11-06-2021 04:48 AM
I need your help as I'm facing a very strange issue with GlobalProtect, the VPN used in my company.
When I'm working from home I switch on my PC which is already connected to an ethernet cable: GlobalProtect connects almost immediately (usually to Europe Primary) and I'm able to access my company network drives, folders and remote desktops. However every operation is very slow: network folders take a lot of time to open on explorer, when I launch a RDP connection it takes a lot of time to log onto the the virtual machine and, above all, when I need to connect to oracle databases through ODBC it takes a lot of time to resolve such connections.
Below the screenshot of the IPConfig (Ethernet Connection 3): look at the IPv6 and Temporary IPv6 addresses and keep them in mind.
If I disconnect the ethernet cable, activate the WiFi connection (from same Router and same ISP) and wait for GlobalProtect to reconnect then everything start to work as expected at a much faster speed: network drives open with a blink of an eye, ODBC Connections are resolved immediately and virtual machines are launched istantly.
As you can see from the screenshot below (Wireless LAN Adapter), now the the IPv6 and Temporary IPv6 addresses have disappeared!
As I don't want to use WiFi because signal is very weak, I disconnect it and reconnect the Ethernet Cable. I wait for GlobalProtect to reconnect and everything works just fine as it was under WiFi.
Infat now the Ipconfig looks different with respect to the first cabled connection when I switched on the PC: the Ethernet 3 does not have the IPv6 and Temporary IPv6 Addresses and it mirrors the settings of the Wireless LAN Adapter seen just above.
I really need your help to sort this issue out because it is very frustrating: each morning I need to connect with Lan Cable, then disconnect it, switch on WiFi, wait for GlobalProtect to connect, then switch off WiFi and finally connect LAN Cable again.
What can I suggest my IT department to do?
I'm not a technician but I suspect the issue is caused by this IPv6 Addresses that are wrongly assigned when the first connection to VPN is done through Ethernet Cable.
Many thanks in advance,
11-30-2021 01:50 PM
I bet too that because of the IPv6 on your local network that is not link-local, much of the traffic that should be going over the tunnel, such as DNS requests, isn't going over it but rather to the internet through the IPv6 configuration.
You could even be getting less than possible internet performance with that IPv6 setup.
Since most probably do not have a 'legitimate' IPv6 network configuration at our homes, I don't think this is a widespread issue that his company can fix.
As for the temporary IPv6 address, I found this which indicates Windows can generate random generated IPv6 suffixes for purposes of privacy. Seems it does this along with the one based on MAC.
11-30-2021 02:09 PM
thank you for your contribution.
My internet data provider just switched to an IPv6 configuration as they’ve ran out of IP4 addresses. In fact since this update (2 weeks ago) the solution provided by ShaiW (disabling IPv6 under Ethernet 3 windows configuration) no longer works: I had to re-enable it and the issue for which I’ve opened this post came back again.
I’ve contacted my IT dept and told them to check whether the option “'Resolve All FQDNs Using DNS Servers Assigned by the Tunnel (Windows Only)’” is set to yes/no on GP as suggested by ShaiW (I’m still waiting for a reply though).
By the way, I still can’t understand why I have such issue just when connecting to GP just after PC boot with Ethernet Cable while I have not this issue at all when connecting through wi-fi or with Ethernet after switching from wi-fi. It’s weird!!
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!