What to look for in GP logs: certificate auth

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

What to look for in GP logs: certificate auth

L3 Networker

I am having some users who experience Connection Failed for the certificate auth Global Protect session.

What are the top 4 or 5 things I should look for in Global Protect debug logs to pin down what's 

behind this message?

 

palomed_0-1649370767301.png

 

On the back PAN side I am observing these steps in Monitor/Global Protect Logging for a good login:

 

Portal Pre-Login

Portal Auth   (Cert)

Portal Get Config GP_CLient Prelogin Machine Cert

Gateway Prelogin

Gateway Auth (sometimes cookie)

Gateway Register

Gateway Get Config (Client-Config – IP assigned)

Gateway Setup SSL

Gateway Connected

Gateway tunnel latency

Gateway hip check

0 REPLIES 0
  • 1483 Views
  • 0 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!