GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

Defender for Identity VPN log integration

Hi all, Has anyone been able to configure a PA firewall to forward Radius messages to a MS Defender for Identity sensor as per Microsoft Defender for Identity VPN integration in Microsoft 365 Defender | Microsoft Docs We are using Azure AD for Global Protect authentication, so not sure that it's possible to send to Radius if not using it to au...

pfox001 by L0 Member
  • 4551 Views
  • 2 replies
  • 0 Likes

Resolved! Giving users the ability to select a different gateway

We have multiple gateways in our environment. Our default agent profile has always on configured. Users are balanced across the gateways. We have a troubleshooting profile that gives users the option to disconnect and choose to try and switch to a different gateway.My question is that I would like to configure a profile that is always on but giv...

StephenGilder_0-1685048856353.png
StephenGilder_2-1685049001421.png
StephenGilder_3-1685049646305.png

Resolved! Global Protect Internal Gateway "Not Connected"

I have a PA-440 running 10.2.3-h4. I have a working external GlobalProtect gateway and created an internal gateway. I have enabled "Internal Host Detection" added the internal gateway information to the config of the portal. After trying to connect, the main GlobalProtect screen shows "Not Connected" with "Select the portal to connect and sec...

jwalls by L0 Member
  • 9995 Views
  • 2 replies
  • 0 Likes

SAML and GlobalProtect

Hello, We have 4 vCPU PaloAlto NGWF Firewall. We are using GlobalProtect for Remote Access VPN Service. Now we would like to enable 2FA via Azure (SAML). I tried to do configuration as it showed in Palo Alto article: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g0000008U48CAE I can login into Portal with AD Credentials, b...

Can't use bing chat when I connected to VPN?

Hi, I found that after March 25th, when I was connected to a VPN, I was no longer able to use bing chat. Bing chat said: "Sorry, looks like your network settings are preventing access to this feature." But if I disconnected from VPN then everything works fine. I have been tested on two different machines, macbook and windows laptop. Any idea? ...

cycheng by L0 Member
  • 3636 Views
  • 1 replies
  • 0 Likes

GlobalProtect Agent v6.0.0 showing strange Characters

Hi LIVECommunity, Has someone else seen this behavior on the GP Agent? All of a sudden it started showing strange characters. The agent is installed on a Windows10 with the Spanish language. By the way, the agent works fine (I can connect to the VPN), It's just an issue with the characters. We already tried re-installing it but no luck... We ...

v6.0.3.png

Resolved! Unable to use the internet when connected to Google Pixel 7 phone hotspot with GP VPN

When using my Google Pixel 7 Phone's hotspot with my laptop, the internet works fine, except when connected to Global Protect VPN. As soon as I connect the VPN (and it does connect), the internet connection is blocked. Websites do not come up in the browser. Details: Phone Pixel 7 Pro Android 13 Network - T-mobile I have tried creating a ne...

Translate web app url of globalprotect clientless

Hi, Could we hash or hide web app url of globalprotect clientless ? this is required since when client access the web app, the path of internal web apps are not hidden or hash. This is example of the default url format https://globalprotect.customer.com/http/internal.webapp.com/home/login Expected result is web app is hidden like this http...

Global protect vpn traffic to azure site to site vpn not working as expected

Hi, The issue i'm encountering is related to one our vpn client(server) which cannot use directly a S2S connection and must use a P2S connection that is always activated at all time. We want from one of our virtual machine in azure to access this server through the S2S vpn and then through the global protect to reach the server at the end. Our...

FS-EXP by L0 Member
  • 2929 Views
  • 1 replies
  • 0 Likes

Global Protect Always on with Multi-Factor Authentication

Hi All, I just want to ask some question regarding behaviors of Global Protect Always on(user logon) with Multi-Factor Authentication. Does it will generate only one time OTP when we first time login Global Protect or it will keep on asking everytime we disconnect and connect back to Global Protect? Thank you

Momoj by L2 Linker
  • 4014 Views
  • 4 replies
  • 0 Likes

Resolved! Google LDAP Auth for Global Protect

Has anyone been able to use the Google LDAP service for authentication for GlobalProtect users? I haven't been able to get the firewall to successfully connect to the Google LDAP service. Google suggests cert based authentication to the service and provides a cert but the firewall rejects the import with the following error "Import of google-...

Global Protect credential error for mutual domain but seperate active directory

Hi, We have mutual domain with our other site, but seperate Active Directories. When a consultant tries to connect us just after connecting to other site, GP tries to connect with other site's username (ismailt). His username in our AD is ismail.tetik. But in pop up window that GP creates for MFA, we still see his other username, which is isma...

Global Protect for Google Chrome Client connects successfully but unable to connect to the internet- assigned IP 100.115.92.2

Our Google Chrome client are not able to access any network resources including the internet after connecting to Global Protect app. I noticed that the following IP address was assigned 100.115.92.2 as opposed to the expected IP address from the configured pool subnet. It appears as though there is some kind of segregation on the Google Chrome s...

Resolved! Apple MAC devices not connecting

I just uploaded the new PKG into Jamf Pro Cloud and then installed the client onto a Mac. I went to attempt to connect and received the following error: Could not connect to the GlobalProtect services. Make sure the GlobalProtect service is running. I made zero modifications to any settings within Jamf Pro for the installation except for the...

aaronz by L0 Member
  • 3036 Views
  • 1 replies
  • 0 Likes

Resolved! GlobalProtect Security updates for non-customers?

Is there any way for a company who is not a PaloAlto partner to get GlobalProtect security updates? For example, a company who provides software support for on-premises envrionments and uses the GlobalProtect client if the customer has a Palo Alto Networks firewall, but does not own any Palo Alto Networks equipment itself? thank you

  • 1683 Posts
  • 68 Subscriptions
Top Solution Authors
Labels