Globalprotect end users are receiving default route (0.0.0.0) but it is not configured to do that

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Globalprotect end users are receiving default route (0.0.0.0) but it is not configured to do that

L1 Bithead

Hello masters,

I need your help on how to troubleshoot an issue related to global protect.

 

On our Access routes, no 0.0.0.0 are configured.

We wanted to let users use their local gateway for any traffic destined to the internet.

But they are receiving the 0.0.0.0 in their RoutePrint resulting to traversing their any traffic to the VPN.

This is clogging our network.

I already engaged 3 TAC on this but could not find the issue.

 

Details:

Software Version8.1.9-h4

GlobalProtect Agent4.1.10

 

RoutePrint:

Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.0.1 192.168.0.199 35
0.0.0.0 0.0.0.0 On-link 10.0.0.201 50

8 REPLIES 8

L2 Linker

Please post a picture or details of your split tunnel configuration on your gateway.

AccessroutePIC.png

Please see below access route

 

AccessroutePIC.png

L7 Applicator

default routes 0.0.0/0 always apply whether using split tunnel or not.

your more specific routes /32 /24/23 etc will take precedence over /0

 

is there any more information in your route print or have you just left it out.....

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!