GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

Problems with Global Protect customers and Azure

Hello, I need help with the following problem with my Global Protect users, the problems are random and once the user is able to log in, the problem does not reproduce until after 24 hours. The casuistry is that we enter an Azure account, we enter the Authenticator code and the Global Protect client remains in the connecting state without actual...

Alpalo by L4 Transporter
  • 744 Views
  • 0 replies
  • 0 Likes

[SOLVED] GlobalProtect 6.2.0-89 - blinking tray icon in internal network

SOLUTION: Update to 6.2.1-132. Killed the visual bug for us and worked like always without any issues. ------------------------------------- UPDATE: Looks like PAN released 6.2.1 in the night from Monday to Tuesday (20:21 CEST). Release Notes are promising, we are already updating the first few clients for evaluation about fixing the "internal g...

xSOU1 by L0 Member
  • 2656 Views
  • 0 replies
  • 0 Likes

Specific browser instead of default browser

Our company maintain SAML Authentication using a specific browser (edge), but it is not my default browser (brave).Each time before starting connection I have to switch default browser to Edge and after successful connection have to restore my default browser settings. Is there any way to specify the browser used for SAML Authentication?

Domino by L0 Member
  • 1721 Views
  • 1 replies
  • 0 Likes

Prompted to sign in to Global Protect every time Mac restarts or connects to different network.

Spoiler (Highlight to read)I recently installed GP client on our Mac systems but the issue is that whenever the machine restarts or connects to a different network, it prompts the user to sign in again to GP. How can I resolve this issue so it doesn’t ask the user to sign in every time the computer is restarted? I recently installed GP client on...

CyberDon by L0 Member
  • 870 Views
  • 0 replies
  • 0 Likes

Page to login global protect after connect not appear, and appear error AADSTS50105

By error when I tried to login to global protect, I put an email incorrect, and after when try again to login global protect not show login page, only show page error AADSTS50105. I tried everything like reinstall, delete folder palo alto, delete folder regedit, but get the same error. I want to see the login page to put the correct email. I u...

luisgue by L0 Member
  • 2831 Views
  • 2 replies
  • 0 Likes

SSL Certificate update while GP migration

Hello, I have scheduled all activities for my FW migration from ASA to PA, however I have a question about GP migration. The PA FW has its GP deployed with Public IP x.x.x.6 and gp.domain.com, whereas the ASA has Anyconnect on Public IP x.x.x.5 with asa.domain.com. Both are currently connected to the same ISP; I have disabled Anyconnect, and ...

Add PreLogon to Existing Portal

Hi Everyone, Our current setup is a GlobalProtect portal that utilizes SSO via the free Okta service. This serves our customers as well as our internal staff. I'd like to switch our internal staff laptops to the prelogon method, so they automatically connect with their AD machine cert, and after they login to their laptop, it passes on thei...

Resolved! Setting Failed Attempts and Lockout Time

Hello, I would like to set failed attempts and lockout time on my Global Protect auth profile but I do not see where I can set this. The only place I see these settings is in the global profile but I would like to set this only for Global Protect. I am using v 10.2.4-h2 Thanks for any thoughts. MJF

GlobalProtect blocks my internet access

Hi all, I've recently started to use a GlobalProtect vpn, but every time I successfully connect to it, it blocks my internet access. I reached out to our IT departement and a firewall engineer told me he can see that I am connected and that traffic is being allowed from my location, but return traffic from them is timing out after a couple of pa...

IPv6 Traceroute not returning hops before the destination

I have two GlobalProtect installations each configured differently. I can ping and connect to IPv6 destinations just fine. If I run a traceroute to the IPv6 destinations using UDP or ICMP, I do not get the hops before the destination. For example: Tracing route to google.com [2607:f8b0:4005:80d::200e]over a maximum of 30 hops: 1 * * * Request ...

Blank Login Page

Issue occurs both on Windows 10 & 11. Mostly see it on 10 though and when the user is off site. Rarely do we see the issue on site. User tries to connect to GlobalProtect, window pops up and it's blank - can't type in credentials. GP version: 6.0.3 We've tried uninstalling, deleting the files/folder in Program Files (and x86) and in rege...

GP.jpg

Is it possible to host a Global Protect Portal and Gateway on the same outside interface as IPSEC VPNS

I'm trying to set up a global protect gateway on an interface that already has a couple IPSEC VPN tunnels on it. But I am unable to browse to the page to download the client. After some checking I realized that I'm not even able to ping this interface from inside the network or from the public IP of the other PA. If I ping out, then I am getting...

Global Protect authentication happened twice while LDAP and Okta Auth

Recently we moved to PA-3410 software version 11.0.1-h2 from PA-850 software version 10.2.3-h4 . on both firewalls GlobalProtect Agent 6.1.1 We have selected option for authentication override On PortalsGenerate cookie for authentication override on Gateway Accept cookie for authentication override https://supportcases.paloaltonetw...

tthapa23 by L2 Linker
  • 7515 Views
  • 8 replies
  • 0 Likes

"failed to open message queue" error for one user but not others

Greetings all. CentOS 8 user is unable to run globalprotect from the CLI; gets "Cannot connect to local gpd service." The PanGPA process never starts for the user, either automatically or manually. In user's PanGPI.log, the errors are: Info (687): debug thread startsInfo (211): #############Run GPI into prompt mode.###############Error (80): ...

  • 2062 Posts
  • 68 Subscriptions
Top Solution Authors
Top Liked Authors
Labels