GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

Global protect

GP users lifetime shows 2592000 Seconds (that means 720 hours). But we need to change this to 24 hours max (86400 seconds). Can you let me know how to do the change.

Problem in connecting to Global Protect app on ubuntu

Hi,I downloaded Global Protect for linux from Updates/Software Updates (PanGPLinux-6.0.0-c18.tgz)Now I have 2 problems here:1. Problem in CLII extract the tgz and install the package for CLI using (sudo dpkg -i GlobalProtect_deb-6.0.0.1-44.deb)When I try to connect to gateway it gives me this errorError: Gateway ExternalGateway: Could not verify...

orwasa by L0 Member
  • 3911 Views
  • 1 replies
  • 1 Likes

Global protect linux OS DNS

Hello, We have a use case in which we have say example.com resolving internally(on-prem) to 10.1.1.1, this will resolve internally while you are connected to the corporate network using the corporate network DNS servers. the global protect clients are also pointed to the internal corporate DNS servers. So all the traffic for DNS comes through th...

still stuck on client certificate required for authentication - Mac computer

note this issue doesnt happen to existing users, only to those Mac computers we wipe clean and build from scratch. Macs in question are setup with macOS Ventura v13.3.1 We are using WS1 as our MDM. Cannot get my tester Mac to run Global Protect v 6.0.5 / 6.2 - no matter what I try I still get "client certificate required for authentication" if ...

Viber stops working after connecting to VPN.

Hi All, We are using Palo Alto PA-3220 (version 10.1.5) with Global Protect agent 6.0.0. When we connect Remote VPN with Global Protect every thing works except Desktop Viber application. I am not getting any hints on why the application stops working. there is nothing applied on the policy level which will block the application. Sorry if the ...

KingJack by L0 Member
  • 1666 Views
  • 0 replies
  • 0 Likes

GPVPN Authentication issue

Hi Team, We have configured GP VPN with AD authentication and MFA . The AD authentication is working but the MFA is not working which is our next level authentication. So kindly help us to resolve this issue. Also using username and password we are able to connect the network also using the 2FA we are able to connect the network but after co...

SANKETM by L1 Bithead
  • 2114 Views
  • 1 replies
  • 0 Likes

Segmentation Fault (Core Dumped) 22.04, Only within globalprotect CLI

I recently updated and I am unable to connect from within the globalprotect 'environment'. I am not sure what to call it. i.e. (base) john@pcname:~$ globalprotect>> connect Segmentation fault (core dumped)(base) john@pcname:~$ globalprotect>> helpSegmentation fault (core dumped)(base) john@pcname:~$ Trying to interact at all af...

jsev_18 by L0 Member
  • 1786 Views
  • 0 replies
  • 0 Likes

Global Protect Always On VPN Auto Connect

Hi looking to get some feedback. Currently we have on-demand global protect VPN connection (user inisitates the VPN connection, puts username/password). They have full access to internet via laptop (w.o any traffic inspection) if there is no VPN tunnel and they are off-prem. Our company wants to move away from that and force auto VPN connecti...

PenTest GlobalProtect Subnet

Hello, Our Palo GP is setup inside Azure - and it is working and serving its purpose. GP can reach everything, but not the other way around. We can't ping GP Clients, we can't RDP to them, any traffic destined to GP Subnet has literally no logs at all. Looking for some expert advice. Thanks in advance.

Resolved! iOS VPN on-Demand with client certificate - Reboot and no VPN Connection

Hey community, we are currently trying to enroll iOS Devices with an always-on VPN Connection and authenticated by client certificate. A lot people turn their iPhone over night off and start it at the morning, while the iPhone is still locked WiFi is not enabled and I guess the client certificates too. So mobile data is active which is tryin...

GP VPN Authentication issue

Hi Team, We have configured GP VPN with AD authentication and MFA . The AD authentication is working but the MFA is not working which is our next level authentication. So kindly help us to resolve this issue. Also using username and password we are able to connect the network also using the 2FA we are able to connect the network but after co...

TechData by L1 Bithead
  • 2037 Views
  • 1 replies
  • 0 Likes

Global Protect

Hi Friends, We have a requirement related to global protect. Condition: User tries to connect to global protect and fails to login. If he tries for three or more times to connect to global protect and fails to login an email alert should come to my mail id. I have configured email alerts in my firewall but can we specifically customize by ab...

Satyak by L3 Networker
  • 1795 Views
  • 2 replies
  • 0 Likes

Defender for Identity VPN log integration

Hi all, Has anyone been able to configure a PA firewall to forward Radius messages to a MS Defender for Identity sensor as per Microsoft Defender for Identity VPN integration in Microsoft 365 Defender | Microsoft Docs We are using Azure AD for Global Protect authentication, so not sure that it's possible to send to Radius if not using it to au...

pfox001 by L0 Member
  • 4441 Views
  • 2 replies
  • 0 Likes

Resolved! Giving users the ability to select a different gateway

We have multiple gateways in our environment. Our default agent profile has always on configured. Users are balanced across the gateways. We have a troubleshooting profile that gives users the option to disconnect and choose to try and switch to a different gateway.My question is that I would like to configure a profile that is always on but giv...

StephenGilder_0-1685048856353.png
StephenGilder_2-1685049001421.png
StephenGilder_3-1685049646305.png
  • 2069 Posts
  • 68 Subscriptions
Top Solution Authors
Labels