Hi All, I have a question regarding Pre-Logon and then on demand. A client has reported they have setup pre-logon tunnel rename timeout to 90 secs. After the client logs in, the GP client goes into a disconnecting state and never times out. Client has to select refresh connection to resolve the issue, and then login manually. I have tested in our lab and get the below results: When the pre-tunnel timeout is set to 90 seconds in our lab the tunnel stays connected through client login, is then renamed to user mode and stays connected, no manual login required. If I change the tunnel timeout to a value between 0 - 20 secs, the pre-logon tunnel is terminated as the user logs in and then the user has to login to GP manually. I'm testing with: PAN OS 9.1.11-h3 as 9.1.11 is not longer available. GP 5.2.11-10 Client testing with: PAN OS 9.1.11 GP 5.2.11-10 What is the expected behavior here? My understanding is that if I set a value between 0 - 600 secs for the pre-logon tunnel timeout, the pre logon tunnel will stay connected for that time, and once that time expires the tunnel is terminated and the client needs to login manually. Any insight would be greatly appreciated. @BPry
... View more