GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
GlobalProtect Discussions
GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.
About GlobalProtect Discussions
Welcome to the GlobalProtect discussion area! Here, you can engage in conversations about GlobalProtect, explore new insights, and stay updated on ongoing discussions. Check back regularly for the latest updates and community insights on GlobalProtect.

Discussions

LSVPN with PA-450 Spokes 10.1 - active/active or active/passive?

Hello,new to PAN .. at the moment we have to do a concept for failover in branch offices, in the LSVPN context.We do have 2 LSVPN Hub Palo Alto FWs in Azure in active/active, where Azure Loadbalancer balances the traffic.Now the question is for "standard design" spoke / branch offices.When we do have 2 ISPs in the location, both ISP lines should...

global protect split dns

my global protect client is 5.2.0-81,my firewall is pa-5020,software version is 8.1.23.my global protect did the tunnel split,and dns split. in globla protect portal, Agent->APP, i configure Split-tunnel Option "Both network Traffic and DNS",Resolve All FQDNs Using DNS Servers Assigned by the Tunnel (Windows Only) "NO"。tunnel splittine do...

linfei by L0 Member
  • 2580 Views
  • 2 replies
  • 0 Likes

Resolved! Split tunnel specific URL only, not entire site?

Good day folks. I have a situation where I need to split-tunnel a specific URL from a company web site - but not the whole site if I can avoid it. For example https://www.mysite.com/admin - split tunneled to VPN clients. https://www.mysite.com - not split tunneled to VPN clients. The /admin/ URL is access list filtered - I have obviously been ab...

darren_g by L4 Transporter
  • 2908 Views
  • 2 replies
  • 0 Likes

GlobalProtect appweb3 exhaust Mgmt CPU % due to large amount of users

GlobalProtect Hi Everyone, I experienced issue with GlobalProtect. At the start of the day, appweb3 will spike up abnormally to like 95%. From the traffic logs we noticed a lot different user trying to access GP. However the timing was exact the same for all the users and it stretches across many pages. From KB below I understand that the appw...

Wenwei_Y by L0 Member
  • 2548 Views
  • 2 replies
  • 0 Likes

GlobalProtect stops responding

After upgrading from 9.1.13-h to 9.1.14 issue was noticed (not sure if it was present earlier) - in about a week/two GlobalProtect stops responding - even portal page is not opening from the browser, so also GP client connection fails. It is not getting to authentication or anything further. Portal IP is responding in general - pings are fine a...

nikoo by L3 Networker
  • 2236 Views
  • 2 replies
  • 0 Likes

Resolved! Globalprotect 5.2.5 popup message

Hi All, Having just deployed version 5.2.5 when I connect on Globalprotect I get a pop up stating "The network connection is unreliable and GlobalProtect reconnected using an alternate method......". This did not appear before and was not present on 5.2.4. We need version 5.2.5 for O365 split tunneling, there is an issue using 5.2.3 and 5.2.4. I...

a.jones by L3 Networker
  • 35309 Views
  • 20 replies
  • 2 Likes

Resolved! Global Protect service impact during failover in A/P configuration

Hello all, I hope you are doing well.As I mentioned in the subject, I just want to know when HA is configured, does it affect existing sessions if the existing active device is failover while the GP is connected? If there is an impact, users can experience service disruption? Please share some info about it. Thanks.GlobalProtect

GlobalProtect gateway not working as intended

Hello, I am wondering if someone can help me out or point me in the right direction.We have configured a Site-to-Site VPN connection between 2 firewalls and configured BGP on it. The first firewall has globalprotect gateway configured and is working properly. The second firewall has gateway configured, I can connect to it and I can see the VPN I...

Resolved! GUI issues after upgrading to 6.0.1

During GP deployment issues with GUI were noticed for some upgrades (this specific example from 5.2.8 -> 6.0.1, Windows 10):It looks really squeezed and messed up. Just for the sake of example, normal view: It is not behaving always this way, but there are multiple cases where this has been seen. This may require deeper digging to troublesh...

bad.jpeg
ok.jpeg
nikoo by L3 Networker
  • 2278 Views
  • 1 replies
  • 0 Likes

Groups added to VPN

Hello,I have Global Protect setup and people are able to connect via a VPN connection with Split Tunnel turned on.I have a request to setup another config for a certain group in AD that would give this group of users a different IP and have Split Tunneling turned off forcing all traffic over the VPN. I have this setup and working. If I put myse...

thoffman_0-1654866175790.png
thoffman by L2 Linker
  • 2960 Views
  • 2 replies
  • 0 Likes

Odd Internal Host Behavior

Community, First off, I'm looking for ideas on what could possibly be causing a situation we are experiencing. This is an issue with Always On Mode, using SAML authentication (built in browser, no default browser), in an Internal Host Detection state. We are not having any issues with a remote user at all, only when the user moves from remote ...

GlobalProtect Pre-Login SAML Webpage Not Loading

Hi everyone, I am hoping someone may have seen this before and may have some guidance. I have a fully functioning GlobalProtect OnDemand system with LDAP + SAML setup and working well outside of the pre-login. Once logged in, everything works as expected - the Portal authenticates you with LDAP and then the Gateway pops the webpage (using GP, ...

saaspass.PNG
saaspass2.jpg

GlobalProtect Connection Failed: Matching Client

Hello everyone.I'm using my company's VPN. However I encountered the "Connection Failed: Matching Client" error. Can anyone tell me how to fix this problem? Your help will be highly appreciated! System: Ubuntu 20.04Launching method: Terminal -> `$ /usr/bin/globalprotect` -> `>> launch-ui` Thank you so much!

Screenshot from 2022-06-02 08-39-08.png
  • 2069 Posts
  • 68 Subscriptions
Top Solution Authors
Labels