GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

Unable to upgrade the global protect client automatically on the Client machines

Hi Team Recently I tried to upgrade my GP version from 5.2.10-6 to 6.0.3 and activated it, however, my clients are not seen automatically upgrade to the latest 6.0.3 version. In the portal Client settings are set to theTransparently only (APP), while we try to connect to the GP on the client machine the prompts will be appear to upgrade ...

Resolved! Unable to Download GlobalProtect from Firewall

Hi Community I am trying to enable GlobalProtect on my FW, but I am unable to download GlobalProtect. When I go to Device > GlobalProtect Client and select a version to download, this fails. I get the following error message: "Failed to download due to Empty file returned by update server. Please try again later. Failed to download file" I ...

MaxR2023 by L1 Bithead
  • 11884 Views
  • 3 replies
  • 0 Likes

Zoom shows offline after connecting to Global Protect VPN

We are in the process of migrating to Global Protect VPN and we are doing pilot with few users. One issue we are observing is with zoom. After connecting to Global Protect VPN, zoom still shows off-line for few minutes or until user changes the state to available. We are using Global Protect Agent 5.2.10-6. We are not using Split tunnel and...

Resolved! VPN Total Connections Report

Hello, I am trying to figure out how to get a report that would show the total connections that were made VIA Global Connect. I can see this when I go look at the Gateway as it shows how many people are connected there. Is there a way to get a report for the last 30 days stating this number? This is on a PA-3200 PAN-OS 10.x.x Thank you,Tom

thoffman_0-1665426365122.png
thoffman by L2 Linker
  • 2463 Views
  • 2 replies
  • 0 Likes

GP: AzureAD SAML Authentication with iOS Device ID

I'm using AzureAD SAML authentication with GP. GP Portal and GW are the same setting for Windows, mac and ios. Azure SAML authentication uses device ID authentication with Intune. For Windows and Mac, AzureAD can confirm the device ID and SAML authentication is possible. However, the iOS device does not receive the device ID to AzureAD. Theref...

AzureAD_Auth_log.jpg
TMori by L0 Member
  • 1850 Views
  • 0 replies
  • 0 Likes

Resolved! GlobalProtect client previous gateway settings

Does anyone know if the GP client uses the settings it previously received from a gateway when it initially connects? In my past life using Cisco AnyConnect, a change to the AnyConnect profile would only become "active" if the user connected twice to the ASA after the change. The first time would push the change to AnyConnect, and the second t...

Is there a way to accept both SAMAccountName AND UserPrincipalName for user authentication?

Bottom line I would like my user to be able to authenticate using either "MyUserID" or "MyUserID@MyDomain.com". Can this be done? Right now, my users authenticate using their SAMAccountName/userID. As we move toward x.509 Personal Certificate authentication, the user certs provide a UPN (email address). Given a user who has a SAMAccountNam...

Globalprotect with client certificate authentication on Linux (TPM support?)

I'm currently using client certificates as authentication for windows clients. Our security team requires that the key is stored on TPM. As far as I can tell, RedHat supports storing keys on TPM as well TPM RedHat Does anyone know if Globalprotect supports using certificates where the key is stored on TPM? The current Globalprotect linux docume...

erikda by L2 Linker
  • 2287 Views
  • 0 replies
  • 1 Likes

Trying to install certificate on web portal page

We have been using self-signed certificates for years with no issues. However, one business partner can't access the Web portal on our firewall to download the global protect software due to the self-signed cert. I have tried to configured the firewall to use a cert issued by a signing authority. I installed the cert in our Global Protect Gat...

svanarts by L1 Bithead
  • 4262 Views
  • 3 replies
  • 0 Likes

Gateway gw:Could not verify the server certificate of the gateway

Hello, We had PA550 , now moved to PA 440 and configuration migrated from 550 to 440 , and can able to connect with old version of global protect ; but newer version we can't able to connect . For the newer version of Global protect we are getting the following error . Gateway gw: could not verify the server certificate of the gateway. Thank Y...

HIP Microsoft Patch detection issues

Hello all, We have been running GP for a while now. Currently using 6.0.3. We would like to start using HIP to detect Microsoft patches installed.. I am finding major issues in detecting installed patches correctly.. I have the HIP object configured correctly and we started looking for KB5016616.. After a few days we compared the list of clients...

MZenft by L0 Member
  • 1557 Views
  • 0 replies
  • 0 Likes

Global Protect Cookies Portal Gateway

Hello good afternoon, as always thank you very much for your time and collaboration. I have a question, currently I have configured at the level of Global Protect, cookies in both Portal and Gateway. The issue is that this was configured to keep the credentials and not have to be entering these manually, twice, ie for the portal and gateway....

Metgatz by L4 Transporter
  • 3089 Views
  • 1 replies
  • 0 Likes

Source-NAT with POOL from GlobalProtect zone to subnet behind the MPLS router

Hi community, I'm writting this post to get any ideas or suggestions in a new end-customer requirement. The main goal is that all clients connected via GlobalProtect can access to a new services acquired recently via MPLS (attached the brief topology). The point here is the MPLS's administrator share a specific IP Address that we need to NAT an...

larry2019_0-1665525816825.png
  • 2077 Posts
  • 68 Subscriptions
Top Solution Authors
Labels