Enhanced Security Measures in Place:   To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.

Global Protect VPN client blocks internet connection

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Global Protect VPN client blocks internet connection

L0 Member

Hello,

 

I work for a company that works with Global Protect VPN client, and when we connect to the VPN, internet connection get loss and can't get access to any kind of internet unless to their systems. I guess they have configured it for their security reasons or maybe for don't sent internet traffic to their network infraestructure, but are there any configuration that could le me sent all that traffic to my gateway at the same time that I am connected to their VPN via Global Protect?

 

Thank you

2 REPLIES 2

L5 Sessionator

Sounds your company configured globalprotect setting with "no split tunnel"

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000oM3WCAU

 

This will let your all traffics goes through the tunnel.

Then when handling by security rule on the firewall , from <tunnel zone> to <internet zone> rule denies it (by default).

Admin can allow this traffic if he/she configured it.

 

Cyber Elite
Cyber Elite

The company that provides you globalprotect access determines the policy that is applied.

You could request they set up a profile specific for your use case (external consultant?) to use split-tunneling so only connections to the resources you need are put onto the tunnel and everything else is routed locally

This may be their policy however, in which case, you could for example set up a local VM on your machine and run the vpn from inside the VM, which won't block your actual user space from connecting to the internet

Tom Piens
PANgurus - Strata specialist; config reviews, policy optimization
  • 794 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!