DNS and global protect
I have a situation where global protect clients are dished out a DHCP address from the firewall but need an on-prem PTR created when they connect. does anyone have a good way to do this ?
I have a situation where global protect clients are dished out a DHCP address from the firewall but need an on-prem PTR created when they connect. does anyone have a good way to do this ?
Hello Bro, I have many security rules that based on the hip profiles.recently, I found that I have few people that their windows host id has changed. but what's so wiered is that some of them has same machine id!!!! which cause accessing resources issues.even when i check the registery, i found they are same.have any of you met with ...
Hi, has anyone ever run into an issue with a website's cert being flagged as invalid in the browser when connected to VPN? The website's cert is valid and everything works normally when not connected to VPN. Any input would be appreciated. Thanks
Is there a way to automatically reset a GP client's preferred Gateway setting from the Portal? I have gone from having multiple one-to-one Portal-Gateway setups, to a many-to-many setup where the GP client picks the best available Gateway based on admin priority/reachability. In the past end users where told to go to Portal A, or B, and switch t...
We have some users on "Windows 10 S" the computers are not joined to the domain and they will not open the SAML window , it sits at the verifying your sign-in info message. The version of GP is 5.2.8-5 and it can only be downloaded through the MS store. Any help would be appreciated, the users fall back to a different vendors VPN since GP can't ...
I need to integrate my GP with an undefined MFA third-party vendor named "SafeNet". As the documentation shared from the vendor needs to integrate with it as a Radius server. And I did that and got OTP successfully. But right now I need to add 2 factors to type first AD username & Pass, then OTP. as (MFA). The problem though MFA even the Saf...
Hi,Yesterday i clicked on Yes when Global Protect VPN showing update and after that i am unable to find it in system tray and also i am unable to launch it from anywhere like start menu, i even tried to launch it from C:\Program Files\Palo Alto Networks\GlobalProtect but i did not fine the application named Global Protect.exe, Please Help !!!!!!...
I still have a few users with windows 8/8.1 and I am seeing an issue with their machines after activating the latest GP revisions on my firewalls. After a fair amount of troubleshooting, I found that the PANGP adapter wasn't installed. Users report that the following error comes up in their client: "Could not connect to the global protect serv...
Can we have Global Protect Internal VPN working same as external, means on-demand and when we connect to internal gateway we should get an IP assigned from firewall. In that case we can restrict that IP pool in security policies to access critical IT Infrastructure, allowing management of IT Infrastructure only from that internal IP pool. I un...
Hi everyone, hope someone can help me out with this. I'm looking into an issue whereby a user suffers frequent drops when connected to Global Protect. Apparently he sits next to the router and Internet is good. Today he reports drops at the following times: Log for 08:30 (only dropped for a few seconds)Log for 10:33 (dropped for 5 secs)Log for 1...
I am still looking/waiting on 5.2.13 to address the most recent security vulnerabilities. A couple of weeks ago they updated the bulletin to indicate the issue was not present in 5.2.13, but there is no 5.2.13 that I can find on Palo's site or on the actual firewall's software page. Surprised to see that 6.0.1 was released this week to addres...
I am trying to connect to an employer's network using an different account that's different from my Microsoft account connected to my Windows user. However, I am not able to declare my username when connecting, I just get an error screen telling me that authentication of my other Microsoft account failed.Is this due to Internet Explorer 11 being...
Good morning,in production we have a pair of PA-440 in HA (10.1.5). The firewalls have been configured with double VR as described in this article:https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClFiCAKThe firewalls are connected to two Internet links with two different Providers.We have therefore configured two Portals...
I have two separate portal/gateways on two separate PANs. Call them gp1.acme.com and gp2.acme.com. If I wanted to make the gateway on gp2 be primary for laptops hitting gp1.acme.com portal - what happens at the network level? I presume I add a second gateway to portal gp1.acme.com. When the GP client reaches gp1.acme.com does it inform that clie...
Hi Team, We have currently updated GlobalProtect to 5.2.11 from 5.2.10. While running report we came to know that some users are still on 5.2.8 and client is not getting updated on those devices. Can you please suggest if there an issue with version 5.2.8? Currently we are planning to push 5.2.11 version on those machines via software center but...
| Subject | Likes |
|---|---|
| 1 Like | |
| 1 Like | |
| 1 Like | |
| 1 Like | |
| 1 Like |

