GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

Register DNS between GP and Internal Network

Hello team, The problem we are observing is that when devices switch from a corporate internal network to Global Protect and vice versa they do not update their reverse DNS record with the new IP received; it is clear that it is a problem between the devices and the DNS, but we wanted to know if from the firewall there is any configuration opt...

Alpalo by L4 Transporter
  • 1477 Views
  • 0 replies
  • 1 Likes

Global Protect uninstall fail

I work from home for a new online support company. I previously worked for another online support company and they had me install Global Protect. The new company also wanted me to install Global protect but the more recent software would not install. I ran uninstall on the previous version and it wanted an "Uninstall Password" which I didn't h...

Globalprotect with NPS and expired password change

Hi, I have GP with authentication over NPS (PEAP-MSCHAP2) against active directory configured. Either in Radius server profile and NPS policy configuration "Allow users to change passwords after expiry" is enabled. User with expired password while logging to GP gets window for password change but the change seems to not be written back to AD so ...

Globalprotect for Linux HIP Check Not Sending

Hey community, I've had a lot of problems when rolling out GlobalProtect for Linux. Currently testing version 5.3.4 since 6.0.1+ didn't work for most of my users. The current issue a user is having is the HIP checks are not sending from the GP client. I confirmed in the logs the HIP checks were completed and had data sent but the PA-3410 gave ...

sirons by L1 Bithead
  • 2187 Views
  • 0 replies
  • 0 Likes

Resolved! VPN access can be made without credentials After GP 5.2.9 version update

Connection problem without credentials in version 5.2.9 We switched from GP 5.2.4 version to 5.2.9 version with transparent update. Windows users report that they can connect directly without entering a password when making vpn connections. In the global protect > portal > agent configuration, save user credentials section is selected as n...

Resolved! Global Protect Pre-deployment with AlwaysOn and Network Connection Enforcement

Hi all, We are currently deploying global protect but we are not using Portal to install Global Protect in the users Workstations, instead we are using SCCM. There are multiple configuration options that can be deployed with the installation but we have not been able to find a solution to deploy Global Protect with AlwaysON enabled and als Netw...

GP

I want to install GP on my endpoint for testing before deploying to other endpoint. How do I proceede?

GlobalProtect Linux SAML Auth Fail - Error Bad Request or Hang

Trying to get the GP agent running on linux (Ubuntu 20.04) and keep crashing into SAML auth issues. The GUI client opens a PanGPUI internal browser window that starts to show a google auth page and promptly hangs with 100% CPU utilization, and the CLI opens default browser with a bogus url (like this one: https://accounts.google.com/o/saml2/idp?...

Change logo for Authentication Complete page

Hi, We have PA-850 with globalprotect 5.2. To make it more clear for our users we would like to customize the logo shown in the portal and whenever the user authenticates correctly. We are using Azure AD via SAML. Currently we do have the default page (attachment). Thanks a lot. Please note you are posting a public message where communi...

how to forward global protect logs to SIEM

Hi All, May i know is it possile to forward global protect logs to SIEM? The current version is 8.1.23-h1 I found the below KB but is for 9.1 and higher. https://docs.paloaltonetworks.com/globalprotect/10-1/globalprotect-admin/logging-for-globalprotect-in-pan-os/forward-globalprotect-logs-to-an-external-service-in-pan-os May i know if there ...

JingKai by L1 Bithead
  • 3608 Views
  • 1 replies
  • 0 Likes

Windows 10 - Allow Pre-Logon, Windows Hello sign-ins and SSO

I'm unable to get the Windows Hello credentials (such as fingerprint/face ID) to passthrough to Global Protect at logon. We have our computer tunnel configured to handoff to the user tunnel 60 seconds after logon, so during the logon process, the connection isn't dropped and re-established. However, if a user uses face id or fingerprint to...

[Mobile] GlobalProtect app behind proxy .pac

In case other users have had the same problem/need, I kindly ask for your support to be able to use and how to configure the GlobalProtect app from the iPhone so that the vpn connection goes through a pac proxy. In this specific case, I would like that once configured the portal address for the connection with the GlobalProtect app (with relat...

  • 2069 Posts
  • 68 Subscriptions
Top Solution Authors
Labels