03-02-2021 06:49 AM
Hi Team,
We have a query whether we can able to block a specific device from Connecting our Global Protect VPN by using the Device MAC Address.
Please review and share us with your thoughts. Awaiting for your reply !!
Best Regards,
Sahul Hameed
03-02-2021 06:59 AM
Not via MAC address. You would do this by creating an entry within the Device Block List and specifying the Host ID and Hostname of the blocked endpoint.
03-02-2021 06:59 AM
Not via MAC address. You would do this by creating an entry within the Device Block List and specifying the Host ID and Hostname of the blocked endpoint.
03-02-2021 07:10 AM
Hi @BPry ,
Thanks for your response. How do I get the Host ID information from a Machine to configure the Device Block List.
Also one more query is that, do we need to a have any specific subscription for using Device Block List feature in PA Firewall.
Best Regards,
Sahul Hameed
03-02-2021 07:15 AM
The Host ID field is visible in the GlobalProtect logs (I don't know if this is a default field, so you may have to view detailed logs or simply select it so it's visible). You don't need a GlobalProtect subscription to have the ability to use this feature.
03-02-2021 07:41 AM
@BPry ,
Thanks for your respose. I will check on this and will share you with the outcome shortly.
Best Regards,
Sahul Hameed
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!