Clientless VPN inpection
Hi, Can we do decryption for Clientless VPN traffic? If no, how is the traffic inspected? This is in regards to BYOD.
Hi, Can we do decryption for Clientless VPN traffic? If no, how is the traffic inspected? This is in regards to BYOD.
Does Rest API (10.1) support terminating a user from the VPN? I know this can be done in XML API but I am not seeing the commands I am looking for available in /restapi-doc. Ideally, I could connect to Panorama and terminate both Prisma SASE mobile users and users connected to local firewalls using Rest API. Thanks, John
Hi, Currently have GlobalProtect 6.1.1-6 installed by my IT department on my work laptop. When I'm at work, I obviously don't need to be connected to the VPN. The problem I have is that I get a Login window popup every 20-30min or so. The window is intrusive and jump at the front screen. Is there a way to stop this on my end ? What should ...
Hello All we have issues with global Protect with MACOS for SAML SSO authentication. anybody make it work SSO for MACOS with azure AD SAML authentication ? its working for Microsoft application not for global protect . Thanks
Hello All, Hope you all are doing well. We are using global protect 5.2.14. Most of the users are connecting successfully but some of the users are facing frequently no internet connection or gateway is unreachable even i tested those users in other pc and their vpn are working fine. Please help me to resolve this issue. Thank You
Hello team, I need to know How to configure VPN and Certificates to cut VPN access when the Certificate is revoked. I have revoked a certificate I am using on my GlobalProtect connection and the connections are working fine, I need to cut this connection when the certificate is revoked, can anyone help me? Regards
Dear Team, I want to know default inbuilt free license keys available in VM-100 Can any once help on this.
I observe that Global Protect drops connections while other apps are not. What thresholds need to be exceeded for Global Protect to give up and drop? I would like to consider how to improve network or end point factors to limit the frequency of Global Protect failiures.
Hi everyone, See if you can give me some insight here as I've exhausted all my options. Scenario I have a client who has two branch offices, each one with a PA-440 installed. Both these PAs are linked together via IPSec tunnel. I can confirm that between both these LAN subnets, there is harmonious communication. At the same time, I have crea...
Hi there, I have a user who's getting this really weird display issue with Global Protect - screenshot attached. Troubleshooting attempted: - uninstall, re-install - ran app in compatibility mode - adjusted display settings Windows applies to app User advised it's an intermittent issue, sometimes restarting the service works, sometimes res...
Hello Everyone,I have a Palo Alto 820 Firewall locally and it has been licensed and configured with global protect for the remote mobility of our users. And It also has a Site-to-Site IPsec connectivity to a remote location of a different organization and the remote end of that organization has a Cisco router to configure the IPsec. There are ex...
Hello, I'm currently trying to restrict Global Protect users from logging into the Portal or Gateway with unauthorized devices. In our setup, all devices that are allowed to connect (mobile, laptops, desktops, etc.) are listed in an Active Directory OU (computer account). I have been unable to find any information on how to configure this ...
I ran into an issue trying to push a GP client upgrade and seem to have run into a problem where, with multiple portals and gateways, the client can not reconnect to the same portal as it already authenticated against when connected to the gateway on the same ISP subnet. (i.e. you can no long ping/HTTPS to the authenticated portal, but you can t...
I was able to find a similar post here: LIVEcommunity - Checking if Global Protect is active (connected) via script or command line - LIVEcommunity - 505980 (paloaltonetworks.com) but was wondering if there is a way to also make sure that I'm connected to the correct portal as well with the script they have provided.
Hello Team, I would like to find out if there's an option to check if Global Protect agent is connected and VPN is active using Windows CMD or PowerShell script? Thanks.

