Global Protect portal page error
Restriction of the users on the GP portal page.We selected a particular group in the allowed list, but authentication was failing unless we select all.
Restriction of the users on the GP portal page.We selected a particular group in the allowed list, but authentication was failing unless we select all.
Hi anyone,Can the Palo Alto send OTP to SSL VPN authentication with email like a Fortigate devices ? Thx before
Hi folks,We have a number of users trialling our new Global Protect setup and it appears a small number are workaholics.We have the authentication window set at 10hrs (its Radius with TOTP) - and the authentication cookie also expires after 10hrs. From the user perspective, at the 10hr mark, all connectivity is cut and interactive apps (ssh for ...
Hi Community!I have some issues getting HIP checks to work on a PA820.Have configured a couple Objects that checks whether the Cortex XDR agent or Windows Defender is installed/enabledAnd have them added to a profile that I have added to the GlobalProtect Gateway.This seems to be working fine on a LAB-PA220 - triggers whenever Cortex XDR is not ...
Hi Just wondering if anyone is seeing this issue by chance on windows with post-vpn-connect on GP 5.2.6 I am pretty sure it worked fine with older versions... but we have had other bugs with the older client so can't really roll back Scenario 1 - If a machine is rebooted the behaviour we see is the post connect command is called however it erro...
GlobalProtect Gateway is being used, and all traffic is being routed to the firewall except for some network. DNS lookup takes a long time when I input the domain (website which not in the PC DNS table) that the browser accesses first while connected to a VPN- DNS Lookup time takes about 5-10 seconds The DNS server is using an internal server, a...
Hi All, We want GP users to get automatically logged out after 30 minutes. We had changed the "disconnect on idle" value in the connection tab to 30 minutes and then checked after 30 mins for GP Client logout. But the GP Client is still connected to the gateway(Using on-demand user logon). After going through the Palo Docs we found out that no t...
want to download globalprotect 4.1.9 from portal
I recently setup a backup internet provider and bought a wildcard cert instead of renewing our previous cert. Previously just had a cert for remote.mydomain.com we used for globalprotect from network solutions. I have external DNS A records set for remote.mydomain.com with an ip from our main provider. I also set up an A record for remote2.mydom...
Hello Everyone, I had global-protect working perfectly. Two days ago however something happened (not sure what caused the problem) and I'm unable to connect to GP anymore. I always get the error: "You are not authorized to connect to GlobalProtect Portal". The weird thing is that in the system logs there are no error messages relating to GP, I...
Hi, guys, Can someone help me create a HIP object to match a particular windows patch.
Hi, We have an issue when users return to the office the Windows DNS servers can not update the IP address to the office IP. We think its more of a Windows DNS permission issue but just wanted to check if anyone has seen this issue before. - User on VPN get's IP from Palo via GP.- DNS is updated in windows (owner is machine name).- User then co...
I have been trying to get this to work for days not and I am not getting anywhere. I always seem to struggle with certs due to how they are chained.On my Palo I have a rootca (self-signed, certificate authority), intermediateca (issued by rootca, and also certificate authority), then I cut a cert called gp-cert (issued by intermediateca, non cer...
I've just updated my MAC to macOS Big Sur. After update I can't connect anymore because GP client doesn't inove OKTA's login page.I'm using GP version 4.1.13-2Can someone help?Thanks.
Hi, I have recently upgraded my mac from catalina to big sur 11.2.1. My earlier global protect client was working fine with catalina but after mac upgrade I upgraded global protect client to version 5.2.4. After doing this I'm getting the error of Connection failed Could not connect to the global protect gateway after entering my username and ...

