GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

Strange Gateway change issue on network with Prisma Access GP Client

Having some strange behavior with GP client 6.3.3-711 that runs within the prisma access product. When user is on network, or in office, gp changes gateways at times and changes the timezone of the client computer. The client doesn't have issues off network like at coffee shop or home. Not sure what's going on. I am not using any internal host d...

User ID mapping works on DC but not/intermittent on branches for Intune internal users.

Hi All,We have a PA-1410 at DC (with GlobalProtect) and PA-440/410 at branches.Microsoft Intune enrolled devices users authenticate via SAML-Azure AD, non-Intune users via LDAP on-prem AD. User-ID is learned on the DC firewall and redistributed to branches using existing redistribution profiles.Working fine for:Non-Intune internal/external netwo...

Embedded Browser agent does not work in GlobalProtect SAML Authentication

The customer is using PAN-OS 10.2.4-h2, and configuring GlobalProtect agent setting "Use the Default System Browser for SAML Authentication" to "No" does not disable the default system browser for GlobalProtect SAML authentication. The embedded browser in GlobalProtect does not work correctly and every time we try to logon though default syste...

GlobalProtect Name Normalization issue

Hello, I have set up GlobalProtect using AZURE SSO for the sign in and for group mapping I am using LDAP. However, in the GPSVC logs, I see users being returned as domain\\username2 slashes. This is causing issues with users not being able to get a client config as I am putting users in specific subnets according to their AD membership.The usern...

Resolved! Latest version of PANGP Virtual Ethernet Adapter

I am trying to troubleshoot a GlobalProtect intermittent disconnection issue. I noticed that the client is using V5.02 of GP. The PANGP Virtual Ethernet Adapter driver date is shown as 9th August 2010, and the version is 3.0.1.4. I work on the Helpdesk so the installation is done higher up the food chain. However, a date of 2010 for a driver...

shaun_p by • L0 Member
  • 43084 Views
  • 3 replies
  • 0 Likes

Inquiry regarding the maximum number of HIP Objects (vs HIP Profiles)

Hi all, I have a question regarding the system limits for GlobalProtect HIP configurations. I am trying to find out the maximum number of HIP Objects configurable per device. I am currently using a VM-300, but I am also looking for information applicable to other hardware models (PA-Series). I tried running the following command to check the sys...

gp Always disconnect

I've been using GP recently and it keeps disconnecting and reconnecting.I'm sure my network is working properly.I checked the pas log:(P1336-T19828)Debug(2485): 01/22/26 21:59:49:665 Received a tunnel packet with fragment 0x8D(P1336-T4260)Debug(1047): 01/22/26 21:59:50:828 select() timeouts, retry(P1336-T4260)Debug(1047): 01/22/26 21:59:51:840 s...

Juns_Net by • L1 Bithead
  • 6001 Views
  • 4 replies
  • 0 Likes

User Removed From LDAP Authentication Group Still Able to Connect to VPN

Hello everyone, I have a user who I removed form all VPN LDAP authentication groups about a week ago and they are still able to connect to the VPN. I was thinking it may have to do with the cookie re-auth but we have it set to expire after 24 hours. I am at a loss as to why they are still able to connect. I was hoping someone has had a simila...

cmaciel by • L0 Member
  • 3209 Views
  • 1 replies
  • 0 Likes

Globalprotect Slow/Disconnecting randomly

Hi All, I am having issues with GP disconnecting randomly or slow performance issues, the laptops that it is installed on are Dell Latitude 5450's, over the vast majority there are no discernable issues (circa 2.5k users) however for random users there are these Performance issues and disconnecting when using certain apps (teams being one) reb...

GP connction failed

we had an internet outage at out data center this last monday. it dropped all users off VPN. the users are trained that if they cant connect to production VPN to try the DR site VPN. only about 1/3 of the users were able to connect to the DRVPN. the rest got a message "The network connection is unreachable or the portal is unresponsive. Che...

Resolved! Global Protect Portal / Clientless VPN does not recognize SAML username after update to 10.1.14-h20

After updating our firewall from 10.1.13 to 10.1.14-h20 as per CVE-2026-0227, it's no longer possible to access the GP Portal via a web browser: the authentication via SAML continues to work but now gives back an error page. Checking the GlobalProtect log gives the error message "Username from SAML SSO response is different from the input". ...

mszczuka by • L0 Member
  • 5838 Views
  • 3 replies
  • 0 Likes
  • 1711 Posts
  • 68 Subscriptions
Top Solution Authors
Labels