Enhanced Security Measures in Place:   To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.

Global Protect on Mac OS 14.5

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Global Protect on Mac OS 14.5

L0 Member

Hello,

 

I downloaded GlobalProtect app on my Macbook with Mac OS 14.5, but after allowing access from privacy and security, the application doesn't work.

When I click on it to open the application, nothing happens. I don't have it on my menu bar either.

 

I don't know what to do. Any guidance will be much appreciated  

5 REPLIES 5

Community Team Member

Hi @Malkhaldi ,

 

Which version have you downloaded exactly ?

I'm running 6.2.3-270 on Sonoma 14.5 without issue.

 

Make sure you at least try a compatible version:

https://docs.paloaltonetworks.com/compatibility-matrix/globalprotect/where-can-i-install-the-globalp...

 

kiwi_3-1719836629556.png
kiwi_2-1719836591664.png

 

Kind regards,

-Kim.

LIVEcommunity team member, CISSP
Cheers,
Kiwi
Please help out other users and “Accept as Solution” if a post helps solve your problem !

Read more about how and why to accept solutions.

L1 Bithead

Some of our Mac users on v14.5 are also having issues. We have tried both GP v6.2.3-270 and v6.3.0.

Some of the errors in the GP logs that stands out:
- NESMDNSProxySession[Primary Tunnel:GlobalProtectDn:2CDF6CAC-D835-44E0-9730-650CD2F5E09D:(null)] in state NESMVPNSessionStateStarting: plugin NEDNSProxyPlugin(com.paloaltonetworks.GlobalProtect.client[inactive]) started with PID 0 error Error Domain=NEAgentErrorDomain Code=2 "(null)"
- com.paloaltonetworks.GlobalProtect.client[945]: Tearing down XPC connection due to setup error: Error Domain=NEAgentErrorDomain Code=2 "(null)"
- NEAgentSession: failed to create the delegate
- [NESMVPNSession unsetDefaultDropAll]: VPN setting IP Drop-All to 0 (Non-Persistent)

Community Team Member

Hi @Veloman ,

 

Can you uninstall GP and reinstall the application while making sure access has been allowed for GP through privacy and security? It looks like you're running into setup failures. 

LIVEcommunity team member
Stay Secure,
Jay
Don't forget to Like items if a post is helpful to you!

Please help out other users and “Accept as Solution” if a post helps solve your problem !

Read more about how and why to accept solutions.

L1 Bithead

- Tried uninstalling and reinstalling GP many times the last week (10+ on each).  Following this guide.
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000HCbFCAW
- Today we also tried v6.2.4 and got no further.

I dont have the Macbooks in front of me (3 users in our corp) but we have also ensured that these steps are taken.

Ensure GlobalProtect has the necessary permissions:

  • Full Disk Access
  • Network Extensions
  • System Extensions

We can also see that there are some System Profiles with globalprotect in the name that we are not able to remove.

L1 Bithead

The problem in our case was triggered by a yearly automatic renewal of machine/system and user certificates via Intune from our PKI (Using SAML in Azure).

If we downgraded to GP v6.2.2 the certificates would renew as they should and GP got connected. We could then upgrade to v6.2.4 without issues.

  • 1746 Views
  • 5 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!