GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

Resolved! Can't connect user group is fine but Agent Policy does not match

Hello, I'm running out of ideas to tshoot a GP connection problem. I have a user that is in an AD group uservpn (checked on the cli and it's fine). Added this group to Portal and GW configuration and I can't connect. If I live any for the config under user/user group for portal and Gateway it works. I see the user has this group on the CLI but s...

Global Protect portal entry

I'm using GP 6.1.2 and GP 5.2.11 respectively in my environment. We are in the midst of upgrading the 5.2.11 to 6.1.2. There is also a need to add/update the portal entry with a new entry.Where is the file that store the portal entry? We are using SCCM to push the GP agent to UAT laptop and would like to push portal entry as well.

KhairulNizam_0-1701658046016.png

Resolved! 2FA and certificate

Hello friends. For my workers, I am using 2FA (AD+DUO) as the authentication process. I would like to add additional to the 2FA authentication, by enforcing checking the existence of a client certificate. My goal is to eliminate using GP from laptops that don't have my PFX installed. (i will install them manually). I want the cert to be an addit...

chens by L3 Networker
  • 1834 Views
  • 1 replies
  • 0 Likes

GlobalProtect Connection Failed for Some Client Certificate Users

We have several GlobalProtect gateways using LDAP and client certificate for authentication. A few users have reported receiving the "Connection Failed. Gateway x: The network connection is unreachable or the gateway is unresponsive. Check the network connection and reconnect". This is received for all gateways. The users are Windows 10 users wh...

MFA with hybrid ad (GlobalProtect)

Hi,I would like users to log in via globalprotect to authorize themselves via AzureAD (or only use the second factor from azura), and then the users would be mapped to names enabling permissions to be granted via local AD.Have any of you encountered this problem?

Greg00 by L0 Member
  • 980 Views
  • 0 replies
  • 0 Likes

Issu Connection Internet

In Palo Alto PA-220 We implemented a GlobalProtect VPN setup and a Palo Alto version 10 firmware upgradeAfter one month of implementing GP and upgrading PAN OS Version 10, our internet connection was slowInternet traffic is always highHigh CPU Device LoadIs this problem caused by:GlobalProtect VPN implementationUpgrade firmware Please get inform...

Sobbirin by L0 Member
  • 1166 Views
  • 2 replies
  • 0 Likes

Global Protect Issue on Mac's with Cisco Duo

Ever since I implemented Cisco DUO, I have been running into an issue connecting using Global Protect on Mac OS. I have no problem what so ever on Windows machines. Anytime we go to connect to the VPN on a Mac, the DUO push will go through but then the GlobalProtect login page turns white and nothing ever happens after this. Any ideas on what I ...

PAN-221857 Known Issue - Users are unable to log in to the GlobalProtect app using SAML

Planning on upgrading to 10.2.x this week and noticed this release note. Does this mean SAML is broken in this code release? Or am I reading it incorrectly? Also, the version number looks like a firewall version number, not a GlobalProtect app version number. Not sure what to make of this and whether GlobalProtect using SAML auth will work...

GlobalProtect certificate for IOS(apple)

Dear Team, I need a GlobalProtect certificate for IOS. The following error was confirmed in GP.log, and we solved the problem by installing it manually. However, we want to make the certificate automatically installed on IOS as well. In the current setup, Windows or Android will automatically install the certificate. I checked the gp l...

Resolved! Need to upgrade to next available GP version

Currently FW used 5.2.11.The team have proposed to perfrom upgrade to next available stable version because there is a scanning internall and detected vulnerabilities for current version.Question : What version is next in line in term of stable, secure and worked.How should I approach this, as all user machine is using 5.2.11. Need to do testing...

VPN not find available gateway

Hi all I'm trying to access a VPN net and the fallow error : "the virtual adapter was not set up correctly due to a delay" LOG : Init get valid adapter info: 1400-C:\Windows\INF\oem67.inf-{D08FA1AC-E5DE-450F-98EB-A7BE0987F2B7}-ROOT\PANGPD\0000.10/03/23 11:31:58:488[Debug 1311]: Disable adapter be called. Please help with this issue .

simonefr by L0 Member
  • 729 Views
  • 0 replies
  • 0 Likes

Internet not working with IPSec tunnel, SSL fallba

Hi, Since I moved to a different broadband connection, I've seen a strange issue with GP VPN. When I first connect the VPN, it connects but the internet does not work (it connects using IPSec) and automatically disconnects in 5-7 seconds, when I try connecting it the second time it connects using SSL, and I get the unreliable network pop-up and ...

flashh by L0 Member
  • 1173 Views
  • 0 replies
  • 0 Likes
  • 2069 Posts
  • 68 Subscriptions
Top Solution Authors
Labels