all have shown the same problem. We authe...

lestrada by L2 Linker
  • 1827 Views
  • 2 replies
  • 1 Likes

GP VPN fail on iphone ios

Hi, I face with issue GP VPN fail to login on iphone ios 15.8. The error show Portal login, error = The certificate for this server is invalid. You might be connecting to a server that is pretending to be “119.x.x.x” which could put your confidential information at risk. I attached picture as well. anyone face same issue?

Customer Support

very disappointed with Palo Alto services , customer service doesn't pickup the call and they doesn't care about the customer case. day by day services are going worst .

Alraedah by L0 Member
  • 1067 Views
  • 1 replies
  • 0 Likes

GlobalProtect 6.1.0 for Linux Fedora 39

hi all, Our EU is currently on GlobalProtect 6.1.0 on PA-5250 firewall, we just wondered if this GP 6.1 support Linux Fedora 39? I tried to find any legit resources that would mention this but couldnt find anything helpful. Would like to share the information to our EU, hopefully anyone could help. thanks!

How to validate user/endpoint is fetching which profile from GP Portal Agent configuration.

Hello Team, I have configured multiple agent profiles in the GP Portal and I want to verify which agent profile is currently being fetched by individual user, How do i verify that from the firewall or endpoint? Context: I have profile 1 which has a limited set of exception users who have some flexibility to switch the portal to add a new port...

GlobalProtect 6.2.2 connects automatically despite on-demand is enabled

Hello everyone, After upgrading GlobalProtect from 5.x to 6.2.2 users started to complain that GP is connecting automatically after logging in to OS. Agent App configuration hasn't been changed and still is On-demand. There is addressed issue in GP 6.2.1 which should solve this (GPC-18336 - Fixed an issue where the GlobalProtect app got automa...

MarRoz by L0 Member
  • 2543 Views
  • 1 replies
  • 0 Likes

HIP Checks failing GP failing GP users called in ACL's when source device is Apple

Hi All, So I have Global Protect running with the HIP license. Our current conditions for HIP connectivity are; 1. Must be Windows 10 or 11, must have Crowdstrike installed and running, must have Zscaler Client Connector installed and running. I have no problems with any of these users. However, we have a very small subset of users on Macb...

dromanelli_0-1702919699035.png
dromanelli_1-1702919744847.png
dromanelli_2-1702920160790.png

Domain Split tunnel 'under the hood'

hey, can someone please explain how this feature work from the stage of open the browser and surf to www.google.com until the GP client decide it should enter the tunnel? for example 1. GP listen on the nic for dns queries 2. GP check with the split tunnel rules if there is a match 3. GP route the traffic to the tunnel on the OS network sta...

Global Protect on macOS Sonoma 14.2 (betas and now release)

I generally try to run macOS beta version to jump ahead of any issues. I've been running macOS Sonoma 14.2 beta (2 and 4, specifically). In my testing, the Global Protect VPN client successfully connects (we're using certificates on in this case) but then fails to pass any traffic. The interface has an IP address, which can be pinging, but no...

  • 2062 Posts
  • 68 Subscriptions
Top Solution Authors
Top Liked Authors
Labels