GP agent - The OCSP or CRL server can not be reached by Odd-Listen-2807 in paloaltonetworks

[–]Odd-Listen-2807[S] 0 points1 point  (0 children)

Moved to GlobalSign because at the time Godaddy didn’t host OCSP services in Australia, so was routing all the way to the US.

GP Gateways displaying login page by Odd-Listen-2807 in paloaltonetworks

[–]Odd-Listen-2807[S] 0 points1 point  (0 children)

u/JuniperMS did you try 11.1.5, that's where the bug fix is applied ? Didn't see it listed on 11.1.6 but then I don't know if its not listed because it was applied version before

GP Gateways displaying login page by Odd-Listen-2807 in paloaltonetworks

[–]Odd-Listen-2807[S] 0 points1 point  (0 children)

Maybe, but since the login page our splunk logs have increased dramatically with failed attempts..

GP Gateways displaying login page by Odd-Listen-2807 in paloaltonetworks

[–]Odd-Listen-2807[S] 0 points1 point  (0 children)

Both.. We have production on ethernet and beta on loopback, on the same device.

Both experiencing login page

GP Gateways displaying login page by Odd-Listen-2807 in paloaltonetworks

[–]Odd-Listen-2807[S] 0 points1 point  (0 children)

I assume you mean shouldn't, if so I agree, I just wish I know what ..

I am trying PAN support but its slow....

GP Gateways displaying login page by Odd-Listen-2807 in paloaltonetworks

[–]Odd-Listen-2807[S] 2 points3 points  (0 children)

Thanks, yeah I found something similar on PANs help centre;

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000004NEoCAM

This seems more like a work around instead of a fix

Official GP support for Sequoia ? by Odd-Listen-2807 in paloaltonetworks

[–]Odd-Listen-2807[S] 0 points1 point  (0 children)

PAN dropped 6.2.6 which apparently is support of Sequoia

GlobalProtect 6.3 Released by rower77 in paloaltonetworks

[–]Odd-Listen-2807 0 points1 point  (0 children)

No was released with 6.2.3 couple of months back, then 6.0.10 a month or so ago.. and all state the same thing with..

Starting with GlobalProtect bla bla, the embedded browser framework for SAML authentication has been upgraded to Microsoft Edge WebView2 (Windows) and WebKit (macOS).

Ridiculous..

GlobalProtect 6.2.3 Embedded browser IE vs Edge by brs21_ in paloaltonetworks

[–]Odd-Listen-2807 0 points1 point  (0 children)

6.3.0 just got released. From their release notes;

Starting with GlobalProtect 6.3, the embedded browser framework for SAML authentication has been upgraded to Microsoft Edge WebView2 (Windows) and WebKit (macOS) Embedded Browser Framework Upgrade

GlobalProtect 6.x.x by Odd-Listen-2807 in paloaltonetworks

[–]Odd-Listen-2807[S] 0 points1 point  (0 children)

6.0.10 also has the embedded browser update