Known or Addressed
PAN-OS
Bug ID
Description (Database last updated 05-03-2025)
Known
5.1
GPC-11165
When users run the GlobalProtect app for Android, the app reports a Required Client Certificate not found error for the first time and failed when users switched between portals configured with different client certificate profiles. The client certificate authentication is successful when users attempt to connect to the app again.
Known
5.1
GPC-10839
Safari cannot be added to the application-based split tunnel rule on macOS endpoints.
Known
5.1
GPC-10603
When the split tunnel settings based on the destination domains are configured on the GlobalProtect gateway and either Chrome or the Edge browser is used to navigate to these domains on macOS endpoints running macOS Catalina 10.15.4 or later, the connection reset errors appear for a few seconds before the website launches.
Known
5.1
GPC-10356
When the split tunnel settings are configured to exclude application traffic such as Microsoft Teams and Skype, some excluded traffic are still forwarded through the tunnel.
Known
5.1
GPC-9415
For the GUI version of the GlobalProtect app for Linux, SAML authentication with Microsoft Azure does not work on Ubuntu 1804 or greater versions.
Known
5.1
GPC-9353
When you upgrade Red Hat® Enterprise Linux 7 to Red Hat® Enterprise Linux 8, the operating system displays errors for missing GlobalProtect packages (qt5-qtwebkit) during the upgrade.
Known
5.1
GPC-9092
On Chromebooks with the GlobalProtect app for Android, after refreshing the configuration or disabling and re-enabling the app, GlobalProtect reports a portal not found error.
Workaround : Refresh the configuration again to trigger the connection.
Known
5.1
GPC-9043
On iOS devices where you enable the user to save user credentials after supplying a trusted fingerprint, when you refresh the connection, the GlobalProtect app displays an Authentication Failed error.
Known
5.1
GPC-7017
When users run the GlobalProtect app for Android on their Chromebooks, the app cannot connect to GlobalProtect gateways based on the source IP address of the user because it runs within the Android container on Chrome OS. The Android container uses a network bridge to connect the app to the network, so it is assigned a different IP address from the source IP address of the Chromebook user.
Workaround : Ensure that gateway selection for the Android operating system is not based on the source IP address of the user by leaving both the Region and IP Address fields empty in the config selection criteria for your client settings configuration ( Network GlobalProtect Gateways <gateway-config> Agent Client Settings <client-settings-config> Config Selection Criteria ).
Known
5.1
GPC-6878
When users run the GlobalProtect app for Android on their Chromebooks, the app cannot connect to GlobalProtect portals using IPv6 because it runs within the Android container in Chrome OS, which does not currently support IPv6.
Workaround : Set the IP Address Type for your GlobalProtect portal to IPv4 Only ( Network GlobalProtect Portals <<portal-config> General ).
Known
5.1
GPC-6792
The GlobalProtect app does not support portal hostnames with non-English characters.
Known
5.1
GPC-6456
When users establish a GlobalProtect connection for the first time on iPads running iOS 11.1, and they Don’t Allow GlobalProtect to send them notifications, the Settings -> GlobalProtect link on subsequent notification permission reminders does not open.
Workaround : Upgrade your iPad to iOS 11.3 or a later version.
If you remain on iOS 11.1, you can enable GlobalProtect to send you notifications by going to the GlobalProtect notification settings on your iPad ( Settings Notifications GlobalProtect ) and then selecting Allow Notifications .
Known
5.1
GPC-4856
On macOS endpoints, the GlobalProtect app can’t detect the following Anti-Malware information for the HIP Match log details of the Gatekeeper security feature ( Monitor Logs HIP Match <hip-match-log> ):
  • Engine Version
  • Definition Version
  • Date
  • Last Scanned
Known
5.1
PAN-109759
The firewall does not generate a notification for the GlobalProtect app when the firewall denies an unencrypted TLS session due to an authentication policy match.
Known
6.0
GPC-21829
After upgrading or downgrading the GlobalProtect client to version 6.0.10, SAML authentication fails when using the embedded browser along with enforcer without any exceptions.
Workaround: Configure an enforcer exception for the SAML authentication service.
Known
6.0
GPC-21558
After disabling and re-enabling extensions on macOS Sequoia, the Enforcer fails to block traffic as expected when the GlobalProtect client is disconnected, allowing traffic to flow improperly.
Known
6.0
GPC-21554
If enforcer is configured, the Connect Before Logon connection fails with a portal unreachable error.
Known
6.0
GPC-20108
The GlobalProtect app upgrade from version 6.0.9 and earlier to version 6.0.10 and later may fail for some users when the agent app configuration parameter on the portal is set to Allow with prompt .
Workaround: Use the transparent upgrade method.
Known
6.0
GPC-18964
The GlobalProtect tunnel disconnects after 10 minutes on app versions 6.0.8 and 6.2.1, when SAML authentication is used and the GlobalProtect app is running on macOS devices.
Known
6.0
GPC-18467
In 6.0.8, when SAML authenticates a user that is not in the allow list, authentication fails. However, the SAML assertion is still used for subsequent authentication.
Known
6.0
GPC-17226
After upgrade to GlobalProtect app version 6.0.5, macOS Ventura users are unable to refresh the connection when connected to an external gateway because the refresh menu disappears when the user hovers over it.
Known
6.0
GPC-17099
Fixed in GlobalProtect app 6.0.5-c35 and GlobalProtect app 6.0.7
When the GlobalProtect app for Windows is upgraded to GlobalProtect app version 6.0.5, devices with Driver Verifier enabled and configured to monitor the PAN virtual adapter driver (pangpd.sys) display the DRIVER_VERIFIER_DETECTED_VIOLATION Blue Screen error.
Known
6.0
GPC-15088
When the GlobalProtect app is installed on Android devices, the GlobalProtect notification is persistent and continues to stay on the screen even when the app is closed. This issue is not applicable for Android devices with Android 13 and later version.
Fixed the issue where the GlobalProtect notification displayed on the screen was unresponsive and this is listed under the Addressed Issues section.
Known
6.0
GPC-14820
If you change the setting for Connect with SSL Only in the portal configuration , when the user views the Preferences in the GlobalProtect app, the Connect with SSL setting retains the previous setting.
Known
6.0
GPC-14819
The first time end users connect using the GlobalProtect 6.0 app they may see an authentication failed message if their SSO credentials are different from the credentials they used to log in to their computer.
Known
6.0
GPC-14705
On macOS endpoints, when connected to an internal gateway the endpoint may not send a HIP report or receive HIP notifications, and the HIP reports are not available on the Host Information Profile tab in the app.
Known
6.0
GPC-14640
In pre-logon deployments , the GlobalProtect enforcer remains enabled even after disabling GlobalProtect.
Known
6.0
GPC-14578
After connecting to GlobalProtect using Connect Before Logon (CBL) with SAML authentication, the GlobalProtect app keeps opening and closing after the user logs in.
Known
6.0
GPC-14453
In some cases, TCP Option lookup for IP fragmented TCP packets can cause the endpoint to lose access to internal resources.
Known
6.0
GPC-14329
macOS devices are able to bypass the GlobalProtect tunnel using the physical adapter even when No direct access to local network is enabled .
Known
6.0
GPC-14063
In cases where the GlobalProtect gateway does not push a DNS suffix to the endpoint, the endpoint incorrectly pushes the DNS suffix from the physical adapter to the virtual adapter.
Known
6.0
GPC-13998
When connected to GlobalProtect with Resolve All FQDNs Using DNS Servers Assigned by the Tunnel (Windows Only) set to Yes in the App Configurations area of the GlobalProtect portal configuration, performance is slow in the Windows Active Directory Users and Computers console.
Workaround: Set Resolve All FQDNs Using DNS Servers Assigned by the Tunnel (Windows Only) to No .
Known
6.0
GPC-13970
DNS queries for excluded domains are sent out on both the GlobalProtect app virtual adapter and the device's physical adapter when the Split-Tunnel Option is set to Both Network Traffic and DNS in the App Configurations area of the GlobalProtect portal configuration.
Known
6.0
GPC-13774
In some cases the GlobalProtect tunnel cannot send traffic after the system wakes up from sleep mode.
Known
6.0
GPC-13757
In a configuration where the Welcome Page is set to None and Have User Accept Terms Of Use before Creating Tunnel is set to Yes , the endpoint gets stuck in the connecting state.
Workaround: Enable the Welcome Page or set Have User Accept Terms Of Use before Creating Tunnel to No .
Known
6.0
GPC-13575
When the user is prompted to select a certificate to use to connect to GlobalProtect, if the user instead clicks Cancel without selecting a client certificate the app shows the no network connectivity error message.
Known
6.0
GPC-13106
If the end user sets a preferred gateway in the GlobalProtect app and the administrator later disables the manual gateway option in the portal configuration, the app will still display the option to set a gateway as preferred after the end user refreshes the connection even though manual gateway selection is no longer an available option.
Known
6.0
GPC-16597
The GlobalProtect app stops working when the app is upgraded from version 5.2.8 to 6.0.3.
Known
6.0
GPC-10557
Users cannot install the GlobalProtect app on Linux devices with Ubuntu 20.04 LTS.
Workaround : Install the GlobalProtect app on Linux devices using the dpkg utility of the Debian package along with the apt-get utility.
To install the GlobalPtotect app CLI, use $ sudo dpkg -i <gp-app-pkg> . For example: $ sudo dpkg -i GlobalProtect_deb-5.3.3.0-3.deb .
Known
6.1
GPC-19499
On Linux endpoints, the Firefox browser stops working when you try to connect the GlobalProtect app with the SAML default browser.
Known
6.1
GPC-17099
When the GlobalProtect app for Windows is upgraded to version 6.1.1, devices with Driver Verifier enabled and configured to monitor the PAN virtual adapter driver (pangpd.sys) display the DRIVER_VERIFIER_DETECTED_VIOLATION Blue Screen error.
Known
6.1
GPC-15969
On Windows endpoints, the GlobalProtect app sometimes fails to send the Diagnostic report when the end user uses the option to Report an Issue . The Troubleshooting logs are sent successfully.
Known
6.1
GPC-16570
When using the embedded browser for SAML authentication with the GlobalProtect app for Linux while installed on operating systems using OpenSSL 3 as the system version and using a portal or gateway running PAN-OS 10.2 or earlier versions, authentication does not work as expected.
Workaround: Use the default system browser for SAML authentication.
Known
6.2
GPC-21694
When the GlobalProtect app is installed on Windows, a Microsoft Defender SmartScreen warning is displayed:.
Workaround: Click More Info and then click Run to proceed with the installation.
Known
6.2
GPC-21558
When the GlobalProtect app is installed on devices running on macOS and the end user enable or disable the system extensions, the GlobalProtect Enforcer feature is not working as expected.
Known
6.2
Users running GlobalProtect client with Enforcer enabled may see an "Internet Blocked message" when performing SAML authentication for the nth time (n>1) via embedded web browser. This happens when Webview2 or Edge browser is updated between previous successful authentication and the current unsuccessful authentication attempt..
Workaround: Disable webview2 auto update via the group policy. If you still see the error message, restart the device.
Known
6.2
GPC-20970
GlobalProtect can have intermittent connectivity issues on Prisma Access IP optimization enabled tenants.
Workaround: If your Prisma Access tenant is IP Optimization enabled (available starting in Prisma Access 5.0.1), upgrade to GlobalProtect 6.1.4 and later, 6.2.3 and later, or 6.3 and later.
Known
6.2
GPC-20840
Loading content or text on the SAML embedded browser can take longer than usual. This does not impact authentication.
Known
6.2
GPC-19339
When the GlobalProtect app is upgraded from version 6.1.4-c1 to 6.2.0-c4 on Linux devices, the GlobalProtect web interface displays the upgraded version only after a system reboot.
Known
6.2
GPC-19180
When the GlobalProtect app is installed on Linux devices and the app is upgraded or downgraded, the GlobalProtect web interface and the command-line interface display the new version only after a system reboot.
Known
6.2
The GlobalProtect tunnel disconnects after 10 minutes on app versions 6.0.8 and 6.2.1, when SAML authentication is used and the GlobalProtect app is running on macOS devices.
Known
6.2
GPC-18025
In 6.2.1, after a refresh connection, the HIP patch exclusion isn't visible on the GlobalProtect UI. However, the HIP patch exclusion logs are visible on the Pangphip.log file.
Known
6.2
GPC-17820
Firefox is not supported for proxied traffic in Tunnel and Proxy mode or proxy mode .
Known
6.2
GPC-17816
After entering CIE SAML authentication credentials to refresh an expired explicit proxy token or cookie when connected in Tunnel and Proxy mode or proxy mode , the GlobalProtect app gets stuck while retrieving the portal configuration.
Workaround: Refresh the GlobalProtect connection or disconnect and reconnect the GlobalProtect app.
Known
6.2
GPC-17727
When the GlobalProtect app is connected in Tunnel and Proxy mode or proxy mode , SSH traffic cannot be sent over the proxy.
Known
6.2
GPC-17513
When GlobalProtect is configured in Tunnel and Proxy mode or proxy mode , if the admin-defined PAC file has an HTTP URL, the GlobalProtect app will not download the PAC content.
Known
6.2
GPC-17447
When the GlobalProtect app is configured in Tunnel and Proxy mode , SSL VPN establishment over the proxy doesn't work.
Known
6.2
GPC-17663
In Tunnel and Proxy mode , the GlobalProtect agent tunnel does not work seamlessly when the GlobalProtect app and the third-party VPN are configured to use overlapping IP subnets.
Workaround: Use GlobalProtect in proxy mode for better compatibility with third-party VPNs.
Known
6.2
GPC-17555
In Tunnel and Proxy mode , the GlobalProtect agent tunnel on macOS does not coexist well with Cisco Anyconnect VPN due to an IP forwarding table issue.
Workaround: Use GlobalProtect in proxy mode for better compatibility with third-party VPNs.
Known
6.2
GPC-17854
The GlobalProtect app does not prompt the users to extend the login lifetime user session when the device woke up from sleep or hibernation mode.
Known
6.3
GPC-21982
IPv6 traffic on the Windows client does not follow the routing table and leaks through the physical adapter.
Known
6.3
GPC-20983
When a Windows computer resumes from sleep, the GlobalProtect app remains stuck in the connecting stage.
Workaround: Restart the PanGPS service.
Addressed
5.1.11
GPC-15068
A fix was made to address an OpenSSL infinite loop vulnerability in GlobalProtect app software ( CVE-2022-0778 ).
Addressed
5.1.9
GPC-12603
Fixed an issue where users were able to successfully use SAML to authenticate and establish a connection to Prisma Access but failed to connect to a manually selected Prisma Access gateway.
Addressed
5.1.8
GPC-12353
Fixed an issue where, when the GlobalProtect app was installed on macOS devices running Big Sur, the app was unable to establish a connection when the Netskope Client was installed on the system.
Addressed
5.1.8
GPC-12266
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the app was disconnected from the tunnel and performed a network discovery after waking up from Modern Standby mode.
Addressed
5.1.8
GPC-12243
Fixed an issue where, when the gateway was manually selected for the first time instead of the Best Available gateway, any subsequent connections to the Best Available gateway allowed end users to connect to the manually selected gateway rather than the Best Available gateway.
Addressed
5.1.8
GPC-12202
Fixed an issue where the Custom Password Expiration Message (LDAP Authentication Only) notification displayed grammatical errors when the system language was German.
Addressed
5.1.8
GPC-12174
Fixed an issue where, when the GlobalProtect app was installed on macOS devices running macOS 10.15 or 11.0, the GlobalProtect HIP check did not detect the CrowdStrike Falcon application, which caused the device to fail the HIP check.
Addressed
5.1.8
GPC-12105
Fixed an issue where, when the GlobalProtect app was installed on macOS devices and split tunnel was configured based on the application, some traffic did not follow the split tunnel configuration on applications such as Microsoft Teams.
Addressed
5.1.8
GPC-12104
Fixed an issue where the GlobalProtect client on the end user’s endpoint did not connect to the Best Available gateway after the endpoint woke up from sleep mode. This issue occurred when SAML authentication was used and in the auto-scaled gateway scenario. With this fix, the GlobalProtect client can also connect to the Best Available gateway in the auto-scaled gateway scenario.
Addressed
5.1.8
GPC-12050
Fixed an issue where the GlobalProtect HIP check did not correctly detect the Last Full Scan Time information for the Windows Defender on Windows endpoints, which caused the endpoints to fail the HIP check.
Addressed
5.1.8
GPC-12043
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and used a smart card for client certificate authentication, the number of prompts used between the portals were different.
Addressed
5.1.8
GPC-12004
Fixed an issue where the GlobalProtect HIP check incorrectly detected the Anti-Malware information for the Definition Version for Cisco Advanced Malware Protection (AMP).
Addressed
5.1.8
GPC-11995
Fixed an issue where the GlobalProtect HIP check incorrectly detected the Anti-Malware information for the Definition Version for Sophos Endpoint Protection version 10.0.0.
Addressed
5.1.8
GPC-11932
Fixed an issue where the GlobalProtect HIP check incorrectly detected the Anti-Malware information for the Last Full Scan Time for the McAfee Total Protection Antivirus software application.
Addressed
5.1.8
GPC-11911
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the Custom Password Expiration Message (LDAP Authentication Only) notification is blank after you changed the message setting.
Addressed
5.1.8
GPC-11876
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the command string for pre-vpn-connect or post-vpn-connect contained arguments with one or more whitespace characters, which caused the built-in GlobalProtect app upgrade to fail.
Addressed
5.1.8
GPC-11875
Fixed an issue where, when the GlobalProtect app was installed on macOS devices running macOS Catalina 10.15.7, the GlobalProtect HIP check did not detect the Anti-Malware information for the Last Full Scan Time for the McAfee Total Protection Antivirus software application version 4.9.2, which caused the device to fail the HIP check.
Addressed
5.1.8
GPC-11865
Fixed an issue where the GlobalProtect Update pop-up dialog displayed grammatical errors.
Addressed
5.1.8
GPC-11819
Fixed an issue where the GlobalProtect app could not properly exclude multicast routes specified in the exclude list.
Addressed
5.1.8
GPC-11784
Fixed an issue where the GlobalProtect app was configured with Pre-logon then On-demand mode and if the network was changed or the network connection was lost during pre-logon tunnel mode, the pre-logon tunnel was not able to reconnect to the app after the machine was connected to the network.
Addressed
5.1.8
GPC-11749
Fixed an issue where, when the GlobalProtect app was installed on Linux devices, DNS resolution failed when the app was connected on Ubuntu 20.04.
Addressed
5.1.8
GPC-11686
Fixed an issue where the HIP report did not contain the correct Last Full Scan Time information for the AVG Internet Security software.
Addressed
5.1.8
GPC-11648
Fixed an issue where, when the GlobalProtect app was installed on macOS devices, the GlobalProtect HIP check did not detect the Patch-Management software for the JAMF Pro software application, which caused the device to fail the HIP check.
Addressed
5.1.8
GPC-11606
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the GlobalProtect HIP check did not detect the Avast Antivirus software version 20.x. After upgrading from Antivirus software version 18.x, the GlobalProtect HIP check did detect the Avast Antivirus software version 20.x.
Addressed
5.1.8
GPC-11460
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the GlobalProtect HIP check did not detect the Anti-Malware information for the Last Full Scan Time for the McAfee Total Protection Antivirus software.
Addressed
5.1.8
GPC-11367
Fixed an issue where the GlobalProtect HIP check incorrectly detected the Anti-Malware information for the Definition Version for Cybereason.
Addressed
5.1.7
GPC-11868
Fixed a rare issue where the PanGPS log file was not rotated and it caused the PanGPS.log file to consume a large amount of disk space.
Addressed
5.1.7
GPC-11797
Fixed an issue where, when the GlobalProtect app was installed on macOS Big Sur devices and split tunnel was configured based on the application, the app was unable to connect to applications such as Zoom.
Addressed
5.1.7
GPC-11781
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the app was disconnected from the tunnel after the Pre-logon Tunnel Rename Timeout expired even when users successfully authenticated to the gateway through either SAML authentication or RADIUS for two-factor authentication.
Addressed
5.1.7
GPC-11723
Fixed an issue where, after you installed the GlobalProtect app on macOS devices using the client upgrade prompt, a kernel panic occurred on the macOS device.
Addressed
5.1.7
GPC-11706
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the GlobalProtect tunnel could not send traffic after the system woke up from sleep mode.
Addressed
5.1.7
GPC-11683
Fixed an issue where, when the GlobalProtect app was installed on macOS devices, the GlobalProtect virtual interface was locally unreachable.
Addressed
5.1.7
GPC-11660
Fixed an issue on the GlobalProtect agent when the response from the gateway pre-login included the error status and an empty message, but the GlobalProtect client was not expected to receive the response from the pre-login with the error status and an empty message. With this fix, the GlobalProtect client is configured to handle the error status and the empty message response from the gateway pre-login when the minimum version is set to TLSv1.2 in the SSL/TLS service profile.
Addressed
5.1.7
GPC-11656
Fixed an issue where, after you upgraded the GlobalProtect app to release 5.2.1 or release 5.2.2 on macOS devices using the client upgrade prompt, a kernel panic occurred on the macOS device.
Addressed
5.1.7
GPC-11649
Fixed an issue where the GlobalProtect HIP check did not detect Symantec Endpoint Protection 14.3 real-time protection, which caused the device to fail the HIP check.
Addressed
5.1.7
GPC-11644
Fixed an issue where the HIP report did not contain the correct Last Full Scan Time information for the AVG Internet Security software.
Addressed
5.1.7
GPC-11638
Fixed an issue where, when the GlobalProtect app was installed on Windows 10 devices and network connectivity was enabled in Modern Standby, the tunnel failed to be restored after waking up from sleep mode.
Addressed
5.1.7
GPC-11637
Fixed an issue where, when the GlobalProtect app was installed on Linux devices, the GUI version of GlobalProtect sometimes was unresponsive (for example, when the GNOME Shell was replaced).
Addressed
5.1.7
GPC-11616
Fixed an issue where, when the GlobalProtect app was installed on macOS devices, the GlobalProtect HIP check did not detect Anti-Malware information for Sophos Endpoint Protection version 10.0.0.
Addressed
5.1.7
GPC-11612
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the speed limit of the GlobalProtect adapter was set to a maximum of 100Mbps, With this fix, the speed limit of the GlobalProtect adapter is now set to a maximum of 2Gbps.
Addressed
5.1.7
GPC-11594
Fixed an issue where, when the GlobalProtect app was installed on Linux devices, the GUI version of GlobalProtect hangs when multiple terminals were launched (in a multi-user target) or when one terminal had to be launched for the GUI version to launch.
Addressed
5.1.7
GPC-11569
Fixed an issue on Windows endpoints where, if the GlobalProtect app is configured with the Pre-logon (Always On) Connect Method with the Pre-logon Tunnel Rename Timeout value set to -1 (or any other value) and users disable the app and reboot their endpoint, the pre-logon tunnel is up after they login. After the system reboots, the app is disabled but the virtual interface is enabled. With this fix, the app and the virtual interface are disabled after a system reboot.
Addressed
5.1.7
GPC-11525
Fixed an issue where the GlobalProtect app failed to connect to the portal or gateway in the Prisma Access network through the proxy.
Addressed
5.1.7
GPC-11489
Fixed an issue where the GlobalProtect HIP check did not detect Patch Management information for the Microsoft Intune management extension software.
Addressed
5.1.7
GPC-11478
Fixed an issue where, when the GlobalProtect app was installed on macOS devices and the No direct access to local network option was enabled on the gateway, the access route to the default gateway was not properly masked.
Addressed
5.1.7
GPC-11461
Fixed an issue where, after you upgraded and installed the GlobalProtect app, the app was unable to connect to the gateway due to the Failed to get default route entry error message.
Addressed
5.1.7
GPC-11448
Fixed an issue where the GlobalProtect app was unable to establish a connection to the gateway because the fully qualified domain name (FQDN) specified for the gateway mapped to a different IP address during network discovery and pre-login. With this fix, the app performed a network discovery again and connected to the Best Available gateway.
Addressed
5.1.7
GPC-11395
Fixed an issue where, when the GlobalProtect app was installed on macOS devices running macOS Catalina 10.15.4, the GlobalProtect HIP check did not detect Symantec Endpoint Protection 14.3 real-time protection, which caused the device to fail the HIP check.
Addressed
5.1.7
GPC-11393
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the app performed a second network discovery after gateway authentication was successful. This issue resulted in two authentication prompts (for example, the SAML authentication type) right after waking up from sleep mode.
Addressed
5.1.7
GPC-11370
Fixed an issue where the GlobalProtect app selected the geographically distant gateway instead of the gateway with the faster response time. With this fix, the Best Available gateway is now determined by the assigned weight of the gateway.
Addressed
5.1.7
GPC-11349
Fixed an issue where the GlobalProtect HIP check incorrectly detected the Anti-Malware information for the Engine Version , Definition Version , and Date for the CrowdStrike Falcon application.
Addressed
5.1.7
GPC-11346
Fixed an issue where portal authentication failed due to the authentication failure during the GlobalProtect App Config Refresh configuration, which caused users to be locked out of the RSA device.
Addressed
5.1.7
GPC-11218
Fixed an issue where the GlobalProtect HIP check did not detect Symantec Endpoint Protection 14.3 real-time protection, which caused the device to fail the HIP check.
Addressed
5.1.7
GPC-11173
Fixed an issue where the GlobalProtect app was configured with On-Demand mode and continued to stay in connecting state even when manually switching to a different gateway failed. With this fix, the app will now display an error message when switching to a different gateway failed.
Addressed
5.1.7
GPC-10954
Fixed an issue in GlobalProtect for macOS endpoints where installing or upgrading the package using a MDM system such as JAMF Pro resulted in a GlobalProtect app initialization failure.
Addressed
5.1.7
GPC-10934
Fixed an issue where the original DNS suffixes were removed from the client machine and only the DNS suffixes from the gateway were applied.
Addressed
5.1.7
GPC-10831
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the GlobalProtect service modified the DNS suffix system list even when the gateway pushed an empty DNS suffix list.
Addressed
5.1.7
GPC-9912
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and the pre-logon connect method was configured, client certificate authentication failed when the machine certificate either did not contain a Common Name (CN) or Extended Key Usage OID value. This issue resulted in pre-logon tunnel failure.
Addressed
5.1.6
GPC-11538
Fixed an issue where, when the GlobalProtect app was installed on macOS devices running macOS Catalina, the GlobalProtect service restarted after a system reboot or when users logged out and logged in to the endpoint.
Addressed
5.1.6
GPC-11527
Fixed an issue where, when the GlobalProtect app was installed on Windows endpoints and split tunnel was configured based on the application, handle leaks were observed by the GlobalProtect service.
Addressed
5.1.6
GPC-11466
Fixed an issue on Windows 10 endpoints where the Active Directory Users and Computers (ADUC) application experienced high latency when users established a GlobalProtect connection.
Addressed
5.1.6
GPC-11452
Fixed an issue where when the GlobalProtect app was enabled to Collect HIP Data in the GlobalProtect portal agent configuration, the GlobalProtect HIP process activated the subprocess (PanGpHipMp.exe) even when the Patch Management category was excluded.
Addressed
5.1.6
GPC-11402
Fixed an issue where, when the GlobalProtect app was installed on Windows endpoints, the app was disconnected from the VPN tunnel after the pre-logon tunnel grace period expired even when users logged in to the endpoint and the pre-logon tunnel was successfully renamed. This issue occurred when two-factor authentication (2FA) was used.
Addressed
5.1.6
GPC-11392
Fixed an issue where when the GlobalProtect app was installed on macOS devices, the network extensions were not loaded successfully after a system reboot.
Addressed
5.1.6
GPC-11365
Fixed an issue where, when the GlobalProtect app was installed on Linux, the GlobalProtect client hangs after the session timed out.
Addressed
5.1.6
GPC-11269
Fixed an issue where, when the GlobalProtect app was installed on macOS devices running macOS Catalina, the app was unable to establish a pre-logon tunnel.
Addressed
5.1.6
GPC-11268
Fixed an issue where, when the GlobalProtect app was installed on Windows endpoints, the pan_gp_event.log file displayed the date in a different format when compared to the GlobalProtect agent and GlobalProtect service logs.
Addressed
5.1.6
GPC-11257
Fixed an issue where the GlobalProtect app failed to connect to the portal or gateway in the Prisma Access network when the client machine was connected only to the IPv6 network.
Addressed
5.1.6
GPC-11233
Fixed an issue where the GlobalProtect app failed to connect to the portal when the client machine was behind the proxy and the DNS server was not able to resolve the fully qualified domain name (FQDN) of the portal.
Addressed
5.1.6
GPC-11183
Fixed an issue where the GlobalProtect HIP check did not detect real-time protection for Traps version 4.2.2.
Addressed
5.1.6
GPC-11175
Fixed an issue where the GlobalProtect driver caused the Blue Screen of Death errors on Windows endpoints when the third-party antivirus software was installed on the system.
Addressed
5.1.6
GPC-11134
Fixed an issue where the GlobalProtect app did not prevent users from dismissing the welcome page even when the Allow User to Dismiss Welcome Page option was set to No .
Addressed
5.1.6
GPC-11090
Fixed an issue where, when the GlobalProtect app was installed on Linux, users were not able to authenticate through SAML authentication when Microsoft Azure was used as the identity provider (ldP).
Addressed
5.1.6
GPC-11074
Fixed an issue where, when the GlobalProtect app was installed on Windows endpoints, the HIP report did not contain Anti-Malware information for the CrowdStrike Falcon application.
Addressed
5.1.6
GPC-10681
Fixed an issue where the GlobalProtect HIP check did not detect the status as “enabled” in the Firewall setting for the F-Secure Client Security software.
Addressed
5.1.6
GPC-11050
Fixed an issue where the GlobalProtect app tried to establish a connection without a user initiated connection even when the connect method was set to Pre-logon then On-demand .
Addressed
5.1.6
GPC-11038
Fixed an issue where, when the GlobalProtect app was installed on Linux, the domain name of the Linux device was not displayed in the Domain field of the HIP report.
Addressed
5.1.6
GPC-11037
Fixed an issue where, when the GlobalProtect app was installed on macOS endpoints and running the Blackberry Workspaces app, the GlobalProtect app stopped running.
Addressed
5.1.6
GPC-10980
Fixed an issue where the GlobalProtect app sometimes displayed the notifications in the system tray even when the Show System Tray Notifications option was set to No .
Addressed
5.1.6
GPC-10963
Fixed an issue where split tunnel rules based on destination domain was applied to Windows and macOS endpoints even with an invalid GlobalProtect license.
Addressed
5.1.6
GPC-10960
Fixed an issue where, when the GlobalProtect app was installed on Windows 10 endpoints and when users initiated the pre-logon connection, the GlobalProtect Connect button did not display in the Windows logon screen.
Addressed
5.1.6
GPC-10899
Fixed an issue where the GlobalProtect app was not able to establish a tunnel because the third-party software delayed enabling the virtual adapter used by GlobalProtect.
Addressed
5.1.6
GPC-10454
Fixed an issue where, when the GlobalProtect app was installed on macOS endpoints, the HIP report included Disk Backup information that contained invalid characters in the version attribute for the MEGAsync application.
Addressed
5.1.6
GPC-9982
Fixed an issue, when the GlobalProtect app was installed on macOS endpoints running macOS Catalina 10.15 or later and HIP checks were enabled, the macOS endpoint displayed additional pop-ups to the user when GlobalProtect requested to access your Desktop, Documents, and Downloads folders.
Addressed
5.1.5
GPC-11148
Fixed an issue where, when the GlobalProtect app was installed on Android endpoints, client certificate authentication failed even when a valid client certificate was present.
Addressed
5.1.5
GPC-11101
Fixed an issue where, when the GlobalProtect app was installed on macOS devices running macOS Catalina 10.15.4 or later and split tunnel was configured based on the application, file handle leaks were detected after a few weeks of usage.
Addressed
5.1.5
GPC-11062
Fixed an issue where, when the GlobalProtect app was installed on Linux, connection to the portal went through the proxy server even when the portal address was included in the no proxy list.
Addressed
5.1.5
GPC-11049
Fixed a rare issue where the PanGPS log file was not rotated and it caused the PanGPS.log file to consume a large amount of disk space.
Addressed
5.1.5
GPC-11003
Fixed an issue where, when the No direct access to local network option was enabled for split tunnel traffic on macOS Catalina 10.15.4 endpoints, some local network traffic leaked through the physical interface.
Addressed
5.1.5
GPC-10969
Fixed an issue where, when the HIP report incorrectly displayed the Real-Time Protection status of the Heimdal Thor Agent Anti-Malware as no instead of yes .
Addressed
5.1.5
GPC-10955
Fixed an issue where the HIP report incorrectly displayed the Real-Time Protection status of the ESET Antivirus as no instead of yes .
Addressed
5.1.5
GPC-10952
Fixed an issue where the GlobalProtect app was not able to authenticate to the internal gateway even when the FQDN specified in the DHCP Option 43 Code and associated IP address were resolved correctly.
Addressed
5.1.5
GPC-10933
Fixed an issue where the GlobapProtect app included a default route with a metric that was less than the system default route when split tunnel based on the destination domain was configured as inclusions. This issue caused traffic to leak through the tunnel.
Addressed
5.1.5
GPC-10921
Fixed an issue where, when the GlobalProtect app was installed on Windows and connected to the gateway that had split tunnel configured based on the domain and application, traffic sent through the tunnel stopped for a few minutes even when GlobalProtect was still connected.
Addressed
5.1.5
GPC-10919
Fixed an issue where, when data was not exchanged between the GlobalProtect service and GlobalProtect agent for more than 2 hours because the TCP connection was not validated and blocked. This issue caused GlobalProtect to fail.
Addressed
5.1.5
GPC-10890
Fixed an issue where the Kaspersky Endpoint Security Virus Definition Date in the GlobalProtect HIP report did not match the actual date of the definition in the antivirus software.
Addressed
5.1.5
GPC-10886
Fixed an issue where the GlobalProtect app failed to retrieve the client configuration that was defined in the portal using the configuration selection criteria when the Common Name (CN) of the certificate contained special characters.
Addressed
5.1.5
GPC-10879
Fixed an issue where, when the GlobalProtect app was installed on macOS devices running macOS Catalina 10.15.4, the app was unable to connect to the gateway after a reboot of the GlobalProtect client.
Addressed
5.1.5
GPC-10864
Fixed an issue where the GlobalProtect app in pre-logon mode tried to connect to the portal every five seconds when the pre-logon cookie authentication expired. With this fix, the app does not retry the connection to the portal until after 30 minutes.
Addressed
5.1.5
GPC-10820
Fixed an issue where the GlobalProtect client failed to refresh the portal configuration after 1 hour even though the refresh-config-interval value was set to 1 hour. This issue occurred when the user tunnel was established after pre-logon with the Pre-Logon-Tunnel-Rename-Timeout value was set to 0.
Addressed
5.1.5
GPC-10763
Fixed an issue where, when the GlobalProtect app was installed on Windows, the app did not connect to the preferred gateway after a system reboot.
Addressed
5.1.5
GPC-10752
Fixed an issue where, when the GlobalProtect app was installed on Windows, the app retained the tunnel after switching Windows users even when the GlobalProtect Tunnel Preservation on User Logout value was set to 0.
Addressed
5.1.5
GPC-10497
Fixed an issue where the GlobalProtect HIP check did not correctly detect real-time protection and the Windows Defender version on Windows endpoints, which caused the endpoints to fail the HIP check.
Addressed
5.1.5
GPC-10422
Fixed an issue where the GlobalProtect HIP check did not detect real-time protection for Traps version 6.1.x and 7.0.x.
Addressed
5.1.5
GPC-9594
Fixed an issue where, when the gateway was configured to include split tunnel traffic based on the destination domain, some packets still leaked through the physical adapter.
Addressed
5.1.4
GPC-10843
Fixed an issue where, when the GlobalProtect app was installed on iOS endpoints, the app did not automatically reconnect to the external gateway when users moved from the internal network to the external network.
Addressed
5.1.4
GPC-10818
Fixed an issue where, when the GlobalProtect app was installed on macOS devices, the HIP process restarted multiple times.
Addressed
5.1.4
GPC-10785
Fixed an issue where the Only with User Fingerprint option was enabled on the GlobalProtect client even though this option was not configured on the portal.
Addressed
5.1.4
GPC-10745
Fixed an issue where authentication to the GlobalProtect gateway failed as the challenge response for multi-factor authentication was sent to the portal and not to the gateway. This issue occurred when the pre-logon tunnel was not renamed to the user tunnel and the user tried to authenticate to the gateway. With this fix, GlobalProtect authentication is now successful.
Addressed
5.1.4
GPC-10736
Fixed an issue where the GlobalProtect client on macOS endpoints did not select the client certificate when the certificate did not have the client authentication enabled for the Extended Key Usage .
Addressed
5.1.4
GPC-10682
Fixed an issue where, when the GlobalProtect app was installed on Linux, domain.com was sent in the HIP profile instead of the correct domain.
Addressed
5.1.4
GPC-10679
Fixed an issue where, when the GlobalProtect app was installed on macOS, the GlobalProtect client tried to connect to the portal after the installation when the On-Demand connect method was defined in the property list (plist).
Addressed
5.1.4
GPC-10665
Fixed an issue where, when the GlobalProtect app was installed on Windows using Security Assertion Markup Language (SAML) authentication and the Allow user to Sign Out from GlobalProtect App option was set to Yes , the username and Sign Out button were not displayed on the app even when the Save User Credentials option was set to No .
Addressed
5.1.4
GPC-10649
Fixed an issue where, when the GlobalProtect app was installed on Linux, GlobalProtect failed to send an XML compliant HIP report to the firewall.
Addressed
5.1.4
GPC-10619
Fixed an issue where the GlobalProtect Refresh Connection window displayed the wrong French characters when the system language was French.
Addressed
5.1.4
GPC-10591
Fixed an issue where, when the GlobalProtect app was installed on Windows, the app failed to download the software from the portal when the proxy auto-configuration files were used.
Addressed
5.1.4
GPC-10590
Fixed an issue where, when the GlobalProtect app was installed on Windows UWP, the app failed to connect to the portal or gateway when multi-factor authentication (MFA) was used.
Addressed
5.1.4
GPC-10580
Fixed an issue where the GlobalProtect client failed to authenticate to the Prisma Access gateway when multi-factor authentication was used.
Addressed
5.1.4
GPC-10575
Fixed an issue where, when the GlobalProtect app was installed on macOS devices running macOS Catalina 10.15.4, the app restarted multiple times and was not able to connect to the gateway.
Addressed
5.1.4
GPC-10566
Fixed an issue where, when the GlobalProtect app was installed on Windows, the Pre-logon then On-demand connect method did not work properly. When you set the Pre-logon Tunnel Rename Timeout value to 0, GlobalProtect established a user tunnel after users logged in to the endpoint instead of remaining disconnected (On-Demand mode).
Addressed
5.1.4
GPC-10565
Fixed an issue where, when the GlobalProtect app was installed on Linux, the app did not send the complete HIP report due to many missing patch management entries and caused parsing issues on the gateway.
Addressed
5.1.4
GPC-10553
Fixed an issue where, when the GlobalProtect app was installed on Windows in On-Demand mode, the app was disconnected from the tunnel, and the HIP report was not sent to the gateway even when the gateway was selected manually after the device reboot.
Addressed
5.1.4
GPC-10542
Fixed an issue where users were prompted to enter their credentials on the GlobalProtect app 5.0.9 every time their macOS device running macOS Catalina 10.15.3 reboots.
Addressed
5.1.4
GPC-10477
Fixed an issue where the GlobalProtect HIP check did not detect real-time protection for Traps version 7.0.1 on Windows 10 endpoints, which caused the endpoints to fail the HIP check.
Addressed
5.1.4
GPC-10469
Fixed an issue on Windows endpoints where, if the GlobalProtect app is configured with the Pre-logon (Always On) Connect Method and users disable the app and reboot their endpoint, the pre-logon tunnel is up after they login.
Addressed
5.1.4
GPC-10338
Fixed an issue where, after you upgraded the GlobalProtect app from 5.0.x release to 5.1.1 release on Windows endpoints, the username displayed Chinese characters instead of English characters.
Addressed
5.1.4
GPC-10295
Fixed an issue where, when a split tunnel based on the destination domain was configured on macOS Catalina 10.15.4 endpoints, all Safari-based traffic and all Mac App Store-based traffic that were defined in the split tunnel configuration were dropped. The same issue also occurred when you configured a split tunnel based on the applications downloaded from the Mac App Store. All traffic that was created for the configured applications were dropped. With this fix, traffic defined in the split tunnel configuration will not be dropped using Safari.
Addressed
5.1.4
GPC-10241
Fixed an issue where the grace period decreased and GlobalProtect is disconnected even after gateway authentication was successful for the switch to the new user.
Addressed
5.1.4
GPC-10200
Fixed an issue where, when the GlobalProtect app was installed on Android devices, the app failed to reconnect and continued to stay in connecting state. Users had to close and launch the app to establish the connection.
Addressed
5.1.4
GPC-9992
Fixed an issue where the GlobalProtect HIP process (PanGpHip) on Windows endpoints caused high CPU usage on the endpoint even when users remain idle.
Addressed
5.1.3
GPC-10574
Fixed an issue where, when the GlobalProtect app was installed on Windows with a different language other than English (for example, Spanish), the GlobalProtect agent was continuously restarted.
Addressed
5.1.3
GPC-10535
Fixed an issue where, after you upgraded the GlobalProtect app from 5.0.x release to 5.1.1 release on a macOS device, users were prompted to re-enter their password even when the saved password was set to Yes . With this fix, users will not be prompted to re-enter their password after the upgrade. For GlobalProtect to access user credentials from the login keychain, the following Keychain Pop-Up message will appear:
GlobalProtect wants to use your confidential information stored in "GlobalProtect" in your keychain.
Users are prompted to enter their password and then select Always Allow so that the Keychain Pop-Up prompt does not appear again.
Addressed
5.1.3
GPC-10468
Fixed an issue where, when the GlobalProtect app was installed on Windows, two OpenSSL DLL files in 64-bit were not signed by a Palo Alto Networks certificate. This issue caused a problem for some endpoint protection applications.
Addressed
5.1.3
GPC-10403
Fixed an issue where the GlobalProtect app for macOS was disabled and the Disable Timeout (min) value expired, GlobalProtect could reconnect and user credentials were not preserved.
Addressed
5.1.3
GPC-10395
Fixed an issue where the GlobalProtect app for macOS version 5.1.1 could not be properly installed because the GlobalProtect service failed to launch.
Addressed
5.1.3
GPC-10380
Fixed an issue where the GlobalProtect app on macOS displayed the following error message when all the gateways were configured as Manual Only priority:
Could not connect to Gateway, Contact your IT administrator
With this fix, the app now displays the following message:
Please select a gateway to connect manually
Addressed
5.1.3
GPC-10341
Fixed an issue on Windows endpoints where, after the endpoint woke up from sleep mode, the GlobalProtect app was disconnected and then attempted to reconnect to the portal or gateway.
Addressed
5.1.3
GPC-10311
Fixed an issue where, when the GlobalProtect app was installed on macOS and Windows, cookie authentication was successful even when the wrong password was used and GlobalProtect was still connected after users sign out of the app. With this fix, authentication cookies are now deleted from the system when users sign out of the app.
Addressed
5.1.3
GPC-10288
Fixed an issue where, when GlobalProtect was installed using the Windows Installer (Msiexec) with on-demand as the connect method, GlobalProtect automatically tried to connect to the portal.
Addressed
5.1.3
GPC-10261
Fixed an issue where the GlobalProtect app displayed the customized Captive Portal Detection Message in the wrong format when a different language was used other than English.
Addressed
5.1.3
GPC-10227
Fixed a connectivity issue where, when the GlobalProtect app was installed for macOS Catalina, the GlobalProtect connection was periodically lost.
Addressed
5.1.3
GPC-10228
Fixed an issue where the GlobalProtect app detected the presence of a captive portal even though it was not present.
Addressed
5.1.3
GPC-10118
Fixed a periodic issue where the GlobalProtect tunnel failed to be restored after waking up from sleep mode. This issue occurred when on-demand was used as the connect method.
Addressed
5.1.3
GPC-10024
Fixed an issue where, after upgrading to GlobalProtect 5.0.6, the GlobalProtect HIP check did not detect that Symantec Endpoint Protection 14.2 real-time protection was enabled, which caused the device to fail the HIP check.
Addressed
5.1.3
GPC-10190
Fixed an issue where the GlobalProtect app on macOS failed to find the correct certificate for authentication to the gateway, when the object identifier (OID) was specified in the plist.
With this fix, when you provide the Key Usage OID in the plist, the GlobalProtect app uses the correct certificate.
Addressed
5.1.3
GPC-9913
Fixed an issue where the portal configuration selection criteria failed when the certificate was signed with the version 2 template.
Addressed
5.1.3
GPC-9779
Fixed an issue that caused the GlobalProtect app to install a default route with the same metric as the system default route, when split-tunneling based on access route and destination domain was enabled. This issue caused some excluded traffic to go through the tunnel.
Addressed
5.1.3
GPC-9730
Fixed an issue where GlobalProtect failed to connect to the external gateway when the proxy was not reachable outside of the corporate network until the GlobalProtect service or the desktop was restarted.
Addressed
5.1.3
GPC-9500
Fixed an issue in GlobalProtect for macOS endpoints where installing or upgrading the package using a Mobile Device Management (MDM) solution such as JAMF Pro resulted in a GlobalProtect app initialization failure.
Addressed
5.1.3
GPC-10334
Fixed an issue with the GlobalProtect app on iOS that occurred when two VPN profiles (one device-level VPN profile and one per-app VPN profile) were pushed from the mobile device management (MDM) server. This issue occurred when users initiated the per-App VPN connection using one iOS app that was on the allow list. The GlobalProtect app displayed the status as “Disconnected” and the app did not respond to TAP TO CONNECT . This prevented users from disconnecting from the per-App tunnel and establishing a device-level VPN tunnel.
Addressed
5.1.3
GPC-10303
Fixed an issue where, when GlobalProtect was installed on iOS endpoints, the GlobalProtect app displayed the Can’t end Background Task error message from the GlobalProtect agent logs. This issue occurred periodically when TAP TO CONNECT was used to establish the GlobalProtect connection from the home screen.
Addressed
5.1.3
GPC-10229
Fixed an issue where, when GlobalProtect was installed on iOS endpoints, the GlobalProtect app failed to perform a successful network discovery when there was a region mismatch between the portal and the gateway.
Addressed
5.1.3
GPC-9135
Fixed an issue where, when GlobalProtect was installed on iOS devices, the GlobalProtect app did not display a specific notification message when the GlobalProtect session has timed out.
Addressed
5.1.2
GPC-10444
Fixed an issue where, when the GlobalProtect Android app was installed on Chromebooks, the GlobalProtect app failed to connect to the tunnel because GlobalProtect was not running.
Addressed
5.1.2
GPC-10370
Fixed an issue where, when the GlobalProtect app was installed on Android endpoints, the app hangs and the VPN connection failed to be restored. This issue occurred when users switch from an external network to an internal network after the Automatic Restoration of VPN Connection Timeout option was set to Yes .
Addressed
5.1.2
GPC-10362
Fixed an issue where client certificate authentication was failing on Android 10 devices even when the certificate was manually selected.
Addressed
5.1.2
GPC-10348
Fixed an issue where, when the GlobalProtect app was upgraded to 5.1.1 on an Android device, the client could no longer connect to the gateway with the custom port configuration.
Addressed
5.1.2
GPC-9135
Fixed an issue where, when GlobalProtect was installed on Android devices, the GlobalProtect app did not display a specific notification message when the GlobalProtect session has timed out.
Addressed
5.1.2
GPC-10011
Fixed a graphical user interface issue with the GlobalProtect app that occurred when the device-level VPN profile and the per-app VPN profile were pushed from the mobile device management (MDM) server. This issue occurred when users initiated the VPN connection from the iOS VPN settings ( Settings General VPN ), and the GlobalProtect app automatically transitioned to “Connected”. After a VPN connection was established and the app was launched, the graphical user interface still displayed “Disconnected” even though the VPN connection was actually running in the background.
Addressed
5.1.2
GPC-10173
Fixed an issue where, when GlobalProtect was installed for iOS and Security Assertion Markup Language (SAML) was used to authenticate mobile users, the GlobalProtect app did not send information about the mobile device such as the operating system and the browser User-Agent string.
Addressed
5.1.1
GPC-10006
Fixed an issue where the GlobalProtect app was upgraded to 5.1.0 on an iOS device. This issue occurred because the GlobalProtect was restarted during portal or gateway authentication.
Addressed
5.1.1
GPC-10239
Fixed an issue where, when GlobalProtect was installed for Android 10, the GlobalProtect app was not able to use the client certificate for authentication. This issue occurred when the client certificate was created with an algorithm other than RSA.
Addressed
5.1.1
GPC-10260
Fixed an issue where, when GlobalProtect was installed for Windows UWP, the GlobalProtect app crashed when traffic was sent through the IPSec tunnel.
Addressed
5.1.1
GPC-10174
Fixed an issue where, when GlobalProtect was installed for Android and Security Assertion Markup Language (SAML) was used to authenticate mobile users, the GlobalProtect app did not send the complete information about the mobile device such as the User-Agent string for the web browser. With this fix, the GlobalProtect app can now send the device information while performing SAML authentication.
Addressed
5.1.1
GPC-10162
Fixed an issue where, when GlobalProtect was installed for macOS, the GlobalProtect client used the expired certificate instead of the new certificate for portal authentication. This issue occurred when both expired and new certificates were installed for macOS. With this fix, the GlobalProtect client will no longer use the expired certificate for authentication.
Addressed
5.1.1
GPC-10140
Fixed an issue where, when GlobalProtect was installed on CentOS, the GlobalProtect portal or gateway authentication prompt did not display the customized authentication messages that were configured in the portal configuration. With this fix, the customized authentication messages are now displayed correctly.
Addressed
5.1.1
GPC-10136
Fixed a connectivity issue where GlobalProtect failed to reconnect to the network. This issue occurred when different portal configurations were pushed from a mobile device management (MDM) system one at a time.
Addressed
5.1.1
GPC-10110
Fixed an issue where the GlobalProtect client was not enabled automatically after a reboot even when the duration timer has expired. This issue occurred when the GlobalProtect client was disabled and your system was rebooted. With this fix, the GlobalProtect client will now be enabled automatically even after a reboot.
Addressed
5.1.1
GPC-10108
Fixed an issue where GlobalProtect crashed on macOS devices when the Automatic Proxy Configuration was enabled.
Addressed
5.1.1
GPC-10100
Fixed an issue where, when the GlobalProtect Android app was installed on Chromebooks with On-Demand mode, the GlobalProtect app failed to connect to the tunnel after the device was in “sleep” mode.
Addressed
5.1.1
GPC-10037
Fixed an issue where the IPSec connection failed on a dual stack environment. This issue occurred when the IPv6 preferred option was set to No .
Addressed
5.1.1
GPC-10023
Fixed an issue where, when the GlobalProtect Android app was installed on Chromebooks with Always On mode and managed using the Google Admin console, the device did not reconnect after a reboot.
Addressed
5.1.1
GPC-9959
Fixed an issue where macOS users could not connect to the GlobalProtect gateway during manual gateway selection. This issue occurred because the portal and gateway were configured to authenticate users through Security Assertion Markup Language (SAML) authentication with the On-Demand connect method. With this fix, users can now connect to the manual gateway upon the first attempt.
Addressed
5.1.1
GPC-9855
Fixed an issue where the GlobalProtect App for macOS did overwrite the local DNS search domains with the tunnel DNS search domains. This occurred when the “Append Local Search Domains to Tunnel DNS Suffixes (macOS Only)” app setting was set to “No” in the portal agent configuration. With this fix, the tunnel DNS search domains are now appended with the local DNS search domains when the “Append Local Search Domains to Tunnel DNS Suffixes (macOS Only)” app setting is set to “Yes” in the portal agent configuration.
Addressed
5.1.1
GPC-9463
Fixed an issue where Ubuntu 19.04 did not display the GlobalProtect system tray icon or the app could not be launched by clicking the system tray icon.
Addressed
5.1.1
GPC-8743
Fixed an issue where the GlobalProtect app was frequently generating the pop-up dialog to request that you change your password even when the password was not set to expire.
Addressed
5.1.0
GPC-10099
Fixed an issue where GlobalProtect app for Android could not be properly connected with two-factor authentication due to a change in the default value for the TCP Receive Timeout (sec) option. With this fix, the default is now 30 seconds.
Addressed
6.0.11
GPC-20763
Fixed an issue where the is-enabled value for HIP showed N/A for MacOS 15 Sequoia's built-in firewall. The value should be either yes or no.
Addressed
6.0.10-c826
GPC-21767
Fixed an issue where the GlobalProtect 6.0.10 build did not include panPlapApp.exe in the Windows\System32\ path.
Addressed
6.0.10-814
GPC-20570
Fixed an issue where the .msi file for GlobalProtect app for Windows version 6.0.10 downloaded from the Palo Alto Networks Customer Support Portal was not signed.
Addressed
6.0.10
GPC-20114
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the certificate information was incorrect during the portal login phase causing authentication failure.
Addressed
6.0.10
GPC-20112
Fixed an issue where the GlobalProtect HIP check incorrectly detected Real time protection status for Kaspersky Endpoint Security, which caused the device to fail the HIP check.
Addressed
6.0.10
GPC-19966
Fixed an issue where the embedded browser was unable to load the Microsoft IdP login page for the users to authenticate to the GlobalProtect app.
Addressed
6.0.10
GPC-19948
Fixed an issue where connection to the GlobalProtect portal failed with the error Username from CAS SSO response is different from the input.
Addressed
6.0.10
GPC-19924
Fixed an issue where the users faced intermittent connection issues while accessing GlobalProtect using an embedded browser.
Addressed
6.0.10
GPC-19901
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app got disconnected and reconnected intermittently.
Addressed
6.0.10
GPC-19833
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the Smart card (Yubikey) authentication did not work when the device woke up from sleep mode.
Addressed
6.0.10
GPC-19829
Fixed an issue where the manual gateway login failed when users tried to login using their username and password.
Addressed
6.0.10
GPC-19818
Fixed an issue where, when the GlobalProtect app was installed on devices running macOs and when the Enforcer was enabled, Jamf connect was not working after the MacBook was rebooted. Users had to log in manually.
Addressed
6.0.10
GPC-19756
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect app got stuck in the Connecting status when the embedded browser did not load properly.
Addressed
6.0.10
GPC-19712
Fixed an issue where PanGPS did not work on GlobalProtect app version 6.0.4 due to invalid memory reference and users were unable to reconnect to the GlobalProtect app after a system reboot.
Addressed
6.0.10
GPC-19696
Fixed an issue where, when the GlobalProtect app was installed on endpoints running macOS and the split tunnel was configured based on the application for Zoom, users were unable to access any sites when the split tunnel was disabled for Zoom and moved to full tunnel.
Addressed
6.0.10
GPC-19686
Fixed an issue where translation errors were observed in the GlobalProtect app for French localization.
Addressed
6.0.10
GPC-19659
Fixed an issue where macOS users were connected to the GlobalProtect app before they agreed to their company’s terms of service.
Addressed
6.0.10
GPC-19657
Fixed an issue where, when the GlobalProtect app was installed on endpoints running macOS and split tunnel was configured based on the application, the Zoom app got disconnected intermittently.
Addressed
6.0.10
GPC-19630
Fixed an issue where the prelogon connect method failed on the GlobalProtect gateway prelogin stage.
Addressed
6.0.10
GPC-19629
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the split tunnel feature did not work as expected when Jamf was used to push the configuration policy rules.
Addressed
6.0.10
GPC-19603
Fixed an issue where the GlobalProtect app displayed a generic SAML login page and not the actual login page for authentication and the connection was not established when cached portal configuration was used.
Addressed
6.0.10
GPC-19587
Fixed an issue where, when the Globalprotect app was installed on devices running macOS and Endpoint Traffic Policy Enforcement was set to All traffic , users were unable to log in using Okta.
Addressed
6.0.10
GPC-19545
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, users were unable to connect to the GlobalProtect app when they used T-Mobile iPhone hotspot.
Addressed
6.0.10
GPC-19513
Fixed an issue where the GlobalProtect app was trying to use the old portal's authorization cookie to login instead of the newly migrated portal. This happened when the user changed from secondary portal to primary portal or vice versa without signing out.
Addressed
6.0.10
GPC-19505
Fixed an issue where the GlobalProtect embedded browser for SAML authentication window obscured the two-factor authentication prompt hindering the users from entering their PIN.
Addressed
6.0.10
GPC-19475
Fixed an issue where users got connection errors in an embedded browser after the computer woke up from sleep or when the user switched gateways.
Addressed
6.0.10
GPC-19449
Fixed an issue where, when the user used CAS token to authenticate, the system logs incorrectly displayed an error message during the GlobalProtect auto refresh configuration interval.
Addressed
6.0.10
GPC-19433
Fixed an issue where a small white blank page randomly popped up on the device screen distracting the users. This issue occurred while the device was connected to GlobalProtect app.
Addressed
6.0.10
GPC-19403
Fixed an issue where the GlobalProtect HIP check failed to detect Kaspersky after an upgrade from 21.3.10.391 to 21.15.8.493.
Addressed
6.0.10
GPC-19400
Fixed an issue where the GlobalProtect HIP check incorrectly detected year and date for Bitdefender Virus Scanner, which caused the device to fail the HIP check.
Addressed
6.0.10
GPC-19391
Fixed an issue where GlobalProtect stayed disconnected even when the device was unlocked by the user.
Addressed
6.0.10
GPC-19387
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app displayed text incorrectly when the system language was German.
Addressed
6.0.10
GPC-19378
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app displayed text incorrectly when the system language was German.
Addressed
6.0.10
GPC-19374
Fixed an issue where the GlobalProtect debug logs displayed information, which was not supposed to display in the logs.
Addressed
6.0.10
GPC-19365
Fixed an issue where the GlobalProtect app displayed a timeout page intermittently when users tried to authenticate with SAML and using an embedded browser.
Addressed
6.0.10
GPC-19359
Fixed an issue where system extensions on MacBook were not updated after the GlobalProtect app was upgraded.
Addressed
6.0.10
GPC-19337
Fixed an issue where the Captive Portal functionality of the GlobalProtect app did not work as expected when users used public Wi-Fi hotspots and the users were unable to connect to the app.
Addressed
6.0.10
GPC-19331
Fixed an issue where, when SAML authentication was used to authenticate to the GlobalProtect app, the app used an unknown username SAML User which was not configured instead of the actual username of the user, which caused an authentication failure.
Addressed
6.0.10
GPC-19340
Fixed an issue where the GlobalProtect app failed to send HIP reports hourly.
Addressed
6.0.10
GPC-19323
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and split tunnel was configured to exclude application traffic for Zoom, Zoom application did not work as expected.
Addressed
6.0.10
GPC-19314
Fixed an issue where, when the GlobalProtect app is installed on devices running macOS, the app displayed the message, Downloading in progress when the GlobalProtect app was upgraded to 6.0.x using the option Allow Transparently . The app should not display the message when upgraded using the transparent method.
Addressed
6.0.10
GPC-19280
Fixed an issue where, when the GlobalProtect app transitioned from pre-logon to userlogon tunnel, the app did not display the list of gateways for the users to change the gateway. The gateway list was displayed only when the app was refreshed.
Addressed
6.0.10
GPC-19262
Fixed an issue where GlobalProtect 6.2.1 tried to connect automatically after the user restarted their computer even though the connect method was set to On-Demand .
Addressed
6.0.10
GPC-19237
Fixed an issue where the GlobalProtect app did not disconnect when the user used the Disable option on the hamburger menu. The tunnel was still up and connected even when the user disconnected the GlobalProtect app.
Addressed
6.0.10
GPC-19211
Fixed an issue where the users were unable to authenticate to the GlobalProtect app using the SAML authentication method with single sign-on (SSO). The app displayed the following message when users tried to authenticate to the app, Cloud Authentication Service single-sign-on failed and the users had to try multiple times to authenticate successfully to the app.
Addressed
6.0.10
GPC-19193
Fixed an issue where the GlobalProtect app was unable to fetch Windows firewall and antimalware information correctly.
Addressed
6.0.10
GPC-19181
Fixed an issue where the GlobalProtect HIP check did not detect the definition version correctly for Cortex XDR (8.0.1.33809).
Addressed
6.0.10
GPC-19169
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and domain and app traffic exclusion was configured for Zoom but users were unable to connect to the Zoom application when the app was connected.
Addressed
6.0.10
GPC-19162
Fixed an issue where, when the user upgraded the GlobalProtect version to 5.2.13 or later, the HIP report displayed the DLP Digital Guardian Agent as disabled.
Addressed
6.0.10
GPC-19143
Fixed an issue where the users were unable to choose the correct certificate for the app as the configured registry value previousCertificate did not work as expected.
Addressed
6.0.10
GPC-19104
Fixed an issue where the GlobalProtect HIP report failed to detect the Real Time Protection status for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.0.10
GPC-19083
Fixed an issue where when the GlobalProtect app was installed on devices running macOS, the Connection tab under app Settings did not display the connection status and the refresh connection did not work when the Settings window was opened.
Addressed
6.0.10
GPC-19060
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the Connection tab under app Settings did not display the connection status when the app was changed from a non-tunneled gateway to a tunneled gateway.
Addressed
6.0.10
GPC-19044
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and the user changed the network from wired to wireless within the organization, the device displayed a blue screen.
Addressed
6.0.10
GPC-19023
Fixed an issue where, when the GlobalProtect app version 5.2.13 was installed on devices running macOS, the users were unable to connect to the Zoom application.
Addressed
6.0.10
GPC-19009
Fixed an issue where, when SAML authentication was used to authenticate to the GlobalProtect app and the user changed the gateway to a manual gateway, the app stayed in the Connecting stage.
Addressed
6.0.10
GPC-18992
Fixed an issue where internet via WiFi connection was unavailable for GlobalProtect users after their computer woke up from sleep because the app WiFi adapter was unable to obtain a DHCP IP address. This issue occurred on devices where Enforce GlobalProtect for Network Access feature was enabled.
Addressed
6.0.10
GPC-18983
Fixed an issue where the Central Authentication Service (CAS) authentication did not work when the GlobalProtect app was connected to an internal gateway and the app repeatedly opened the SAML authentication page.
Addressed
6.0.10
GPC-18968
Fixed an issue where the GlobalProtect app displayed You are on the internal corporate network message when users were on a public network. Users had to reboot the system to resolve this issue.
Addressed
6.0.10
GPC-18964
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and the user upgraded the GlobalProtect version from 6.0.5 to 6.2.1, the app got disconnected after 10 minutes.
Addressed
6.0.10
GPC-18933
Fixed an issue where the GlobalProtect HIP check incorrectly detected Real Time Protection for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.0.10
GPC-18913
Fixed an issue where the GlobalProtect app displayed the connection status as Not Connected even though the app was connected to the internal gateway.
Addressed
6.0.10
GPC-18913
Fixed an issue where the GlobalProtect app displayed the connection status as Not Connected even though the app was connected to the internal gateway.
Addressed
6.0.10
GPC-18907
Fixed an issue where the GlobalProtect app running on macOS endpoints did not query the secondary DNS (when primary DNS is not responding) when the domain was part of the exclude domain list (both network and DNS).
Addressed
6.0.10
GPC-18906
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect HIP check did not detect the Trellix Endpoint Security application, which caused the device to fail the HIP check.
Addressed
6.0.10
GPC-18861
Fixed an issue where the GlobalProtect MSI download was getting stuck at 27%.
Addressed
6.0.10
GPC-18828
Fixed an issue where split tunnel CNAME records were created before the GlobalProtect tunnel was established.
Addressed
6.0.10
GPC-18815
Fixed an issue where the Logon button on the GlobalProtect login screen stopped working after receiving the Microsoft Edge WebView2 runtime, 117.0.2045.36 update on the devices.
Addressed
6.0.10
GPC-18750
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect HIP check did not detect the Total Defense antivirus application, which caused the device to fail the HIP check.
Addressed
6.0.10
GPC-18703
Fixed an issue where the GlobalProtect HIP check did not detect the Trellix Endpoint Security application, which caused the device to fail the HIP check.
Addressed
6.0.10
GPC-18702
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the Allow Manually upgrade failed when the user tried to upgrade the GlobalProtect app version from 6.0.5 to 6.0.7
Addressed
6.0.10
GPC-18695
Fixed an issue where, when the GlobalProtect app version 6.0.7 was installed on devices running macOS, the Allow with Passcode option did not work as expected when the user tried to disable the GlobalProtect app with the configured passcode.
Addressed
6.0.10
GPC-18528
Fixed an issue where the GlobalProtect HIP check incorrectly detected the version for KES 12 (Kaspersky Endpoint Security), which caused the device to fail the HIP check.
Addressed
6.0.10
GPC-18385
Fixed an issue where, when the GlobalProtect app got reconnected after the user changed the network access from Wi-Fi (IPv4 only) to Ethernet connection (Dual Stack IPv4 + IPv6), the IPv6 ip-user mapping was missing on the firewall and only IPv6 ip-user mapping was available. The user had to refresh the connection to resolve this issue.
Addressed
6.0.10
GPC-18384
Fixed an issue where GlobalProtect app did not connect while Netskope was connected and vice-versa.
Addressed
6.0.10
GPC-18239
Fixed an issue where the GlobalProtect app would not close when the user clicked the icon on the taskbar due to a bug in the Windows 11 operating system.
Addressed
6.0.10
GPC-17398
Fixed an issue where the Settings option under Connection did not display the Assigned IP Address(es) and Gateway IP Address properly.
Addressed
6.0.10
GPC-16975
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader did not announce the name of the GlobalProtect gateway when the gateway was marked with the star symbol.
Addressed
6.0.10
GPC-16597
Fixed an issue where the GlobalProtect app stopped working when the app was upgraded from version 5.2.8 to 6.0.3.
Addressed
6.0.10
GPC-15750
Fixed an issue where a hyperlink in a HIP notification opened in the GPO-disabled Internet Explorer 11 browser instead of the default browser.
Addressed
6.0.8
GPC-18822
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and the device was reset using the Microsoft Recovery tool, the GlobalProtect app was not properly displayed.
Addressed
6.0.8
GPC-18788
Fixed an issue where the GlobalProtect HIP check did not detect McAfee Total Protection as an anti-malware application, which caused the device to fail the HIP check.
Addressed
6.0.8
GPC-18733
Fixed an issue where the hyperlinks with the URLs containing the = character in the HIP notification message did not work as expected and the page did not open when the user clicked the URL.
Addressed
6.0.8
GPC-18728
Fixed an issue where the I Agree option on the GlobalProtect app Welcome page did not work as expected when the user selected the option using a keyboard.
Addressed
6.0.8
GPC-18720
Fixed an issue where the GlobalProtect app became unresponsive when the user clicked the ESC button during authentication using a hard token.
Addressed
6.0.8
GPC-18598
Fixed an issue where the GlobalProtect SSO tile was selected instead of the Windows Password tile in the Windows Login screen even though the registry key MakeGPCPDefault was set to No .
Addressed
6.0.8
GPC-18594
Fixed an issue where the GlobalProtect app was unable to send HIP reports when the app was connected using IPv6 address.
Addressed
6.0.8
GPC-18568
Fixed an issue where the Captive Portal Detection functionality of the GlobalProtect app did not work as expected when the users used public Wi-Fi hotspots and the GlobalProtect app failed to retrieve cached configuration without a username.
Addressed
6.0.8
GPC-18543
Fixed an issue where the GlobalProtect app was installed on Windows devices with the split tunnel feature and when the user excluded the access route, the GlobalProtect app excluded only the route and did not exclude the subnets.
Addressed
6.0.8
GPC-18471
Fixed an issue where, when multiple wa_3rd_party_host_64.exe processes persisted even after the HIP check was performed due to which the GlobalProtect app stopped working.
Addressed
6.0.8
GPC-18426
Fixed an issue where, when the GlobalProtect app was configured with the Disable GlobalProtect option set to Allow with Ticket , the app did not display the correct Disable Duration time.
Addressed
6.0.8
GPC-18379
Fixed an issue where, when the IP address type was set to IPv4 and IPv6, the GlobalProtect app could connect only to the manual gateway instead of connecting to the best available gateway.
Addressed
6.0.8
GPC-18336
Fixed an issue where, when the GlobalProtect app got automatically connected after a system reboot even though the connection method configured was On-Demand.
Addressed
6.0.8
GPC-18318
Fixed an issue where, when the GlobalProtect app was connected to the internal gateway, the app displayed the incorrect message : Connected - Inter.... instead of Connected .
Addressed
6.0.8
GPC-18285
Fixed an issue where the GlobalProtect app displayed an incorrect gateway location name instead of the correct gateway location configured by the user.
Addressed
6.0.8
GPC-18281
Fixed an issue where the MSI install logs showed mutiple messages for Autonomous DEM installation.
Addressed
6.0.8
GPC-18263
Fixed an issue where, when the GlobalProtect app was configured with Endpoint Traffic Policy Enforcement and Disable Local Subnet Access (DLSA), the Autonomous DEM reported users’ internet connection as down.
Addressed
6.0.8
GPC-18251
Fixed an issue where the GlobalProtect HIP check did not detect McAfee LiveSafe as an anti-malware application, which caused the device to fail the HIP check.
Addressed
6.0.8
GPC-18242
Fixed an issue where the end users were prompted to enter Windows login credentials (username and password) instead of their PIV Badge PIN when the system was unlocked or after a system reboot.
Addressed
6.0.8
GPC-18230
Fixed an issue where, when the user entered credentials during SAML authentication after the set internal login timer, the app displayed an authentication failed message without providing the reason. The Retry button on the app web interface did not work properly when using an embedded browser for authentication. The Retry button was not fully visible on the embedded browser.
Addressed
6.0.8
GPC-18223
Fixed an issue where GlobalProtect experienced a prolonged connection time when IPv6 was disabled on Windows, but GlobalProtect Portal was configured to assign IPv6 addresses.
Addressed
6.0.8
GPC-18200
Fixed an issue where the GlobalProtect HIP check did not detect McAfee LiveSafe as an antivirus application, which caused the device to fail the HIP check.
Addressed
6.0.8
GPC-18175
Fixed an issue where users were prompted to enter their credentials even when the GlobalProtect app was configured for authenticating with either Authentication Profile /Cookie or Client Certificate.
Addressed
6.0.8
GPC-18173
Fixed an issue where the vertical scroll bar on the GlobalProtect app web interface did not work properly when users tried to select the certificate from the drop-down.
Addressed
6.0.8
GPC-18171
Fixed an issue where users were unable to select the external gateway manually when connected to the internal network. The GlobalProtect stayed in Connecting state and users had to manually disconnect the connection and connect to the internal network to exit the Connecting state.
Addressed
6.0.8
GPC-18167
Fixed an issue where the GlobalProtect app displayed the Prisma Access gateways that were not set for manual selection.
Addressed
6.0.8
GPC-18157
Fixed an issue where the GlobalProtect app displayed the Credential Provider language in English when the system language was German.
Addressed
6.0.8
GPC-18135
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect HIP check detected the WithSecure antivirus software as XProtect, which caused the device to fail the HIP check.
Addressed
6.0.8
GPC-18107
Fixed an issue where the GlobalProtect HIP check did not detect McAfee LiveSafe – Internet Security, which caused the device to fail the HIP check.
Addressed
6.0.8
GPC-18092
Fixed an issue where GlobalProtect connected to an internal gateway got automatically disconnected after a certain period of time.
Addressed
6.0.8
GPC-18073
Fixed an issue where the GlobalProtect app selected an unexpected gateway due to a latency discrepancy seen between PanGPS and packet capture.
Addressed
6.0.8
GPC-18060
Fixed an issue where the GlobalProtect HIP check did not detect McAfee Total Protection, which caused the device to fail the HIP check.
Addressed
6.0.8
GPC-18039
Fixed an issue where the GlobalProtect HIP check did not detect the Definition Date correctly for the CrowdStrike application, which caused the device to fail the HIP check.
Addressed
6.0.8
GPC-18036
Fixed an issue where, when the No direct access to local network option was enabled on the GlobalProtect app with access routes excluded from the GlobalProtect VPN tunnel, the feature did not work as expected when Endpoint Traffic Policy Enforcement was enabled.
Addressed
6.0.8
GPC-17896
Fixed an issue where users were unable to connect to GlobalProtect gateway when only one external gateway was added due to the following error: Cannot Verify Server Certificate of Gateway .
Addressed
6.0.8
GPC-17877
Fixed an issue where the GlobalProtect HIP check incorrectly detected Sophos Endpoint Agent version 3.86.1, which caused the device to fail the HIP check.
Addressed
6.0.8
GPC-17795
Fixed an issue where the GlobalProtect HIP check did not detect the Xcitium Enterprise, the Endpoint Protection Platform by COMODO, which caused the device to fail the HIP check.
Addressed
6.0.8
GPC-17776
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and GlobalProtect enforcer was configured with allowed FQDNs, users were still able to access the internet and other public domains.
Addressed
6.0.8
GPC-17762
Fixed an issue when the GlobalProtect app was configured with the option Allow User to Disable GlobalProtect App with comment, the option did not work as expected.
Addressed
6.0.8
GPC-17748
Fixed an issue where the GlobalProtect HIP check did not detect the Real-Time Protection status correctly for the CrowdStrike Falcon application, which caused the device to fail the HIP check.
Addressed
6.0.8
GPC-17740
Fixed an issue where, when the GlobalProtect app was connected through the Prisma Access gateway, the upload speed of the internet was reduced to 2 Mbps.
Addressed
6.0.8
GPC-17657
Fixed an issue, where the GlobalProtect app got stuck in Selecting Best Gateway status when the device woke up from sleep mode. Users had to reboot the device to connect to the app.
Addressed
6.0.8
GPC-17640
Fixed an issue where, when the upgrade script update_tmp.bat was used, the error message did not display the correct exit timeout for the PanGPS uninstall process.
Addressed
6.0.8
GPC-17518
Fixed an issue where the GlobalProtect app displayed the status as ' Connected-Internal even when the app was not connected.
Addressed
6.0.8
GPC-17436
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the upload speed of the internet was reduced after a version upgrade.
Addressed
6.0.8
GPC-17206
Fixed an issue where, when Internal Host Detection (IHD) was enabled but failed to detect the internal network properly, the app failed to switch to the external gateway when users switched from an internal network to an external network.
Addressed
6.0.8
GPC-17204
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the certificate information was not accessible even though the GlobalProtect app had full access to the certificate store.
Addressed
6.0.8
GPC-17161
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect app failed to reconnect and continued to stay in the Connecting state after the device woke up from Modern Standby mode.
Addressed
6.0.8
GPC-17115
Fixed an issue where the GlobalProtect HIP check did not detect the Cortex Anti-Malware status properly after a system reboot, which caused the device to fail the HIP check.
Addressed
6.0.8
GPC-17086
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, users were unable to make a connection to an internal gateway using the default browser for SAML authentication.
Addressed
6.0.8
GPC-17001
Fixed an issue where, when the GlobalProtect app was installed on devices running on macOS, the app did not display the Connect button and Refresh Connection button properly.
Addressed
6.0.8
GPC-16584
Fixed an issue where the GlobalProtect HIP check did not detect the CrowdStrike antivirus software correctly, causing the device to fail the HIP check.
Addressed
6.0.8
GPC-16397
Fixed an issue where the GlobalProtect app was installed on devices running macOS, a blank GlobalProtect app user interface was displayed instead of the correct page.
Addressed
6.0.8
GPC-15697
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, users were able to select All Gateways heading on the page which was not an option for the users to select. This issue happened on the app interface with a non-English language.
Addressed
6.0.8
GPC-15262
Fixed an issue where, when single sign-on (SSO) for Smart Card was used for authentication, users were prompted to enter a PIN instead of password on the Windows login screen.
Addressed
6.0.7
GPC-18071
Fixed an issue where, when the GlobalProtect app was installed on Android devices with Android 13, the app stopped working while sending GPS notifications.
Addressed
6.0.7
GPC-17921
Fixed an issue where, when the language was set to Japanese, the time to connect was not displayed properly when Disconnect Timeout for the app was configured.
Addressed
6.0.7
GPC-17831
Fixed an issue where the GlobalProtect app reported the computer name differently from the computer name displayed in Autonomous DEM causing a data discrepancy.
Addressed
6.0.7
GPC-17771
Fixed an issue where the GlobalProtect app stopped working abruptly.
Addressed
6.0.7
GPC-17754
Fixed an issue where the GlobalProtect app did not detect Smart Card removal every time the user removed the card and due to which the app was not getting disconnected on On-Demand tunnel mode.
Addressed
6.0.7
GPC-17575
Fixed an issue where the GlobalProtect HIP check incorrectly detected Windows firewall as disabled, which caused the device to fail the HIP check.
Addressed
6.0.7
GPC-17556
Fixed an issue where the GlobalProtect app would get stuck at Connecting state when the user tried to close the browser window for SAML authentication after configuring On-Demand mode for the app.
Addressed
6.0.7
GPC-17473
Fixed an issue where the GlobalProtect portal and gateway selection list were displayed in the table format and not as menu item.
Addressed
6.0.7
GPC-17460
Fixed an issue where, when the GlobalProtect app was installed on Windows 10 or Windows11 devices, and when the user tried to authenticate using SAML authentication, the app did not display the Term of Use pop-up on the Welcome page properly.
Addressed
6.0.7
GPC-17451
Fixed an issue where the ADEM agent remained in the disabled state after connecting to a Prisma Access portal configured to enable ADEM on the GlobalProtect endpoints after switching from an on-premises portal that had ADEM disabled in the app configuration that was pushed to the endpoint.
Addressed
6.0.7
GPC-17406
Fixed an issue where GlobalProtect HIP check did not detect the new version of Trellix Drive Encryption correctly which caused the device to fail the HIP check.
Addressed
6.0.7
b GPC-17401
Fixed an issue where the GlobalProtect app was installed on the Chromebook, the app got disconnected when the ChromeOS detected policy changes related to location information.
Addressed
6.0.7
GPC-17393
Fixed an issue where, when the GlobalProtect app was installed on Windows 10 devices and the language was set to Japanese, IpConfig.txt and Systeminfo.txt in the GlobalProtectLogs.zip did not work properly.
Addressed
6.0.7
GPC-17337
Fixed an issue where the GlobalProtect app got disconnected due to a HIP reporting error that prevented the app from sending HIP reports to the gateway.
Addressed
6.0.7
GPC-17335
Fixed an issue where the user interface of the GlobalProtect app was going over-sized when the system woke up from the sleep mode.
Addressed
6.0.7
GPC-17299
Fixed an issue where the GlobalProtect app did not display LDAP password expiration notification on consecutive connection attempts when the user tried to authenticate using the LDAP authentication method.
Addressed
6.0.7
GPC-17252
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app did not try to auto-connect to the gateway after exceeding the Disable Timeout value.
Addressed
6.0.7
GPC-17227
Fixed an issue where the tunnel was still up and connected even when the user disconnected the GlobalProtect app.
Addressed
6.0.7
GPC-17205
Fixed an issue where GlobalProtect failed to decrypt HipPolicy.dat on endpoints, which caused the device to fail the HIP check for anti-malware.
Addressed
6.0.7
GPC-17137
Fixed an issue where, when user clicked the Network sign-in icon on the Windows login page, an icon with the name image was displayed instead of the portal IP address/ URL.
Addressed
6.0.7
GPC-17128
Fixed an issue where the Client Certificate had a blank Subject with SAN as the critical extension, which caused the endpoints to fail the HIP check.
Addressed
6.0.7
GPC-17099
Fixed an issue where devices with Driver Verified enabled and configured to monitor the PAN virtual adapter driver (pangpd.sys) displayed the DRIVER_VERIFIER_DETECTED_VIOLATION Blue Screen error
Addressed
6.0.7
GPC-17041
Fixed an issue where, when the GlobalProtect app was installed on Windows 10 devices and the language was set to Japanese, IpConfig.txt in the GlobalProtectLogs.zip did not work properly.
Addressed
6.0.7
GPC-17011
Fixed an issue where the GlobalProtect app tried to send HIP reports even when the device was on Modern Standby mode.
Addressed
6.0.7
GPC-17000
Fixed an issue where the GlobalProtect app would get stuck at Connecting state when user tried to authenticate with SAML authentication method using the embedded browser and user clicked Cancel on the certificate prompts.
Addressed
6.0.7
GPC-16978
Fixed an issue where the GlobalProtect app took a long time to establish a connection due to an erroneous packet capture process.
Addressed
6.0.7
GPC-16959
Fixed an issue where the Endpoint Traffic Policy Enforcement feature was causing the GlobalProtect app to drop Slack WebSocket outbound traffic on macOS endpoints.
Addressed
6.0.7
GPC-16788
Fixed an issue where when the GlobalProtect app was installed on devices running macOS, HIP check did not detect the Tanium Client correctly which caused the device to fail the HIP check.
Addressed
6.0.7
GPC-16682
Fixed an issue where the GlobalProtect app did not honor the Disable Timeout value and would automatically reconnect after the user restarted two times due to an issue with the new splash screen.
Addressed
6.0.7
GPC-16645
Fixed an issue where the GlobalProtect app couldn't display the Verify text box when using the full 255 characters for Radius DUO Authentication on Windows devices.
Addressed
6.0.7
GPC-16631
Fixed an issue where GlobalProtect logs forwarded from CDL to syslog-ng and Splunk were arriving in multiline and single line mode randomly.
Addressed
6.0.7
GPC-16627
Fixed an issue where the GlobalProtect HIP check incorrectly detected the Anti-Malware information for the McAfee Total Protection Antivirus software application, which caused the device to fail the HIP check.
Addressed
6.0.7
GPC-16609
Fixed an issue that the correct status is not displayed GlobalProtect status in the Windows lock screen when the gateway is connected.
Addressed
6.0.7
GPC-16575
Fixed an issue where GlobalProtect users were intermittently unable to log in to the gateway when using the user logon connect method because Enforce GlobalProtect Connection for Network Access was enabled immediately after portal login, blocking access to the gateway login URL.
Addressed
6.0.7
GPC-16572
Fixed an issue where the GlobalProtect HIP check took longer than expected to collect the HIP information causing the device to fail the HIP check.
Addressed
6.0.7
GPC-16441
Fixed an issue where the GlobalProtect app connection failed when the user enabled both Globalprotect Enforcer and Endpoint Traffic Policy Enforcement.
Addressed
6.0.7
GPC-16397
Fixed an issue where the GlobalProtect app was installed on devices running macOS, a blank GlobalProtect app user interface was displayed instead of the correct page.
Addressed
6.0.7
GPC-16297
Fixed an issue where users were unable to see the available list of eligible gateways to select the gateway manually when the best available gateway failed.
Addressed
6.0.7
GPC-16267
Fixed an issue where the portal status did not show as Connected even when the portal was accessible after a reboot and the portal status was Using cached portal config , which did not trigger the transparent upgrade.
Addressed
6.0.7
GPC-16126
Fixed an issue where the GlobalProtect app did not display the certificate name in the Client Certificate selection field properly.
Addressed
6.0.7
GPC-16003
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app was not connected when the proxy was configured for Safari or Chrome.
Addressed
6.0.7
GPC-16002
Fixed an issue where the GlobalProtect HIP check detected the device as Windows firewall enabled even though the firewall was disabled on the device.
Addressed
6.0.7
GPC-15968
Fixed an issue where the GlobalProtect app was stuck in Connecting state when users failed to authenticate with SAML and using an embedded browser. Users were unable to disconnect the app and had to reboot the device.
Addressed
6.0.7
GPC-15251
Fixed an issue where, when the GlobalProtect app was installed on Android devices and connected with Always-On (User logon) option, the app displayed the following notification twice.
Always on VPN is currently enabled. Disabling the VPN connection could result in loss of network access.
Addressed
6.0.7
GPC-15234
Fixed an issue where the app would get stuck at Connecting 'state while trying to connect to a gateway.
Addressed
6.0.7
GPC-15231
Fixed an issue where, when the GlobalProtect app was installed on Android devices and connected with Always-On option, the app displayed the following notification twice and the users were unable to clear the notifications.
Always on VPN is currently enabled. Disabling the VPN connection could result in loss of network access.
Addressed
6.0.7
GPC-15111
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader repeatedly announced tabs, Add button and portals table on the user interface. The screen reader should announce the user interface elements only once.
Addressed
6.0.7
GPC-15080
Fixed an issue where the split tunnel was configured based on the destination domain, split tunneling did not work as expected when IPv6 traffic exclusion was configured.
Addressed
6.0.7
GPC-14672
Fixed an issue where, when the GlobalProtect app was installed on macOS devices and No direct access to local network option was enabled with access routes excluded from the GlobalProtect VPN tunnel, the excluded traffic was not sent through the physical adapter on the endpoint. Following this, the users were unable to access the local physical network devices such as printers.
Addressed
6.0.6
GPC-16684
Fixed an issue where, when users on iOS endpoints disconnected and then reconnected GlobalProtect, the authentication cookie was not honored, requiring them to reauthenticate.
Addressed
6.0.5
GPC-17326
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the device displayed a blue screen when users tried to download files larger than 5GB.
Addressed
6.0.5
GPC-16837
Fixed an issue where the GlobalProtect app (PANGP Virtual Ethernet Adapter) was intermittently disconnected after a system reboot though the gateway status displayed it as Connected .
Addressed
6.0.5
GPC-16851
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app did not try to auto-connect to the gateway after exceeding the Disable Timeout value.
Addressed
6.0.5
GPC-16655
Fixed an issue where, when configured with the pre-logon connect method, the GlobalProtect app indicated that it was connected, but the tunnel was not established and users were unable to access resources.
Addressed
6.0.5
GPC-16525
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app did not detect correct information for Symantec Corporation Norton 360, which caused the device to fail the HIP check.
Addressed
6.0.5
GPC-16510
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS 13 Ventura, the app did not display options to users to select gateways manually when connected to the portal.
Addressed
6.0.5
GPC-16495
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect cookie stopped working when CIS Benchmark 5.1.1 was applied for mac OS 12 Monterey.
Addressed
6.0.5
GPC-16482
Fixed an issue where the GlobalProtect HIP check did not detect the real-time protection status Symantec Endpoint Agent, which caused the device to fail the HIP check.
Addressed
6.0.5
GPC-16448
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, users were unable to connect to the GlobalProtect app.The users could connect only when they refreshed the connection.
Addressed
6.0.5
GPC-16436
Fixed an issue where the GlobalProtect HIP check did not detect information correctly for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.0.5
GPC-16418
Fixed an issue where the GlobalProtect HIP check incorrectly detected Definition Version, Definition Date, and Last Scan Date for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.0.5
GPC-16392
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and the user restarted the device, the app displayed the following error message even though the app got connected after a few seconds.
Could not connect to the GlobalProtect service. Make sure the GlobalProtect service is running. If the issue persists, contact your administrator .
Addressed
6.0.5
GPC-16369
Fixed an issue where the GlobalProtect app user interface displayed incorrect French translation.
Addressed
6.0.5
GPC-16351
Fixed an issue where the GlobalProtect HIP check did not detect the real-time protection status correctly for the CrowdStrike Falcon application, which caused the device to fail the HIP check.
Addressed
6.0.5
GPC-16346
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the GlobalProtect HIP check took longer than expected to collect the HIP information and also displayed HIP pop-up error messages for antivirus software, which caused the device to fail the HIP check.
Addressed
6.0.5
GPC-16324
Fixed an issue where Endpoint Traffic Policy Enforcement dropped IPv6 ICMP neighbor discovery packets causing the IPv6 tunnel to drop.
Addressed
6.0.5
GPC-16289
Fixed an issue where, when the GlobalProtect app was configured with split tunnel to exclude traffic, the users could not access the excluded traffic when using an Airtel 4G PPP dongle since the Airtel PPP default traffic route was removed.
Addressed
6.0.5
GPC-16287
Fixed an issue where the GlobalProtect app did not detect correct version information for Sophos Endpoint Protection, which caused the device to fail the HIP check.
Addressed
6.0.5
GPC-16276
Fixed an issue where the GlobalProtect app displayed Welcome Page every time when the app got refreshed during GlobalProtect APP Configuration Refresh Interval .
Addressed
6.0.5
GPC-16271
Fixed an issue where the Retry button on the default browser page for SAML authentication did not work when the SAML authentication failed and the user tried to authenticate again using the Retry button.
Addressed
6.0.5
GPC-16213
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the wa_3rd_party_host_64.exe and wa_3rd_party_host_32.exe applications stopped working and the GlobalProtect event logs displayed the status of the applications as terminated.
Addressed
6.0.5
GPC-16119
Fixed an issue where the GlobalProtect app was installed on devices running macOS, the GlobalProtect HIP check failed to detect the Real time protection status for Symantec Endpoint Protection.
Addressed
6.0.5
GPC-16074
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS with SAML authentication, users were unable to connect to the app after the system woke up from sleep mode. The app stayed in Connecting state for a long time and the users had to refresh the connection.
Addressed
6.0.5
GPC-16029
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, users were prompted for certificate selection even when the Extended Key Usage OID for Client Certificate was configured in the App Configurations area of the GlobalProtect portal configuration.
Addressed
6.0.5
GPC-15989
Fixed an issue where, when the Default System Browser is used for SAML, the GlobalProtect app kept displaying Connecting when connected to an internal gateway.
Addressed
6.0.5
GPC-15972
Fixed an issue where the GlobalProtect HIP check did not detect the Real-Time Protection status correctly for the CrowdStrike Falcon application, which caused the device to fail the HIP check.
Addressed
6.0.5
GPC-15869
Fixed an issue where the default route (0.0.0.0) was configured with a domain in etc/hosts and split tunnel was configured to include traffic based on the domain, the split tunnel did not work as expected.
Addressed
6.0.5
GPC-15369
Fixed an issue where the GlobalProtect HIP check did not detect the Last Full Scan Date and Definition Version for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.0.5
GPC-15338
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and when the GlobalProtect gateway was configured to exclude routes, the excluded routes were removed from the original routing table when the users disconnected the app.
Addressed
6.0.5
GPC-15126
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader could not identify and announce the mandatory fields on the screen as asterisk symbols were not present on the screen to indicate the mandatory fields.
Addressed
6.0.5
GPC-15118
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader incorrectly identified the order of elements on the screen.
Addressed
6.0.5
GPC-15106
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the Connections tab on the Settings page displayed check marks for portal and gateway in incorrect color contrast ratio causing readability issues for users.
Addressed
6.0.5
GPC-14725
Fixed an intermittent issue where the users were unable to connect to the GlobalProtect app, when the app used cached portal configuration.
Addressed
6.0.5
GPC-14705
Fixed an issue where, when the GlobalProtect app was installed on endpoints running macOS and when connected to an internal gateway the endpoint did not send a HIP report or receive HIP notifications, and the HIP reports were not available on the Host Information Profile tab in the app.
Addressed
6.0.5
GPC-14562
Fixed an issue where, when the GlobalProtect app was installed on the Windows 10 UWP platform, the app got disconnected when the users tried to connect.
Addressed
6.0.5
GPC-16485
Fixed an issue where, when the GlobalProtect app was installed on devices running iOS 16, the app displayed the HIP Host Name as the device model name instead of the user-assigned device name, which caused the device to fail the HIP check.
Addressed
6.0.5
GPC-16149
Fixed an issue where, when the GlobalProtect app was installed on iOS devices, the app got disconnected after connecting to the portal preventing users from connecting to the app.
Addressed
6.0.5
GPC-15998
Fixed an issue where, when the GlobalProtect app was installed on iOS devices, the app GUI disappeared from the screen immediately after connecting to the app preventing users from being able to log out.
Addressed
6.0.5
GPC-15984
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app failed to reconnect when the user refreshed the connection.
Addressed
6.0.5
GPC-15509
Fixed an issue where, when the GlobalProtect app was installed on iOS devices, the GlobalProtect app GUI disappeared from the screen when the users tried to access the app. The users were unable to logout from the app due to this issue.
Addressed
6.0.5
GPC-14952
Fixed an issue where, when the GlobalProtect app was installed on iOS devices, users were unable to log in to the app using biometrics, such as Face ID.
Addressed
6.0.5
GPC-15977
Fixed an issue where, when the GlobalProtect app was installed on Android devices and configured with Always-on (User logon) mode and certificate authentication, the app failed to connect when certificate was renewed on the Microsoft Intune MDM.
Addressed
6.0.5
GPC-15231
Fixed an issue where, when the GlobalProtect app was installed on Android devices and connected with Always-on (User logon) option, the app displayed the following notifications twice and the users were unable to clear the notifications.
Always on VPN is currently enabled. Disabling the VPN connection could result in loss of network access .
Addressed
6.0.5
GPC-15023
Fixed an issue where, when the GlobalProtect app was installed on devices running on Chrome OS, the app could not connect to the gateway after successful SAML authentication. The app stayed in Connecting state and the users had to go back to the Portal Authentication Complete page and click on click here to launch GlobalProtect to connect to the gateway.
Addressed
6.0.5
GPC-16269
Fixed an issue where, when the GlobalProtect app was installed on Linux devices, the metric of the tunnel default route was higher than the physical adapter's default route. Due to this issue, tunnel route was not considered and the traffic was sent through the physical adapter with lower metric.
Addressed
6.0.5
GPC-15539
Fixed an issue on the GlobalProtect app for Linux where, when the GlobalProtect app was connected and the tunnel was up, there was a DNS leak where DNS requests were sent to the public DNS servers assigned to the physical interface. This was because the resolv.conf was not being updated during the change in tunnel state due to a permissions issue.
Addressed
6.0.5
GPC-14490
Fixed an issue where, when the GlobalProtect app was installed on Linux devices, the app failed to connect when McAfee Threat Prevention was installed on the device.
Addressed
6.0.4
GPC-16414
Fixed an issue where, when the GlobalProtect app was installed on Android devices, the app got disconnected after an upgrade following which the GlobalProtect log displayed the status as FATAL EXCEPTION: main .
Addressed
6.0.4-c26
GPC-16077
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS with Enforcer, end users could not connect to Android Studio application.
Addressed
6.0.4-c26
GPC-16055
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app did not display Authentication Failed when the user entered incorrect RSA SecureID.
Addressed
6.0.4-c26
GPC-15976
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the device displayed a blue screen due to a faulty GlobalProtect app driver.
Addressed
6.0.4-c26
GPC-15922
Fixed an issue where, when Connect Before Logon using Security Assertion Markup Language (SAML) authentication was used to log in to the endpoint, the Use Default Browser for SAML Authentication did not work as expected with the configured Connect Before Logon option.
Addressed
6.0.4-c26
GPC-15834
Fixed an issue where the GlobalProtect app got disconnected after HIP check.
Addressed
6.0.4-c26
GPC-15822
Fixed an issue when the GlobalProtect app got disconnected when the laptop power adapter was plugged in or unplugged.
Addressed
6.0.4-c26
GPC-15812
Fixed an issue where the split tunnel feature did not work as expected on devices running macOS Monterey 12.X and Chrome Browser 104.0.5112.79.
Addressed
6.0.4-c26
GPC-15663
Fixed an issue where when the GlobalProtect app was deployed for pre-logon and when the users tried to change their Windows password, the users were prompted to enter only a new password. The app did not prompt users to enter their old password while changing the password.
Addressed
6.0.4-c26
GPC-15548
Fixed an issue where users were unable to connect to the GlobalProtect app when users restarted the device from the hibernation mode.
Addressed
6.0.4-c26
GPC-15260
Fixed an issue, where the GlobalProtect app was installed on devices running macOS and Enforce GlobalProtect Connection for Network Access was configured with allowed FQDNs, the users were still able to access the internet and other public domains.
Addressed
6.0.4-c26
GPC-15116
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader did not properly announce the role, status, and the numbering of the tabs on the navigation bar of the Settings page.
Addressed
6.0.4-c26
GPC-15109
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader announced the Star button twice on the Troubleshooting tab of the Settings page.
Addressed
6.0.4-c26
GPC-14942
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the users were unable to connect to the GlobalProtect app after an upgrade. The app displayed the following error message when the users tried to connect to the app:
The network connection is unreachable or the gateway is unresponsive. Check the network connection and reconnect.
Addressed
6.0.4
GPC-15739
Fixed an issue where, when the GlobalProtect app was installed on iOS devices and configured with Always-On connect method, the devices were not automatically connected to the app through Always-On mode after device reboot and the users had to manually connect to the app.
Addressed
6.0.4
GPC-14941
Fixed an issue where, when the GlobalProtect app was installed on iOS devices, the users were unable to connect to the app due to Keychain Access permission issue. The app stayed in Connecting state for a long time and the users had to force stop the app.
Addressed
6.0.4
GPC-14913
Fixed an issue where, when the GlobalProtect app was installed on iOS devices, the app was not reconnected automatically after a system reboot and the users had to connect the app manually.
Addressed
6.0.4
GPC-14686
Fixed an issue where, when the GlobalProtect app was installed on iOS devices, the GlobalProtect credentials that were saved earlier were lost when users faced network connectivity issues. Users had to re-enter their credentials due to this issue.
Addressed
6.0.4
GPC-16370
Fixed an issue where, when split tunnel (optimized split tunneling) was configured on GlobalProtect to exclude any application traffic that relied on the loopback connection source IP address to be 127.0.0.1, the excluded application did not work as expected.
Addressed
6.0.4
GPC-16148
Fixed an issue where the GlobalProtect notifications were displayed in HTML code instead of plaintext.
Addressed
6.0.4
GPC-16144
Fixed an issue where the GlobalProtect app failed to detect Cisco Secure Endpoint Anti-Malware software installed on the device.
Addressed
6.0.4
GPC-16064
Fixed an issue where, when the GlobalProtect was installed on devices running macOS, users were unable to log on to the app using the Kerberos Single Sign-On (SSO) authentication method.
Addressed
6.0.4
GPC-16056
Fixed an issue where GlobalProtect HIP check did not detect the name of the Trellix Agent correctly which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-16023
Fixed an issue where the GlobalProtect app did not detect correct definition date for Sophos Endpoint Protection, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15999
Fixed an issue where the GlobalProtect app did not detect Virus Definition Date for McAfee Total Protection, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15994
Fixed an issue where the GlobalProtect app got disconnected after HIP check.
Addressed
6.0.4
GPC-15972
Fixed an issue where the GlobalProtect HIP check did not detect the real-time protection status correctly for the CrowdStrike Falcon application, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15956
Fixed an issue where the GlobalProtect app did not detect real-time protection and the correct definition date for Sophos Endpoint Protection, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15923
Fixed an issue where the GlobalProtect app did not detect real-time protection status for Sophos Endpoint Protection, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15910
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, where the split tunnel was configured to exclude traffic, the excluded traffic was sent through the VPN tunnel instead of the physical adapter.
Addressed
6.0.4
GPC-15854
Fixed an issue where the GlobalProtect HIP check did not detect Patch Management information for the Windows Defender, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15842
Fixed an issue where GlobalProtect HIP check did not detect the encryption stage for ESET Full Disk Encryption correctly as defined in the HIP profiles, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15809
Fixed an issue where the GlobalProtect HIP check did not detect the correct Last Scan Date information for the Last Full Scan Time and Definition Date for Sophos Endpoint Protection, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15699
Fixed an issue where the GlobalProtect HIP check did not detect the McAfee antivirus software, causing the device to fail the HIP check.
Addressed
6.0.4
GPC-15686
Fixed an issue when the user executed the command to disable the app, a new line break was added after the timestamp value in the command which caused parsing issues.
Addressed
6.0.4
GPC-15636
Fixed an issue where the GlobalProtect HIP check failed to detect the Real time protection status for Sophos Endpoint Protection.
Addressed
6.0.4
GPC-15631
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and the app did not start right away after a system reboot.
Addressed
6.0.4
GPC-15592
Fixed an issue where the GlobalProtect HIP check failed to detect the Definition Version for Sophos Endpoint Protection, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15560
Fixed an issue where the GlobalProtect HIP check incorrectly detected Last Scan Date for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15537
Fixed an issue where the GlobalProtect HIP check did not detect the correct Anti-Malware information for the Last Full Scan Time for Sophos Endpoint Protection, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15451
Fixed an issue where, when the user upgraded the Sophos Endpoint Protection, the GlobalProtect HIP was not compatible with the new version of the Sophos Endpoint Protection after the upgrade, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15439
Fixed an issue where the GlobalProtect app failed to collect HIP data and the Host Information tab on the device failed to display information.
Addressed
6.0.4
GPC-15433
Fixed an issue where, when the GlobalProtect was installed on devices running macOS and the split-tunnel option Both Network Traffic and DNS was configured on the GlobalProtect gateway, the domain-based split tunnel feature did not work as expected.
Addressed
6.0.4
GPC-15389
Fixed an issue where the GlobalProtect app did not detect real-time protection for Microsoft Defender, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15369
Fixed an issue where the GlobalProtect HIP check did not detect the Last Full Scan Date and Definition Version for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15338
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and when the GlobalProtect gateway was configured to exclude routes, the excluded routes were removed from the original routing table when the users disconnected the app.
Addressed
6.0.4
GPC-15315
Fixed an issue where the GlobalProtect HIP check detected incorrect Anti-Malware information for Definition Date for Sophos Endpoint Protection.
Addressed
6.0.4
GPC-15267
Fixed an issue where the GlobalProtect HP check failed to detect ESET anti-virus software version 7.0 on macOS devices.
Addressed
6.0.4
GPC-15263
Fixed an issue where the GlobalProtect HIP check failed to detect Ivanti Security Controls Agent which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15255
Fixed an issue where the GlobalProtect HIP check detected the device as Windows firewall enabled even though the firewall was disabled on the device.
Addressed
6.0.4
GPC-15177
Fixed an issue where the GlobalProtect HIP check did not detect real-time protection for Traps version 6.1.5, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-15149
Fixed an issue where the GlobalProtect app got disconnected due to incorrect HIP check after the system woke up from sleep mode or when the system was restarted.
Addressed
6.0.4
GPC-15126
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader could not identify and announce the mandatory fields on the screen as asterisk symbols were not present on the screen to indicate the mandatory fields.
Addressed
6.0.4
GPC-15115
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader did not properly announce the name and numbering of Debug logs and Dump logs options on the Settings page.
Addressed
6.0.4
GPC-15108
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader incorrectly announced the Cancel button as the Help button when the user tried to disable the app.
Addressed
6.0.4
GPC-15105
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the Home page of the app displayed text in incorrect color contrast ratio causing readability issues to the users.
Addressed
6.0.4
GPC-14815
Fixed an issue where the GlobalProtect HIP check did not detect the Scan Date for Bitdefender Endpoint Security for macOS, which caused the device to fail the HIP check.
Addressed
6.0.4
GPC-14609
Fixed an issue where the HIP check did not detect the Sentinel One RTP and definition date properly, which caused the HIP check to fail.
Addressed
6.0.4
GPC-14522
Fixed an issue where, when the GlobalProtect was configured with split tunnel to include traffic based on the destination domain by overriding the DNS server manually, the DNS queries were still being sent to the DHCP configured server.
Addressed
6.0.4
GPC-14439
Fixed an issue where, when split tunnel was configured on the GlobalProtect app to exclude destination domain traffic that included a slash character (/) for sub-page domain names, the slash character (/) was not displayed in the sub-page domain names in the exception list.
Addressed
6.0.4
GPC-15458
Fixed an issue where, when the GlobalProtect app was installed on Linux devices with Use Default Browser for SAML Authentication app option set to Yes , the device used embedded browser instead of default system browser.
Addressed
6.0.3
GPC-15088
Fixed an issue where, when the GlobalProtect app was installed on Android devices, the GlobalProtect notification displayed on the screen was unresponsive.
However, the notification continues to stay on the screen due to Android OS limitation. This issue is listed under the Known Issues section.
Addressed
6.0.3
GPC-15315
Fixed an issue where the GlobalProtect HIP check incorrectly detected the Anti-Malware information for Definition Date for Sophos Endpoint Protection.
Addressed
6.0.3
GPC-15314
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the app got disconnected when connected using Connect Before Logon (CBL) with SAML authentication.
Addressed
6.0.3
GPC-15310
Fixed an issue where, when the GlobalProtect app was installed on Windows machine, the Star button on the app screen when selected with Enter key was not working as expected.
Addressed
6.0.3
GPC-15243
Fixed an issue where, when the GlobalProtect app was installed on devices, the HIP check process stopped running and the tunnel was disconnected after 3 hours.
Addressed
6.0.3
GPC-15219
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and split tunnel was configured to exclude application traffic for Zoom, some excluded traffic was still forwarded through the tunnel.
Addressed
6.0.3
GPC-15205
Fixed an issue where, when the GlobalProtect app was installed on devices, the HIP check process stopped running and the tunnel was disconnected after 3 hours.
Addressed
6.0.3
GPC-15200
Fixed an issue where the GlobalProtect app did not save the username after Kerberos SSO authentication following which the app could not use the cached GlobalProtect portal configuration. The users had to manually add the username to the Windows registry.
Addressed
6.0.3
GPC-15185
Fixed an issue where, when the GlobalProtect app was deployed along with Endpoint Protector and split tunnel was configured to exclude or include traffic based on FQDN, the split tunnel configuration did not work as expected.
Addressed
6.0.3
GPC-15167
Fixed an issue, where the GlobalProtect app was installed on devices running macOS, GlobalProtect enforcer continued to block network access even after connecting to the internal gateway.
Addressed
6.0.3
GPC-15125
Fixed an issue where, when the GlobalProtect app was installed on Mac devices, the screen reader did not properly announce the functions of the Change Portal and Change Gateway menus and the options under them.
Addressed
6.0.3
GPC-15120
Fixed an issue where, when the GlobalProtect app was installed devices running macOS, the screen reader did not properly announce the functions of the Change Portal and Change Gateway menus and the options under them.
Addressed
6.0.3
GPC-15114
Fixed an issue where, when the GlobalProtect app was installed on macOS devices, the screen reader on the Settings page did not announce the description for the Sign Out button properly.
Addressed
6.0.3
GPC-15112
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and when the users were using keyboard to navigate through the home page, the navigation on the UI was not visible to the users after they pressed the tab key on the keyboard to select a menu item.
Addressed
6.0.3
GPC-15110
Fixed an issue where, when the GlobalProtect app was installed on Mac devices, the screen reader did not properly announce the options under the Change Portal and Change Gateway menus upon their selection.
Addressed
6.0.3
GPC-15107
Fixed an issue where the hamburger menu icon on the GlobalProtect app was not properly highlighted when the users used tab key or arrow key on the keyboard for navigation.
Addressed
6.0.3
GPC-15104
Fixed an issue where, when the GlobalProtect app was installed on Mac devices, the screen reader did not announce the label and description for the Manage Portals ( Settings Connections ) table.
Addressed
6.0.3
GPC-15100
Fixed an issue where, when the GlobalProtect app was installed on Mac devices, the screen reader did not announce any status message after the Star button was pressed to connect to the gateway.
Addressed
6.0.3
GPC-15072
Fixed an issue where the GlobalProtect HIP check incorrectly detected the Anti-Malware information for Definition Date for Sophos Endpoint Protection.
Addressed
6.0.3
GPC-15068
( Windows 10 UWP ).
A fix was made to address an OpenSSL infinite loop vulnerability in GlobalProtect app software ( CVE-2022-0778 ).
Addressed
6.0.3
GPC-15063
Fixed an issue, where the GlobalProtect app was installed on devices running macOS, the Prisma Access users were not able to disable the GlobalProtect app using the Allow with Ticket option.
Addressed
6.0.3
GPC-15056
Fixed an issue where, when the GlobalProtect portal or gateway was configured to authenticate users using SAML authentication, the users were not prompted for Multi-Factor Authentication (MFA) even after entering their credentials through the IdP (Identity Providers) login page.
Addressed
6.0.3
GPC-15054
Fixed an issue where the GlobalProtect app got randomly disconnected when there was a high amount of traffic, such as when running a speed test or using Zoom or Hangout.
Addressed
6.0.3
GPC-14989
Fixed an issue where, when the No Direct Access to local network option was enabled on GlobalProtect gateway, the GlobalProtect users’ loopback interface network was masked causing connection failure.
Addressed
6.0.3
GPC-14933
Fixed an issue where the SAML authentication failed when users pressed the Enter key using keyboard after entering the login credentials.
Addressed
6.0.3
GPC-14915
Fixed an issue where, when the GlobalProtect app was installed on Windows and macOS devices, the gateway name was not fully displayed on the GlobalProtect main window and 'Host Information Profile' window on the 'Settings' page.
Addressed
6.0.3
GPC-14846
Fixed an issue where, when the GlobalProtect app was installed on macOS devices and the endpoint traffic policies were configured, the default browser page displayed the error ERR_SOCKET_NOT CONNECTED when the user tried to log out from the app. Users were unable to login to the app again.
Addressed
6.0.3
GPC-14770
Fixed an issue where, when the GlobalProtect app was installed on devices, the HIP check process stopped running and the tunnel was disconnected after 3 hours.
Addressed
6.0.3
GPC-14732
Fixed an issue where the GlobalProtect app got disconnected after HIP check.
Addressed
6.0.3
GPC-14657
Fixed an issue where, when the GlobalProtect app was installed on devices, the HIP check process stopped running and the tunnel was disconnected after 3 hours.
Addressed
6.0.3
GPC-14656
Fixed an issue where, when the GlobalProtect app was installed on devices, the HIP check process stopped running and the tunnel was disconnected after 3 hours.
Addressed
6.0.3
GPC-14578
Fixed an issue where, after connecting to GlobalProtect using Connect Before Logon (CBL) with SAML authentication, the GlobalProtect app kept opening and closing after the user logged in.
Addressed
6.0.3
GPC-13752
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the SAML login page to authenticate Network Discovery was not properly displayed.
Addressed
6.0.2
GPC-15068
A fix was made to address an OpenSSL infinite loop vulnerability in GlobalProtect app software ( CVE-2022-0778 ).
Addressed
6.0.2
GPC-15023
Fixed an issue where, when the GlobalProtect app was installed on devices running on Chrome OS, the app could not connect to the gateway after successful SAML authentication. The app stayed in Connecting state and the users had to go back to the Portal Authentication Complete page and click on click here to launch GlobalProtect to connect to the gateway.
Addressed
6.0.1
GPC-15293
Fixed an issue where, when the GlobalProtect app was installed on Linux devices for the first time, the users were prompted to enter the user credentials twice.
Addressed
6.0.1
GPC-15075
Fixed an issue where the GlobalProtect app got randomly disconnected when there was a high amount of traffic like when running a speed test or using Zoom or Hangout.
Addressed
6.0.1
GPC-15068
A fix was made to address an OpenSSL infinite loop vulnerability in GlobalProtect app software ( CVE-2022-0778 ).
Addressed
6.0.1
GPC-15062
Fixed an issue where, when the GlobalProtect app was installed on macOS devices, the connection became unstable when the user clicked the Click here or Retry button on the default browser page for SAML authentication.
Addressed
6.0.1
GPC-15060
Fixed an issue where, when the GlobalProtect app was installed on the Linux devices, the app could not resolve internal domains when the DNS suffix was not configured.
Addressed
6.0.1
GPC-14959
Fixed an issue where, when the GlobalProtect app was installed on Linux devices, the GlobalProtect logs displayed password information when the password contained the (<) character. The password characters succeeding the (<) character were displayed in the logs.
Addressed
6.0.1
GPC-14824
Fixed an issue where, when the GlobalProtect app was installed on macOS devices, the GlobalProtect app tried to restore the gateway connection even when the device was on Modern Standby mode. The users were prompted to authenticate using multi-factor authentication (MFA) authentication.
Addressed
6.0.1
GPC-14804
Fixed an issue where, when the GlobalProtect app was installed and configured with Allow User to Disable GlobalProtect to Allow with Ticket option, the app did not display the Need Help? link next to the Ticket Number field on the screen.
Addressed
6.0.1
GPC-14792
Fixed an issue where, when Connect Before Logon using Security Assertion Markup Language (SAML) authentication was used to login to the endpoint, the users could not authenticate as the authentication process stopped when redirected to the organization’s sign-in page.
Addressed
6.0.1
GPC-14763
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the machine displayed a blue screen when the users tried to connect to the GlobalProtect app.
Addressed
6.0.1
GPC-14691
Fixed an issue where the GlobalProtect IPV6 static route for the gateway was getting removed shortly after establishing the connection causing unexpected GlobalProtect disconnections.
Addressed
6.0.1
GPC-14640
Fixed an issue where, when the GlobalProtect app was deployed for pre-logon, the GlobalProtect Enforcer remained enabled even after the app was disabled.
Addressed
6.0.1
GPC-14609
Fixed an issue where the HIP check did not detect the Sentinel One RTP and definition date properly, which caused the device to fail the HIP check.
Addressed
6.0.1
GPC-14572
Fixed an issue, where the GlobalProtect app users were prompted to re-enter the password when the connection was refreshed.This issue occurred only when the password contained non-English alphabets.
Addressed
6.0.1
GPC-14492
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and split tunnel was configured to exclude or include any application traffic that relied on the loopback connection source IP address, the split tunnel configuration based on the application did not work.
Addressed
6.0.1
GPC-14477
Fixed an issue where the GlobalProtect app did not detect real-time protection for SentinelOne Endpoint Security, which caused the device to fail the HIP check.
Addressed
6.0.1
GPC-14453
Fixed an issue where the TCP Option lookup for IP fragmented TCP packets caused the endpoint to lose access to internal resources.
Addressed
6.0.1
GPC-14405
Fixed an issue where, when the IPv6 Sinkhole feature was enabled to block the GlobalProtect app from accessing the local network devices using IPv6 address, the GlobalProtect gateway still allowed the GlobalProtect app to send IPV6 traffic to local network devices instead of blocking them.
Addressed
6.0.1
GPC-14329
Fixed an issue where macOS devices were able to bypass the GlobalProtect tunnel using the physical adapter even when No direct access to local network was enabled.
Addressed
6.0.1
GPC-14278
Fixed an issue where, when the GlobalProtect app was installed on macOS devices, the GlobalProtect HIP report displayed encryption status even when the encryption feature was disabled.
Addressed
6.0.1
GPC-14276
Fixed an issue where the Check for Updates option in the GlobalProtect app failed to display the recent GlobalProtect version available for update. The users had to refresh the GlobalProtect connection to get the latest version updates.
Addressed
6.0.1
GPC-14251
Fixed an issue where the GlobalProtect HIP report displayed incorrect OS version Windows 10 instead of the correct version Windows 11.
Addressed
6.0.1
GPC-14100
Fixed an issue where, when the split tunnel was configured on the GlobalProtect gateway to include routes, the traffic which was not included was also sent over the VPN tunnel intermittently.
Addressed
6.0.1
GPC-14010
Fixed an issue where, when the GlobalProtect app was installed on macOS devices, the HIP match logs were missing for some user profiles which caused the device to fail the HIP check.
Addressed
6.0.1
GPC-14008
Fixed an issue where after a GlobalProtect connection was established, the network interface was detected as public instead of domain due to timer issue with Network Location Awareness (NLA).
Addressed
6.0.1
GPC-13986
Fixed an issue where the DNS UDP checksum was incorrectly calculated by GlobalProtect, causing slow connections when the user accessed internal applications using either the CLI or web browser.
Addressed
6.0.1
GPC-13970
Fixed an issue where DNS queries for excluded domains were sent out on both the GlobalProtect app virtual adapter and the device's physical adapter with the Split-Tunnel Option set to Both Network Traffic and DNS in the App Configurations area of the GlobalProtect portal configuration.
Addressed
6.0.1
GPC-13963
Fixed an issue where the DNS UDP checksum was incorrectly calculated, causing latency in the GlobalProtect connection.
Addressed
6.0.1
GPC-13900
Fixed an issue where, when the Resolve All FQDNs using DNS Servers Assigned by the Tunnel (Windows Only) option was enabled in the App Configurations area of the GlobalProtect portal configuration, GlobalProtect generated a negative DNS response incorrectly using SERVERFAIL as the error code, causing DNS resolution to fail and delays on application start-up on end points in a dual stack environment.
Addressed
6.0.1
GPC-13857
Fixed an issue where, if GlobalProtect was configured for domain-based split tunneling and the domain name resolved to the loopback address (127.0.0.1), the GlobalProtect app would disconnect on devices running macOS 11.5 or later.
Addressed
6.0.1
GPC-13819
Fixed an issue where, when the Resolve All FQDNs using DNS Servers Assigned by the Tunnel (Windows Only) option in the App Configurations area of the GlobalProtect portal configuration was enabled, the GlobalProtect pre-logon process took more than 2 minutes to complete when the user tried to log on to the Windows operating system after a reboot.
Addressed
6.0.1
GPC-13801
Fixed an issue where, after an upgrade, GlobalProtect generated a negative DNS response incorrectly using error code SERVERFAIL , which caused Kerberos authentication to fail.
Addressed
6.0.1
GPC-13774
Fixed an issue where the GlobalProtect tunnel could not send traffic after the system woke up from sleep mode.
Addressed
6.0.1
GPC-13725
Fixed an issue where, during a transparent upgrade of the GlobalProtect app, the system rebooted or woke up from hibernation, which caused the upgrade to fail due to competing resources between the system reboot and transparent upgrade. The previous version of the GlobalProtect app was completely uninstalled.
Addressed
6.0.1
GPC-14612
Fixed an issue where, on Android devices with the GlobalProtect app installed, when the client certificate alias setting was set to pre-select in the managed configuration, the GlobalProtect Choose certificate pop-up failed to appear and the user was redirected to the captive portal (SAML) login page.
Addressed
6.1.7
GPC-19861
A fix was made to address insufficient certification validation vulnerability in GlobalProtect app software for iOS platform ( CVE-2024-5921 ).
Addressed
6.1.6
GPC-19861
A fix was made to address insufficient certification validation vulnerability in GlobalProtect app software for Android platform ( CVE-2024-5921 ).
Addressed
6.1.6
GPC-21463
Fixed an issue where the HIP report did not contain the service set identifier (SSID (service set identifier) and internet service provider (ISP) information when the GlobalProtect app was installed on iOS devices.
Addressed
6.1.5
GPC-20071
Resolved an issue where when the GlobalProtect app is installed on Android devices, the Host ID column of the Strata Logging Service (formerly CDL) log did not display the mobile-id setting value.
Addressed
6.1.5
GPC-20562
Resolved an issue where some users are unable to play YouTube videos.
Addressed
6.1.5
GPC-20243
Fixed an issue where, when the GlobalProtect app was used with an embedded browser, the browser displayed ‘can't reach page’ due to a Windows filter driver issue.
Addressed
6.1.5
GPC-20091
Fixed an issue where pre-logon failed when the computer was rebooted.
Addressed
6.1.5
GPC-20080
Fixed an issue where the GlobalProtect logs displayed different event messages for Windows and macOS devices when the Allow User to Disable GlobalProtect App was set to Allow with Passcode for the GlobalProtect app.
Addressed
6.1.5
GPC-20060
Fixed an issue where it was possible for the GlobalProtect enforcer to be disabled when there was a network change during portal authentication.
Addressed
6.1.5
GPC-20040
Resolved an issue where GlobalProtect did not re-check for internal gateways when using cached portal configuration and an external network was previously detected.
Addressed
6.1.5
GPC-19961
Fixed an issue where the hamburger menu on the GlobalProtect app was disabled and end users were unable to click on the Report an Issue option when the GlobalProtect app was disabled in Always-On mode.
Addressed
6.1.5
GPC-19948
Fixed an issue where connection to the GlobalProtect portal failed with the error Username from CAS SSO response is different from the input .
Addressed
6.1.5
GPC-19924
Fixed an issue where the users faced intermittent connection issues while accessing GlobalProtect using an embedded browser.
Addressed
6.1.5
GPC-19901
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app got disconnected and reconnected intermittently.
Addressed
6.1.5
GPC-19833
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the Smart card (Yubikey) authentication did not work when the device woke up from sleep mode.
Addressed
6.1.5
GPC-19829
Fixed an issue where the manual gateway login failed when users tried to login using their username and password.
Addressed
6.1.5
GPC-19794
Resolved an issue where users had login issues on MAC devices when the enforcer was enabled.
Addressed
6.1.5
GPC-19790
Resolved an issue where users running GlobalProtect version 6.0.5-30 had a connection failure when connecting to a hotspot.
Addressed
6.1.5
GPC-19686
Fixed an issue where translation errors were observed in the GlobalProtect app for French localization.
Addressed
6.1.5
GPC-19659
Fixed an issue where macOS users were connected to the GlobalProtect app before they agreed to their company’s terms of service.
Addressed
6.1.5
GPC-19630
Fixed an issue where the prelogon connect method failed on the Globalprotect gateway prelogin stage.
Addressed
6.1.5
GPC-19686
Fixed an issue where translation errors were observed in the GlobalProtect app for French localization.
Addressed
6.1.5
GPC-19901
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app got disconnected and reconnected intermittently.
Addressed
6.1.5
GPC-19818
Fixed an issue where, when the GlobalProtect app was installed on devices running macOs and when the Enforcer was enabled, Jamf connect was not working after the MacBook was rebooted. Users had to log in manually.
Addressed
6.1.5
GPC-19712
Fixed an issue where PanGPS did not work on GlobalProtect app version 6.0.4 due to invalid memory reference and users were unable to reconnect to the GlobalProtect app after a system reboot.
Addressed
6.1.5
GPC-19696
Fixed an issue where, when the GlobalProtect app was installed on endpoints running macOS and the split tunnel was configured based on the application for Zoom, users were unable to access any sites when the split tunnel was disabled for Zoom and moved to full tunnel.
Addressed
6.1.5
GPC-19659
Fixed an issue where macOS users were connected to the GlobalProtect app before they agreed to their company’s terms of service.
Addressed
6.1.5
GPC-19652
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, users were unable to access the applications and websites when the app got disconnected and reconnected while switching the medium from wired to wireless and vice versa.
Addressed
6.1.5
GPC-19610
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, end users were not prompted to enter a password and the app got stuck in Restoring VPN connection state until the cookie was deleted.
Addressed
6.1.5
GPC-19605
Fixed an issue where the GlobalProtect app went missing from the endpoints after an upgrade from app version 6.0.5-35 to 6.0.8-601.
Addressed
6.1.5
GPC-19603
Fixed an issue where the GlobalProtect app displayed a generic SAML login page and not the actual login page for authentication and the connection was not established when cached portal configuration was used.
Addressed
6.1.5
GPC-19570
Fixed an issue where a hyperlink in a HIP notification opened in the GPO-disabled Internet Explorer 11 browser instead of the default browser.
Addressed
6.1.5
GPC-19545
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, users were unable to connect to the GlobalProtect app when they used T-Mobile iPhone hotspot.
Addressed
6.1.5
GPC-19513
Fixed an issue where the GlobalProtect app was trying to use the old portal's authorization cookie to login instead of the newly migrated portal. This happened when the user changed from secondary portal to primary portal or vice versa without signing out.
Addressed
6.1.5
GPC-19505
Fixed an issue where the GlobalProtect embedded browser for SAML authentication window obscured the two-factor authentication prompt hindering the users from entering their PIN.
Addressed
6.1.5
GPC-19492
Fixed an issue where the GlobalProtect app displayed the text incorrectly on the web interface.
Addressed
6.1.5
GPC-19475
Fixed an issue where users got connection errors in an embedded browser after the computer woke up from sleep or when the user switched gateways.
Addressed
6.1.5
GPC-19449
Fixed an issue where, when the user used CAS token to authenticate, the system logs incorrectly displayed an error message during the GlobalProtect auto refresh configuration interval.
Addressed
6.1.5
GPC-19433
Fixed an issue where a small white blank page randomly popped up on the device screen distracting the users. This issue occurred while the device was connected to GlobalProtect app.
Addressed
6.1.5
GPC-19416
Fixed a GlobalProtect redirection issue in embedded browser. When a user tried to connect to GlobalProtect, an error was displayed while waiting for the SAML response instead of being redirected to the embedded browser.
Addressed
6.1.5
GPC-19403
Fixed an issue where the GlobalProtect HIP check failed to detect Kaspersky after an upgrade from 21.3.10.391 to 21.15.8.493.
Addressed
6.1.5
GPC-19391
Fixed an issue where GlobalProtect stayed disconnected even when the device was unlocked by the user.
Addressed
6.1.5
GPC-19387
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app displayed text incorrectly when the system language was German.
Addressed
6.1.5
GPC-19314
Fixed an issue where, when the GlobalProtect app is installed on devices running macOS, the app displayed the message, Downloading in progress when the GlobalProtect app was upgraded to 6.0.x using the option Allow Transparently . The app should not display the message when upgraded using the transparent method.
Addressed
6.1.5
GPC-19262
Fixed an issue where GlobalProtect 6.2.1 tried to connect automatically after the user restarted their computer even though the connect method was set to On-Demand .
Addressed
6.1.5
GPC-19237
Fixed an issue where the GlobalProtect app did not disconnect when the user used the Disable option on the hamburger menu. The tunnel was still up and connected even when the user disconnected the GlobalProtect app.
Addressed
6.1.5
GPC-19138
Resolved an issue where the exclude for google application was not working for users.
Addressed
6.1.5
GPC-19098
Resolved an issue where pre-logon setup was not working when GlobalProtect 6.2.1 was deployed via Microsoft Intune.
Addressed
6.1.5
GPC-18992
Fixed an issue where internet via WiFi connection was unavailable for GlobalProtect users after their computer woke up from sleep because the app WiFi adapter was unable to obtain a DHCP IP address. This issue occurred on devices where Enforce GlobalProtect for Network Access feature was enabled.
Addressed
6.1.5
GPC-18933
Fixed an issue where the GlobalProtect HIP check incorrectly detected Real Time Protection for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.1.5
GPC-18831
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect app got stuck in the Connecting stage after the device woke up from Modern Standby mode.
Addressed
6.1.5
GPC-18815
Fixed an issue where the Logon button on the GlobalProtect login screen stopped working after receiving the Microsoft Edge WebView2 runtime, 117.0.2045.36 update on the devices.
Addressed
6.1.5
GPC-18778
Resolved an issue where devices supporting Modern Standby (Microsoft Learn) crashed when they entered sleep mode while the VPN plugin had an active connection and was sending data over its tunnel.
Addressed
6.1.5
GPC-18750
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect HIP check did not detect the Total Defense antivirus application, which caused the device to fail the HIP check.
Addressed
6.1.5
GPC-18728
Fixed an issue where the I Agree option on the GlobalProtect app Welcome page did not work as expected when the user selected the option using a keyboard.
Addressed
6.1.5
GPC-18702
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the Allow Manually upgrade failed when the user tried to upgrade the GlobalProtect app version from 6.0.5 to 6.0.7
Addressed
6.1.5
GPC-18625
Resolved an issue where the Zoom app intermittently stopped connecting on macOS and displayed an error message.
Addressed
6.1.5
GPC-18384
Fixed an issue where GlobalProtect app did not connect while Netskope was connected and vice-versa.
Addressed
6.1.5
GPC-15750
Fixed an issue where a hyperlink in a HIP notification opened in the GPO-disabled Internet Explorer 11 browser instead of the default browser.
Addressed
6.1.5
GPC-19631
Fixed an issue where when the GlobalProtect app is installed on iOS devices, the GlobalProtect app got disconnected and reconnected intermittently when the user was trying to upload files.
Addressed
6.1.5
GPC-20193
Fixed an issue where Linux users are disconnected intermittently from GlobalProtect.
Addressed
6.1.5
GPC-20124
Fixed an issue where GlobalProtect HIP was not working due to a failed OPSWAT library.
Addressed
6.1.5
GPC-19792
Fixed an issue where an error message was displayed on the GlobalProtect client: "Previous authentication attempt timed out. Please select Connect to initiate authentication once again". Despite this error, the VPN tunnel was established, and traffic was routed successfully through the tunnel.
Addressed
6.1.5
GPC-19748
Fixed an issue where the GlobalProtect app status was connected but no traffic was passing through. This issue occurred after the GlobalProtect Linux client was upgraded from 6.1.3 to 6.1.4 on Ubuntu Version 22.04.
Addressed
6.1.5
GPC-19353
Fixed an issue where GlobalProtect was stuck in "Connecting" stage a with "Login Successful!" white page displayed on the default browser instead of the expected Microsoft SAML page.
Addressed
6.1.5
GPC-19297
Fixed an issue where the Cortex XDR Last full-Scan-Time was not detected on GlobalProtect App for Linux.
Addressed
6.1.5
GPC-18903
Fixed an issue where when the GlobalProtect app was installed on Linux devices running on Red Hat version 9, the ‘resolv.conf file’ was not getting updated with GlobalProtect DNS servers as expected.
Addressed
6.1.5
GPC-17378
Fixed an issue where, when the GlobalProtect app was installed on devices running System76 coreboot BIOS, the HIP check failed when the Device ID was empty.
Addressed
6.1.4
GPC-19340
Fixed an issue where the GlobalProtect app failed to send HIP reports hourly.
Addressed
6.1.4
GPC-19331
Fixed an issue where, when SAML authentication was used to authenticate to the GlobalProtect app, the app used an unknown username SAMLUser which was not configured instead of the actual username of the user, which caused an authentication failure.
Addressed
6.1.4
GPC-19289
Fixed an issue where, when the GlobalProtect app was installed on Linux devices with Ubuntu 22.04, the app was unable to collect HIP reports.
Addressed
6.1.4
GPC-19280
Fixed an issue where, when the GlobalProtect app transitions from pre-logon to user-logon tunnel, the app did not display the list of gateways for the users to change the gateway. The gateway list was displayed only when the app was refreshed.
Addressed
6.1.4
GPC-19193
Fixed an issue where the GlobalProtect app was unable to fetch Windows firewall and antimalware information correctly.
Addressed
6.1.4
GPC-19187
Fixed an issue where, when the GlobalProtect app version 6.0.8 or 6.0.7 was installed on endpoints running macOS Sonoma 14.1, the PanGPS did not work as expected.
Addressed
6.1.4
GPC-19162
Fixed an issue where, when the user upgraded the GlobalProtect version to 5.2.13 or later version, the HIP report displayed the DLP Digital Guardian Agent as disabled.
Addressed
6.1.4
GPC-19153
Fixed an issue where, when the GlobalProtect app was installed on iOS devices, the users had to reconnect to the GlobalProtect app several times in a day. Users were prompted to enter the credentials every time they tried to reconnect.
Addressed
6.1.4
GPC-19143
Fixed an issue where the users were unable to choose the correct certificate for the app as the configured registry value previousCertificate did not work as expected.
Addressed
6.1.4
GPC-19104
Fixed an issue where the GlobalProtect HIP report failed to detect the Real Time Protection status for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.1.4
GPC-19083
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the Connection tab under app Settings did not display the connection status and the refresh connection did not work when the Settings window was opened.
Addressed
6.1.4
GPC-19061
Fixed an issue where GlobalProtect detected an incorrect Real-Time Protection status for Crowdstrike Falcon during HIP checks for antimalware.
Addressed
6.1.4
GPC-19060
Fixed an issue where when the GlobalProtect app was installed on devices running macOS, the Connection tab under app Settings did not display the connection status when the app was changed from a non-tunneled gateway to a tunneled gateway.
Addressed
6.1.4
GPC-19044
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and the user changed the network from wired to wireless within the organization, the device displayed a blue screen.
Addressed
6.1.4
GPC-19023
Fixed an issue where, when the GlobalProtect app version 5.2.13 was installed on devices running macOS, the users were unable to connect to the Zoom application.
Addressed
6.1.4
GPC-19009
Fixed an issue where, when SAML authentication was used to authenticate to the GlobalProtect app and the user changed the gateway to a manual gateway, the app stayed in the Connecting stage.
Addressed
6.1.4
GPC-18983
Fixed an issue where the Central Authentication Service (CAS) authentication did not work when the GlobalProtect app was connected to an internal gateway and the app repeatedly opened the SAML authentication page.
Addressed
6.1.4
GPC-18968
Fixed an issue where the GlobalProtect app displayed, You are on the internal corporate network message when users were on a public network. Users had to reboot the system to resolve this issue.
Addressed
6.1.4
GPC-18903
Fixed an issue where, when the GlobalProtect app was installed on Linux devices running on Red Hat version 9, the resolv.conf file was not getting updated with GlobalProtect DNS servers as expected.
Users should install/uninstall GlobalProtect app using p_install.sh and gp_uninstall.sh to fix resolve this issue.
Addressed
6.1.4
GPC-18703
Fixed an issue where the GlobalProtect HIP check did not detect the Trellix Endpoint Security application, which caused the device to fail the HIP check.
Addressed
6.1.4
GPC-18854
Fixed an issue where users were prompted twice to authenticate using SAML authentication when used with CAS authentication and authentication override cookie, the GlobalProtect app got stuck in the Connecting stage while trying to connect.
Addressed
6.1.4
GPC-18828
Fixed an issue where split tunnel CNAME records were created before the GlobalProtect tunnel was established.
Addressed
6.1.4
GPC-18525
Fixed an issue where, when the GlobalProtect app was installed on Linux devices running on Ubuntu 22.04, the app got disconnected intermittently with the error message: Failed to read notify event buffer, error: Resource temporarily unavailable.
Addressed
6.1.4
GPC-16975
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader did not announce the name of the GlobalProtect gateway when the gateway was marked with the star symbol.
Addressed
6.1.4
GPC-16597
Fixed an issue where the GlobalProtect app stopped working when the app was upgraded from version 5.2.8 to 6.0.3.
Addressed
6.1.3
GPC-19336
Fixed an issue where the ADEM portal did not display user information such as User-ID when the ADEM portal was changed from on-premises to Prisma Access.
Addressed
6.1.3
GPC-18964
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and the user upgraded the GlobalProtect version from 6.0.5 to 6.2.1, the app got disconnected after 10 minutes.
Addressed
6.1.3
GPC-18913
Fixed an issue where the GlobalProtect app changed the connection status to Not Connected even though the app was connected to the internal gateway.
Addressed
6.1.3
GPC-18907
Fixed an issue where the GlobalProtect app on macOS endpoints did not query the secondary DNS (when primary DNS is not responding) when the domain was part of the exclude domain list (both network and DNS).
Addressed
6.1.3
GPC-18822
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and the device was reset using the Microsoft Recovery tool, the GlobalProtect app was not properly displayed.
Addressed
6.1.3
GPC-18788
Fixed an issue where the GlobalProtect HIP check did not detect McAfee Total Protection as an anti-malware application, which caused the device to fail the HIP check.
Addressed
6.1.3
GPC-18733
Fixed an issue where the hyperlinks with the URLs containing the = character in the HIP notification message did not work as expected and the page did not open when the user clicked the URL.
Addressed
6.1.3
GPC-18728
Fixed an issue where the I Agree option on the GlobalProtect app Welcome page did not work as expected when the user selected the option using a keyboard.
Addressed
6.1.3
GPC-18720
Fixed an issue where the GlobalProtect app became unresponsive when the user clicked the ESC button during authentication using a hard token.
Addressed
6.1.3
GPC-18599
Fixed an issue where Linux endpoints could not resolve FQDNs when the GlobalProtect tunnel was connected because the host stopped listening to UDP/53 on the loopback IP address.
Addressed
6.1.3
GPC-18598
Fixed an issue where the GlobalProtect SSO tile was selected instead of the Windows Password tile in the Windows Login screen even though the registry key MakeGPCPDefault was set to No .
Addressed
6.1.3
GPC-18594
Fixed an issue where the GlobalProtect app was unable to send HIP reports when the app was connected using IPv6 address.
Addressed
6.1.3
GPC-18566
Fixed an issue where the GlobalProtect app incorrectly displayed the gateway as internal when it was connected to an external gateway.
Addressed
6.1.3
GPC-18528
Fixed an issue where the GlobalProtect HIP check incorrectly detected the version for KES 12 (Kaspersky Endpoint Security), which caused the device to fail the HIP check.
Addressed
6.1.3
GPC-18512
Fixed an issue where, when the GlobalProtect app was installed on Linux devices running Ubuntu 22.04 or REHL 9.1, the app got disconnected periodically.
Addressed
6.1.3
GPC-18471
Fixed an issue where, when multiple wa_3rd_party_host_64.exe processes persisted even after the HIP check was performed, the GlobalProtect app stopped working.
Addressed
6.1.3
GPC-18426
Fixed an issue where, when the GlobalProtect app was configured with the ' Disable GlobalProtect option set to Allow With Ticket , the app did not display the correct Disable Duration time.
Addressed
6.1.3
GPC-18383
Fixed an issue where the GlobalProtect app failed to connect on Windows 11 endpoints with error Could not connect to the GlobalProtect service .
Addressed
6.1.3
GPC-18379
Fixed an issue where, when the IP address type was set to IPv4 and IPv6, the GlobalProtect app could connect only to the manual gateway instead of connecting to the best available gateway.
Addressed
6.1.3
GPC-18367
Fixed an issue where, when pre-logon was configured for the GlobalProtect app, the GlobalProtect portal displayed the FQDN or IP address of the gateway and not the gateway name. With this fix, the portal displays the gateway name instead of FQDN or IP address.
Addressed
6.1.3
GPC-18336
Fixed an issue where, when the GlobalProtect app got automatically connected after a system reboot even though the connection method configured was On-Demand.
Addressed
6.1.3
GPC-18318
Fixed an issue where, when the GlobalProtect app was connected to the internal gateway, the app displayed the message : Connected - Inter.... instead of Connected .
Addressed
6.1.3
GPC-18251
Fixed an issue where the GlobalProtect HIP check did not detect McAfee LiveSafe as an anti-malware application, which caused the device to fail the HIP check.
Addressed
6.1.3
GPC-18230
Fixed an issue where, when the user entered credentials during SAML authentication after the set internal login timer, the app displayed an authentication failed message without providing the reason. The Retry button on the app web interface did not work properly when using an embedded browser for authentication. The Retry button was not fully visible on the embedded browser.
Addressed
6.1.3
GPC-18223
Fixed an issue where GlobalProtect experienced a prolonged connection time when IPv6 was disabled on Windows devices.
Addressed
6.1.3
GPC-18200
Fixed an issue where the GlobalProtect HIP check did not detect McAfee LiveSafe as an antivirus application, which caused the device to fail the HIP check.
Addressed
6.1.3
GPC-18173
Fixed an issue where the vertical scroll bar on the GlobalProtect app web interface did not work properly when users tried to select the certificate from the drop-down.
Addressed
6.1.3
GPC-18171
Fixed an issue where users were unable to select the external gateway manually when connected to the internal network. The GlobalProtect stayed in Connecting state and users had to manually disconnect the connection and connect to the internal network to exit the Connecting state.
Addressed
6.1.3
GPC-18167
Fixed an issue where the GlobalProtect app displayed the Prisma Access gateways that were not set for manual selection.
Addressed
6.1.3
GPC-18157
Fixed an issue where the GlobalProtect app displayed the Credential Provider language in English when the system language was German.
Addressed
6.1.3
GPC-18155
Fixed an issue where, when the GlobalProtect app was installed on Linux devices, the app displayed the text in an incorrect format and the users were unable to read the information displayed on the app.
Addressed
6.1.3
GPC-18146
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the GlobalProtect HIP check did not detect the correct details for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.1.3
GPC-18135
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect HIP check detected the WithSecure antivirus software as XProtect, which caused the device to fail the HIP check.
Addressed
6.1.3
GPC-18107
Fixed an issue where the GlobalProtect HIP check did not detect McAfee LiveSafe – Internet Security, which caused the device to fail the HIP check.
Addressed
6.1.3
GPC-18092
Fixed an issue where GlobalProtect connected to an internal gateway got automatically disconnected after a certain period of time.
Addressed
6.1.3
GPC-18060
Fixed an issue where the GlobalProtect HIP check did not detect McAfee Total Protection, which caused the device to fail the HIP check.
Addressed
6.1.3
GPC-18039
Fixed an issue where the GlobalProtect HIP check did not detect the Definition Date correctly for the CrowdStrike application, which caused the device to fail the HIP check.
Addressed
6.1.3
GPC-17914
Fixed an issue where, when the GlobalProtect app was installed on macOS endpoints and split tunnel was configured based on the application, the Zoom app got disconnected intermittently.
Addressed
6.1.3
GPC-17896
Fixed an issue where users were unable to connect to GlobalProtect gateway when only one external gateway was added due to the following error: Cannot Verify Server Certificate of Gateway .
Addressed
6.1.3
GPC-17640
Fixed an issue where, when the upgrade script update_tmp.bat was used, the error message did not display the correct exit timeout for the PanGPS uninstall process.
Addressed
6.1.3
GPC-17518
Fixed an issue where the GlobalProtect app displayed the status as Connected-Internal even when the app was not connected.
Addressed
6.1.3
GPC-17492
Fixed an issue where, when the traffic enforcer setting was applied for pre-logon and the GlobalProtect app was disconnected, the new user setting did not get updated and the pre-logon setting was still applicable.
Addressed
6.1.3
GPC-17204
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the certificate information was not accessible even though the GlobalProtect app had full access to the certificate store.
Addressed
6.1.3
GPC-17161
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect app failed to reconnect and continued to stay in the Connecting state after the device woke up from Modern Standby mode.
Addressed
6.1.3
GPC-17001
Fixed an issue where, when the GlobalProtect app was installed on devices running on macOS, the app did not display the Connect button and Refresh Connection button properly.
Addressed
6.1.3
GPC-16609
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and the screen displayed GlobalProtect app connection status incorrectly when the device was locked.
Addressed
6.1.3
GPC-16597
Fixed an issue where the GlobalProtect app stopped working when the app was upgraded from version 5.2.8 to 6.0.3.
Addressed
6.1.3
GPC-16441
Fixed an issue where the GlobalProtect app connection failed when both GlobalProtect Enforcer and Endpoint Traffic Policy Enforcement were enabled.
Addressed
6.1.3
GPC-16397
Fixed an issue where the GlobalProtect app was installed on devices running macOS, a blank GlobalProtect app user interface was displayed instead of the correct page.
Addressed
6.1.3
GPC-15697
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, users were able to select All Gateways heading on the page which was not an option for the users to select. This issue happened on the app interface with a non-English language.
Addressed
6.1.0
GPC-19030
Fixed an issue where GlobalProtect 6.1.0 on iOS 17 cannot connect gateways successfully.
Addressed
6.1.0
GPC-18672
Fixed an issue where, when the customer upgraded from 5.2.12-26 to 6.1.1-6 on several devices, several devices received blue screen error messages. To fix the problem, the customer completely uninstalled the 5.x version of GlobalProtect before upgrading to 6.1.1.
Addressed
6.1.0
GPC-18207
Fixed an issue where, when the GlobalProtect app was installed on Android devices and the block list was configured through mobile device management (MDM), the block list did not work as expected and the traffic was not blocked as per the configuration.
Addressed
6.1.0
GPC-17875
Fixed an issue where,when the GlobalProtect app was installed on iOS devices, the app got stuck in the Connecting state and users had to restart the device to connect to the app.
Addressed
6.1.0
GPC-17635
Fixed an issue where, when the GlobalProtect app was installed on iOS devices, users were unable to send logs ( Help > Send Logs ) through apps other than iOS Mail Client. Users can now share the logs using any file sharing app (e.g. Gmail) so that administrators can analyze the logs.
Addressed
6.1.0
GPC-17435
Fixed an issue where, when the GlobalProtect app was installed on iOS devices and configured with On-Demand mode, the app displayed the following erroneous pop-up message:
GlobalProtect Always-On mode is enabled. Please sign in to continue.
Addressed
6.1.0
GPC-16741
Fixed an issue where, when the GlobalProtect app was installed on iOS devices, users could not connect the iOS device to a manual gateway even though the GlobalProtect portal was configured with two external manual gateways.
Addressed
6.1.0
GPC-15137
Fixed an issue where, when the GlobalProtect app was installed on Android devices, the users could not connect to the app due to the following error:
ANDROID_ACTION_START_VNIC, ret=failed.
Addressed
6.1.2
GPC-18126
Fixed an issue where devices displayed the DRIVER_VERIFIER_DETECTED_VIOLATION Blue Screen error when the GlobalProtect app was upgraded from version 5.2.10 to 6.1.1.
Addressed
6.1.2
GPC-18116
Fixed an issue where Trend Micro XDR detected packet capture processes randomly via GlobalProtect (PanGPS.exe service).
Addressed
6.1.2
GPC-18073
Fixed an issue where the GlobalProtect app selected an unexpected gateway due to a latency discrepancy seen between PanGPS and packet capture.
Addressed
6.1.2
GPC-17921
Fixed an issue where, when the language was set to Japanese, the time to connect was not displayed properly when a Disconnect Timeout was configured for the app.
Addressed
6.1.2
GPC-17896
Fixed an issue where users were unable to connect to GlobalProtect gateway when only one external gateway was added due to the following error: Cannot Verify Server Certificate of Gateway .
Addressed
6.1.2
GPC-17831
Fixed an issue where the GlobalProtect app reported the computer name differently from the computer name displayed in Autonomous DEM causing a data discrepancy.
Addressed
6.1.2
GPC-17771
Fixed an issue where the GlobalProtect app stopped working abruptly.
Addressed
6.1.2
GPC-17776
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and GlobalProtect enforcer was configured with allowed FQDNs, users were still able to access the internet and other public domains.
Addressed
6.1.2
GPC-17762
Fixed an issue where when the GlobalProtect app Allow User to Disable GlobalProtect App setting was set to Allow with Comment , the option did not work as expected.
Addressed
6.1.2
GPC-17754
Fixed an issue where the GlobalProtect app did not detect Smart Card removal every time the user removed the card and due to which the app was not getting disconnected in On-Demand tunnel mode.
Addressed
6.1.2
GPC-17740
Fixed an issue where, when the GlobalProtect app was connected through the Prisma Access gateway, the upload speed of the internet was reduced to 2 Mbps.
Addressed
6.1.2
GPC-17728
Fixed an issue where users were unable to connect to the GlobalProtect gateway when only one external gateway was added due to the following error: Cannot Verify Server Certificate of Gateway .
Addressed
6.1.2
GPC-17718
Fixed an issue where the GlobalProtect app incorrectly detected the firewall status as disabled while the GlobalProtect HIP check detected the device as Windows firewall enabled.
Addressed
6.1.2
GPC-17556
Fixed an issue where the GlobalProtect app would get stuck in the Connecting state when the user tried to close the browser window for SAML authentication after configuring On-Demand mode for the app.
Addressed
6.1.2
GPC-17598
Fixed an issue on the GlobalProtect app for Linux where, when the GlobalProtect app was connected and the tunnel was up, the DNS requests were sent to the public DNS servers assigned to the physical interface.
Addressed
6.1.2
GPC-17554
Fixed an issue where the device displayed a Blue Screen error when users upgraded the GlobalProtect version to 6.1.1-5
Addressed
6.1.2
GPC-17519
Fixed an issue where, when the GlobalProtect app was installed on Linux devices, the file size of the log file (PanGPUI.log.old) increased without getting log rotated.
Addressed
6.1.2
GPC-17473
Fixed an issue where the GlobalProtect portal and gateway selection list were displayed in the table format and not as menu items.
Addressed
6.1.2
GPC-17460
Fixed an issue where, when the GlobalProtect app was installed on Windows 10 or 11 devices, and when the user tried to authenticate using SAML authentication, the app did not display the Terms of Use pop-up on the Welcome page properly.
Addressed
6.1.2
GPC-17436
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the upload speed of the internet was reduced after a version upgrade.
Addressed
6.1.2
GPC-17419
Fixed an issue where the GlobalProtect system tray icon continued to stay in Connecting state even when the app was connected and had access to internal resources.
Addressed
6.1.2
GPC-17406
Fixed an issue where GlobalProtect HIP check did not detect the new version of Trellix Drive Encryption correctly, which caused the device to fail the HIP check.
Addressed
6.1.2
GPC-17404
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and the app was upgraded from version 5.2.12 to 6.0.5, the device displayed the DRIVER_VERIFIER_DETECTED_VIOLATION Blue Screen error.
Addressed
6.1.2
GPC-17398
Fixed an issue where the Settings Connection tab in the GlobalProtect add did not display the Assigned IP Address(es) and Gateway IP Address properly.
Addressed
6.1.2
GPC-17393
Fixed an issue where, when the GlobalProtect app was installed on Windows 10 devices and the language was set to Japanese, IpConfig.txt and Systeminfo.txt in the GlobalProtectLogs.zip did not work properly.
Addressed
6.1.2
GPC-17337
Fixed an issue where the GlobalProtect app disconnected due to a HIP reporting error that prevented the app from sending HIP reports to the gateway.
Addressed
6.1.2
GPC-17339
Fixed an issue where the device could not reconnect to the internet when endpoint traffic policy enforcement was enabled and when the user switched networks. Users had to reboot the system to connect to the internet.
Addressed
6.1.2
GPC-17335
Fixed an issue where the user interface of the GlobalProtect app was going oversized when the system woke up from the sleep mode.
Addressed
6.1.2
GPC-17326
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the device displayed a blue screen when users tried to download files larger than 5GB.
Addressed
6.1.2
GPC-17299
Fixed an issue where the GlobalProtect app did not display LDAP password expiration notification on consecutive connection attempts when the user tried to authenticate using the LDAP authentication method.
Addressed
6.1.2
GPC-17227
Fixed an issue where the tunnel was still up and connected even when the user disconnected the GlobalProtect app.
Addressed
6.1.2
GPC-17205
Fixed an issue where GlobalProtect failed to decrypt HipPolicy.dat on endpoints, which caused the device to fail the HIP check for anti-malware.
Addressed
6.1.2
GPC-17137
Fixed an issue where, when the user clicked the Network sign-in icon on the Windows login page, an icon with the name ‘image’ was displayed instead of the portal IP address/ URL.
Addressed
6.1.2
GPC-17099
Fixed an issue where devices with Driver Verified enabled and configured to monitor the PAN virtual adapter driver (pangpd.sys) displayed the DRIVER_VERIFIER_DETECTED_VIOLATION Blue Screen error.
Addressed
6.1.2
GPC-17011
Fixed an issue where the GlobalProtect app tried to send HIP reports even when the device was on Modern Standby mode.
Addressed
6.1.2
GPC-17000
Fixed an issue where the GlobalProtect app got stuck in the Connecting state when the user tried to authenticate with SAML authentication using the embedded browser and clicked Cancel on the certificate prompts.
Addressed
6.1.2
GPC-16978
Fixed an issue where the GlobalProtect app took a long time to establish a connection due to an erroneous packet capture process.
Addressed
6.1.2
GPC-16959
Fixed an issue where the Endpoint Traffic Policy Enforcement feature was causing the GlobalProtect app to drop Slack WebSocket outbound traffic on macOS endpoints.
Addressed
6.1.2
GPC-16851
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app did not try to auto-connect to the gateway after exceeding the Disable Timeout value.
Addressed
6.1.2
GPC-16837
Fixed an issue where the GlobalProtect app (PANGP Virtual Ethernet Adapter) was intermittently disconnected after a system reboot though the gateway status displayed it as Connected.
Addressed
6.1.2
GPC-16662
Fixed an issue where the GlobalProtect app sent the Intermediate Certificate instead of the Server Certificate for OCSP check while performing Certificate authentication on GlobalProtect.
Addressed
6.1.2
GPC-16655
Fixed an issue where, when configured with the pre-logon connect method, the GlobalProtect app indicated that it was connected, but the tunnel was not established and users were unable to access resources.
Addressed
6.1.2
GPC-16645
Fixed an issue where the GlobalProtect app couldn't display the Verify text box when using the full 255 characters for Radius DUO Authentication on Windows devices.
Addressed
6.1.2
GPC-16631
Fixed an issue where GlobalProtect logs forwarded from CDL to syslog-ng and Splunk were arriving in multiline and single line mode randomly.
Addressed
6.1.2
GPC-16575
Fixed an issue where GlobalProtect users were intermittently unable to log in to the gateway when using the user logon connect method because Enforce GlobalProtect Connection for Network Access was enabled immediately after portal login, blocking access to the gateway login URL.
Addressed
6.1.2
GPC-16504
Fixed an issue where, when the GlobalProtect app was installed on the Windows devices, the GlobalProtect app failed to send the Diagnostic report when the end user used the option to Report an Issue .
Addressed
6.1.2
GPC-16489
Fixed an issue where the GlobalProtect HIP check did not detect the Chinese anti-malware applications, which caused the device to fail the HIP check.
Addressed
6.1.2
GPC-16346
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the GlobalProtect HIP check took longer than expected to collect the HIP information and also displayed HIP pop-up error messages for antivirus software, which caused the device to fail the HIP check.
Addressed
6.1.2
GPC-16267
Fixed an issue where the portal status did not show as Connected even when the portal was accessible after a reboot and the portal status was Using cached portal config , which did not trigger the transparent upgrade.
Addressed
6.1.2
GPC-16148
Fixed an issue where GlobalProtect notifications were displayed in HTML code instead of formatted text.
Addressed
6.1.2
GPC-16135
Fixed an issue where the GlobalProtect app connection failed when Windows 10 21H2 users tried to switch to another Windows user account on the device
Addressed
6.1.2
GPC-16074
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS with SAML authentication, users were unable to connect to the app after the system woke up from sleep mode. The app stayed in Connecting state for a long time and users had to refresh the connection.
Addressed
6.1.2
GPC-16056
Fixed an issue where GlobalProtect HIP check did not detect the name of the Trellix Agent correctly, which caused the device to fail the HIP check.
Addressed
6.1.2
GPC-16002
Fixed an issue where the GlobalProtect HIP check detected the device as Windows firewall enabled even though the firewall was disabled on the device.
Addressed
6.1.2
GPC-15976
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the device displayed a Blue Screen error due to a faulty GlobalProtect app driver.
Addressed
6.1.2
GPC-15968
Fixed an issue where the GlobalProtect app was stuck in the Connecting state when users failed to authenticate with SAML and using an embedded browser. Users were unable to disconnect the app and had to reboot the device.
Addressed
6.1.2
GPC-15922
Fixed an issue where, when Connect Before Logon using Security Assertion Markup Language (SAML) authentication was used to log in to the endpoint, the Use Default Browser for SAML Authentication did not work as expected with the configured Connect Before Logon option.
Addressed
6.1.2
GPC-15485
Fixed an issue where the GlobalProtect HIP check did not detect the Real-Time Protection status for the FireEye Endpoint Agent, which caused the device to fail the HIP check.
Addressed
6.1.2
GPC-15262
Fixed an issue where single sign-on (SSO) for Smart Card were used for authentication, users were prompted to enter PIN instead of password on the Windows login screen.
Addressed
6.1.2
GPC-15234
Fixed an issue where the app would get stuck at the Connecting state while trying to connect to a gateway.
Addressed
6.1.2
GPC-15111
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader repeatedly announced tabs, Add button, and portals table on the user interface. The screen reader must announce the user interface elements only once.
Addressed
6.1.2
GPC-15105
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app Home page displayed text in an incorrect color contrast ratio causing readability issues for users.
Addressed
6.1.2
GPC-15080
Fixed an issue where the split tunnel was configured based on the destination domain, split tunneling did not work as expected when IPv6 traffic exclusion was configured.
Addressed
6.1.1
GPC-16324
Fixed an issue where Endpoint Traffic Policy Enforcement dropped IPv6 ICMP neighbor discovery packets causing the IPv6 tunnel to drop.
Addressed
6.1.1
GPC-16029
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, users were prompted for certificate selection even when the Extended Key Usage OID for Client Certificate' was configured in the App Configurations area of the GlobalProtect portal configuration.
Addressed
6.1.1
GPC-15989
Fixed an issue where, when the Default System Browser is used for SAML, the GlobalProtect app kept displaying Connecting when connected to an internal gateway.
Addressed
6.1.1
GPC-15994
Fixed an issue where Endpoint Traffic Policy Enforcement interaction with Windows Filter Platform (WFP) and third-party vendors caused intermittent user tunnel drops.
Addressed
6.1.1
GPC-15972
Fixed an issue where the GlobalProtect HIP check did not detect the Real-Time Protection status correctly for the CrowdStrike Falcon application, which caused the device to fail the HIP check.
Addressed
6.1.1
GPC-15834
Fixed an issue where the GlobalProtect app got disconnected after HIP check.
Addressed
6.1.1
GPC-15677
Fixed an issue where, when the GlobalProtect app was installed on macOS, users were prompted for login when the app was installed using the property list (plist) with On-Demand connect method.
Addressed
6.1.1
GPC-15991
Fixed an issue where the GlobalProtect app installer was displaying the wrong Palo Alto Networks logo.
Addressed
6.1.1
GPC-15534
Fixed an issue where the proxy credential pop-up window did not show when connecting to the GlobalProtect portal after upgrading the GlobalProtect app to version 5.2.5 and above.
Addressed
6.1.1
GPC-15167
Fixed an issue where when the GlobalProtect app was installed on devices running macOS, the GlobalProtect enforcer continued to block network access even after connecting to the internal gateway.
Addressed
6.2.6-c857
GPC-22107
Fixed an issue where the GlobalProtect agent was unable to validate the server certificate after the CVE-2024-5921 remediation was applied.
Addressed
6.2.6-c857
GPC-22104
Fixed an issue where the GlobalProtect HIP report failed to detect the Seqrite Endpoint Protection application, when the application was upgraded to a higher version 18.00 (14.0.0.1)
Addressed
6.2.6-c857
GPC-22082
Fixed an issue where GlobaProtect did not validate certificates with 3rd parties or PKI and displayed a FIPS error.
Addressed
6.2.6-c857
GPC-22079
Fixed an issue where users were unable to connect to the GlobalProtect app due to Captive Portal connectivity issues.
Addressed
6.2.6-c857
GPC-22046
Fixed an issue where when the GlobalProtect app was installed on devices running macOS and the app version was upgraded to 6.2.5, end users were unable to connect the app. The app got stuck in the Connecting state and displayed the following message, “You are redirected to an embedded browser to authenticate and connect.”
Addressed
6.2.6-c857
GPC-22010
Fixed an issue where loopback connection did not work when Endpoint Traffic Policy Enforcement was enabled.
Addressed
6.2.6-c857
GPC-21950
Fixed an issue where the GlobalProtect connection on MacOS Sequoia 15+ was unstable.
Addressed
6.2.6-c857
GPC-21778
Fixed an issue where the GlobalProtect IPSec tunnel got disconnected on GlobalProtect app version 6.2.5 when the gpupdate /force command was used to update a policy.
Addressed
6.2.6-c857
GPC-21284
Fixed an issue where the GlobalProtect gateway did not receive the HIP reports from the user correctly due to which the end users were unable to access the resources even when the sessions were active.
Addressed
6.2.6-c857
GPC-20592
Fixed an issue where the GlobalProtect app could not establish the tunnel and the app got stuck in the tunnel creation stage. The app displayed the following error, “ The virtual adapter was not set up correctly due to a delay.”
Addressed
6.2.1-c31
GPC-19861
A fix was made to address insufficient certification validation vulnerability in GlobalProtect app software for Linux platform ( CVE-2024-5921 )
Addressed
6.2.6
GPC-21774
Fixed an issue where the GlobalProtect ARM64 installers for 6.2.5 version did not display Digital Signatures tab.
Addressed
6.2.6
GPC-21721
Fixed an issue, where the GlobalProtect app got stuck in Connecting status when the device woke up from sleep mode.
Addressed
6.2.6
GPC-21731
Fixed an issue where the GlobalProtect app is stuck in the Connecting status when upgraded to 6.2.5-788 version and the users had to reboot the system to resolve the issue.
Addressed
6.2.6
GPC-21665
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and the app was used with Trellix Proxy Agent, the web browser displayed the following error, ERR_SOCKET_NOT_CONNECTED .
Addressed
6.2.6
GPC-21636
Fixed an issue where the users were unable to login Windows 11 using the User Principal Name (UPN) when GPCP was selected with GlobalProtect app version 6.2.4 and Interactive logon: Don't display last signed-in was enabled in their Entra ID - group policy.
Addressed
6.2.6
GPC-21604
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and were connected to the internal gateway, the app did not display the Disconnect option under Settings .
Addressed
6.2.6
GPC-21413
Fixed an issue where the GlobalProtect Credential Provider did not reset focus on the password field when the user entered the wrong password.
Addressed
6.2.6
GPC-21375
Fixed an issue where the Windows SSO did not work when the SAML authentication method was used to authenticate to the app. The username retrieved from SAML was not matching configuration selection criteria causing authentication issues.
Addressed
6.2.6
GPC-21332
Fixed an issue where the GlobalProtect HIP check incorrectly detected Real Time Protection status for Avast and XProtect, which caused the device to fail the HIP check.
Addressed
6.2.6
GPC-21320
Fixed an issue where the GlobalProtect HIP check did not detect Kaspersky Endpoint Security antimalware application which caused the device to fail the HIP check.
Addressed
6.2.6
GPC-21281
Fixed an issue where the GlobalProtect app got stuck in the Connecting status when the user refreshed the connection.
Addressed
6.2.6
GPC-21267
Fixed an issue where, when the user installed the GlobalProtectARM installer from the Customer Support Portal (CSP) and the user opened GlobalProtect using the Start menu, the icon file (PanGPA.ico) was opened instead of the executable (PanGPA.exe) file.
Addressed
6.2.6
GPC-21247
Fixed an issue where GlobalProtect HIP set the Filevault encryption status to unencrypted on macOS running devices, which denied access to the end-point machines.
Addressed
6.2.6
GPC-21240
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS Sonoma 14.5, the app used the old FQDN names and got stuck in the Connecting status instead of prompting the user to enter the portal FQDN name.
Addressed
6.2.6
GPC-21222
Fixed an issue where the GlobalProtect HIP check incorrectly detected the Real Time Protection Status and Last Full Scan for Avast application, which caused the device to fail the HIP check.
Addressed
6.2.6
GPC-21811
Fixed an issue where the PanGPS stopped working soon after the GlobalProtect was installed on the endpoint and the GlobalProtect app got stuck in the Connecting stage.
Addressed
6.2.6
GPC-21174
Fixed an issue where the GlobalProtect HIP check did not detect Real time protection status for Acronis Cyber Protection Agent, which caused the device to fail the HIP check.
Addressed
6.2.6
GPC-21131
Fixed an issue where the users were unable to access the Advanced Logging Settings screen of the GlobalProtect app using the ctrl + tab key combination on the keyboard. The screen reader did not announce the keyboard options correctly.
Addressed
6.2.6
GPC-21106
Fixed an issue where the GlobalProtect HIP check did not detect 'Real Time Protection' status for Malwarebytes anti-malware application, which caused the device to fail the HIP check.
Addressed
6.2.6
GPC-20783
Fixed an issue where the password field was not automatically selected for typing when using the embedded browser, requiring users to click inside the field before entering their password
Addressed
6.2.6
GPC-20779
Fixed an issue where Windows regional settings are not respected by Webview 2 on SAML embedded browser resulting in regional language(French, German, Chinese, Spanish, and Japanese) not loading properly in embedded browser.
Addressed
6.2.6
GPC-20674
Fixed an issue where all GlobalProtect portals except for the currently connected portal were deleted during the upgrade from 6.2.2 to 6.2.3 or from 6.2.3 to 6.3.0.
Addressed
6.2.6
GPC-18647
Fixed an issue with GlobalProtect App Log Collection feature where the user reported an issue using Report an Issue option on the GlobalProtect app and the issue was not reported as expected.
Addressed
6.2.5
GPC-21656
Fixed an issue where an unexpected extra string was added to the end of the MFA prompt.
Addressed
6.2.5
GPC-21533
Fixed an issue where GlobalProtect connected and disconnected in a loop
Addressed
6.2.5
GPC-21483
Fixed an issue where users are intermittently unable to connect to GlobalProtect and get stuck at the connecting stage.
Addressed
6.2.5
GPC-21465
Fixed an issue where GlobalProtect is stuck in "Connecting... Finding the Best Available Gateway".
Addressed
6.2.5
GPC-21442
Fixed an issue where there was a delay in GlobalProtect restoring connectivity after the Windows host woke up from modern standby.
Addressed
6.2.5
GPC-21443
Fixed an issue where GlobalProtect crashed when the PanGPS service was stopped.
Addressed
6.2.5
GPC-21414
Fixed an issue where GlobalProtect using SAML authentication gets stuck in a connecting loop upon the expiration of the authentication cookie.
Addressed
6.2.5
GPC-21392
Fixed an issue where GlobalProtect is stuck in the connecting state for 2-3 minutes during Windows Pre-logon.
Addressed
6.2.5
GPC-21387
Fixed an issue that prevented users from connecting to Wi-Fi networks when GlobalProtect was disconnected.
Addressed
6.2.5
GPC-21355
Fixed an issue where GlobalProtect was incorrectly showing as connected during Windows pre-logon.
Addressed
6.2.5
GPC-21301
Fixed an issue where after upgrading to GlobalProtect 6.2.4, users were unable to connect to GlobalProtect intermittently when Enforcer is enabled.
Addressed
6.2.5
GPC-21247
Fixed an issue where HIP checks for Disk Encryption status were failing after Windows and Mac hosts were rebooted, on low power mode or were resuming from standby.
Addressed
6.2.5
GPC-21206
Fixed an issue where GlobalProtect intermittently does not restore connection after the user logs back in or wakes a Windows host.
Addressed
6.2.5
GPC-21172
Fixed an issue where the GlobalProtect agent gets disconnected right after successful connection when SAML embedded browser authentication is used along with "Enforce GlobalProtect for Network Access".
Addressed
6.2.5
GPC-21161
Fixed an issue where the notifications prior to 'Login Lifetime Expiration' and 'Inactivity Logout' were not displayed even when enabled.
Addressed
6.2.5
GPC-21101
Fixed an issue where the embedded browser pop-up with "Login Successful" was displayed for each SAML authentication.
Addressed
6.2.5
GPC-21057
Fixed an issue where HIP checks for Disk Encryption status were failing on Windows during modern standby.
Addressed
6.2.5
GPC-21035
Fixed an issue where GlobalProtect HIP did not identify the definition version of the SentinelOne Agent.
Addressed
6.2.5
GPC-21024
Fixed an issue where a HIP notification configured as "pop-up-message" for pre-logon does not show up. The pop up window is blank.
Addressed
6.2.5
GPC-21005
Fixed an issue where after submitting the SAML credentials, a blank screen was displayed and GlobalProtect got stuck in that stage.
Addressed
6.2.5
GPC-20991
Fixed an issue where the 'Extended Key Usage OID' value for certificate selection was deleted during an upgrade of the GlobalProtect agent. This forces users to have to manually select the correct certificate tp be used for authentication.
Addressed
6.2.5
GPC-20988
Fixed an issue where GlobalProtect failed to resolve DNS queries when the 'Allow traffic to specified FQDN when Enforce GlobalProtect Connection for Network Access is enabled and GlobalProtect Connection is not established' configuration is set.
Addressed
6.2.5
GPC-20983
Fixed an issue where the GlobalProtect app remains stuck in the connecting stage when Windows computer resumes from sleep.
Addressed
6.2.5
GPC-20943
Fixed an issue where the GlobalProtect enforcer blocked DHCP packets.
Addressed
6.2.5
GPC-20895
Fixed an issue where GlobalProtect users on macOS were able to add and modify the portal address even when portal agent configuration was "Allow User to Change Portal Address = NO".
Addressed
6.2.5
GPC-20884
Fixed an issue where users get disconnected a few seconds after logging in to VDI when GlobalProtect connects. They are unable to reconnect after that.
Addressed
6.2.5
GPC-20864
Fixed an issue where the GlobalProtect embedded browser login window did not stay pinned to the front of all open windows on Windows and MAC computers.
Addressed
6.2.5
GPC-20839
Fixed an issue where system extensions on MacBooks were not updated upon GlobalProtect app upgrade.
Addressed
6.2.5
GPC-20838
Fixed an issue where the HIP report generation was taking longer than the 'Max Wait Time' on Windows devices when anti-malware and disk encryption checks are configured.
Addressed
6.2.5
GPC-20771
Fixed an issue where GlobalProtect 6.2 users on Windows 11(ARM & Intel) devices cannot connect to GlobalProtect due to "The Parameter is incorrect" error.
Addressed
6.2.5
GPC-20770
Fixed an issue where certain GlobalProtect HIP checks on Windows devices failed when there was no internet connectivity.
Addressed
6.2.5
GPC-20741
Fixed an issue where the GlobalProtect app intermittently disconnects from the gateway when using the embedded browser for SAML authentication.
Addressed
6.2.5
GPC-20736
Fixed an issue where users are being logged out from GlobalProtect when the device wakes up from modern standby and network discovery happens.
Addressed
6.2.5
GPC-20700
Fixed an issue where macOS users had to enter the SAML username and password each time they refreshed or rebooted their computer especially when using Safari or Embedded browser.
Addressed
6.2.5
GPC-20692
Fixed an issue where GlobalProtect 6.2.3 with SAML authentication (via Okta) opens the embedded browser page in the background instead of the foreground.
Addressed
6.2.5
GPC-20645
Fixed an issue where GlobalProtect app in macOS is stuck in connecting state when the device wakes up from sleep.
Addressed
6.2.5
GPC-20626
Fixed an issue where the GlobalProtect client overwrites valid authentication override cookie with empty authentication override cookie from portal when using cached portal configuration.
Addressed
6.2.5
GPC-20601
Fixed an issue where macOS users are unable to connect to GlobalProtect after upgrading from version 6.2.2 to 6.2.3 via JAMF.
Addressed
6.2.5
GPC-20595
Fixed an issue where GlobalProtect users were unable to connect after upgrading to 6.2.3-270 and received a "Your internet access is blocked" error during SAML authentication using the embedded browser.
Addressed
6.2.5
GPC-20550
Fixed an issue where Zoom and Outlook apps intermittently stop connecting on macOS with an error "You are unable to connect to Zoom. Please check your network connection and try again" when the apps are excluded under both domains and applications.
Addressed
6.2.5
GPC-20466
Fixed an issue where when the tunnel is broken on Windows computers in modern standby mode, the Enforcer does not work even when it is enabled.
Addressed
6.2.5
GPC-20442
Fixed an issue on appliances running PanOS 10.1.11-h1 and GlobalProtect 6.0.10-811 where the tunnel status failed to update to connected immediately after establishment. This problem was specific to IPv4-only clients connecting to dual-stack (IPv4 + IPv6) GlobalProtect gateways or portals.
Addressed
6.2.5
GPC-20441
Fixed an issue where HIP reports are sometimes not available on the firewall for newly connected users.
Addressed
6.2.5
GPC-20416
Fixed an issue where there is no network discovery once the laptop came out of standby.
Addressed
6.2.5
GPC-20360
Fixed an issue where the GlobalProtect app is stuck in the connecting status after authentication and does not connect until the app is restarted or the computer is rebooted.
Addressed
6.2.5
GPC-20292
Fixed an issue where RDP to Azure VDI clients disconnects when GlobalProtect is enabled on the VDI client with SAML authentication and with 'Enforce GlobalProtect for Network Access' enabled
Addressed
6.2.5
GPC-20191
Fixed an issue where PanGPA.exe crashes on Windows clients
Addressed
6.2.5
GPC-20114
Fixed an issue where GlobalProtect on MacOS was incorrectly selecting client certificates without a private key for certificate authentication.
Addressed
6.2.5
GPC-20112
Fixed an issue where the GlobalProtect HIP check incorrectly detected Real time protection status for Kaspersky Endpoint Security, which caused the device to fail the HIP check.
Addressed
6.2.5
GPC-20072
Fixed an issue where domain-based split tunneling was not working on MAC with Edge Chromium or Google Chrome browser though it was working on Safari.
Addressed
6.2.5
GPC-19819
Fixed an issue where SAML default browser IDP traffic is blocked during a refresh connection when GlobalProtect is connected to the internal network with 'Enforce GlobalProtect for Network Access' enabled.
Addressed
6.2.5
GPC-19269
Fixed an issue where GlobalProtect would show as "connecting" but never actually connect until the user restarted GlobalProtect on their Windows machine.
Addressed
6.2.5
GPC-18943
Fixed an issue where GlobalProtect would fail to connect on Windows hosts that were woken up from modern standby by initiating an RDP to the host.
Addressed
6.2.4
GPC-20741
Fixed an issue where the GlobalProtect app intermittently disconnected from the gateway when the user was using the embedded browser for SAML authentication.
Addressed
6.2.4
GPC-20640
Fixed an issue where the GP App graphical interface on macOS does not close on pressing the ESC key.
Addressed
6.2.4
GPC-20585
Fixed an issue where the GlobalProtect app could not connect to the GlobalProtect portal when configured with certificate authentication and SAML authentication using an embedded browser
Addressed
6.2.4
GPC-20571
Fixed an issue where the Report an Issue option was not visible in the GlobalProtect app version 6.2.3.
Addressed
6.2.4
GPC-20542
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the GlobalProtect logs did not display the username correctly.
Addressed
6.2.4
GPC-20537
Fixed an issue where the Login page got redirected twice and opened two separate tabs for GlobalProtect portal and gateway, when the user tried to connect the GlobalProtect app using the SAML authentication method.
Addressed
6.2.4
GPC-20531
Fixed an issue where, when the user was using Remote Desktop with GlobalProtect, the RDP sessions got disconnected because the GlobalProtect on RDP station got disconnected with a grace period end message.
Addressed
6.2.4
GPC-20527
Fixed an issue where the Conditional Connect method configured for the GlobalProtect app did not work as expected when the user shifted from external network (home) to an internal network (office). Users had to reboot the system to resolve this issue.
Addressed
6.2.4
GPC-20514
Fixed an issue where the remote users using GlobalProtect with Connect Before Logon (CBL) were unable to reset their password when using the app with an embedded browser.
Addressed
6.2.4
GPC-20455
Fixed an issue where the GlobalProtect app intermittently got stuck on the 'Connecting' status when the computer resumed from sleep and a new authentication was needed or authentication cookies had expired.
Addressed
6.2.4
GPC-20445
Fixed an issue where the GlobalProtect app got stuck in Connecting state after upgrading from PAN-OS 10.1.11-h5 version to PAN-OS 10.1.13
Addressed
6.2.4
GPC-20444
Fixed an issue where, when the GlobalProtect app was used with the SAML authentication method, the app displayed two pop-up messages; one with a successful authentication message and the other with an authentication failure message.
Addressed
6.2.4
GPC-20426
Fixed an issue where a new HIP report was not generated when the user disabled AV on an end-user device.
Addressed
6.2.4
GPC-20381
Fixed an issue where the Windows defender Real Time Protection state and agent version is incorrectly identified in GlobalProtect app version 6.0.8 and 6.2.3.
Addressed
6.2.4
GPC-20378
Fixed an issue where the GlobalProtect app was used with the SAML authentication method with the embedded browser, the app got stuck while redirecting to the SAML authentication page.
Addressed
6.2.4
GPC-20374
Fixed an issue where users were unable to connect to GlobalProtect if they accidentally clicked decline on the Terms of Service page.
Addressed
6.2.4
GPC-20370
Fixed an issue where the Real Time Protection state from SentinelOne was displayed as true even when the app was disabled.
Addressed
6.2.4
GPC-20366
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and the users tried to authenticate to the app, the screen displayed both authentication success and failed message even when the authentication was successful.
Addressed
6.2.4
GPC-20320
GlobalProtect unable to authenticate with SAML IdP using embedded browser (webview2) when "Enforce GlobalProtect for Network Access" is enabled
Addressed
6.2.4
GPC-20279
Fixed an issue where users were presented with suggested user names during SAML authentication after upgrading to GlobalProtect 6.2.3.
Addressed
6.2.4
GPC-20263
Fixed an issue where the correct label was not associated with the GlobalProtect icon so voice over was unable to read the icon name.
Addressed
6.2.4
GPC-20262
Fixed an issue where users were unable to select the GlobalProtect icon from the status bar on macOS.
Addressed
6.2.4
GPC-20243
Fixed an issue where, when the GlobalProtect app was used with an embedded browser, the browser displayed ‘can't reach page’ due to a Windows filter driver issue.
Addressed
6.2.4
GPC-20242
Fixed an issue where the GlobalProtect app displayed gibberish text on the app.
Addressed
6.2.4
GPC-20241
Resolved an issue where the GlobalProtect app did not detect HIP information for HP Wolf Security software.
Addressed
6.2.4
GPC-20178
Resolved an issue where the Certificate Revocation List was sent to a URI that was not an exact match with the URI in the certificate.
Addressed
6.2.4
GPC-20163
Fixed an issue where the GlobalProtect app was unable to connect to the gateway via IPv6.
Addressed
6.2.4
GPC-20162
Fixed an issue where the GlobalProtect enforcer blocked some DHCPv6 packets on Windows computers.
Addressed
6.2.4
GPC-20157
Fixed an issue where the gateway location was not correctly displayed in the Connections panel.
Addressed
6.2.4
GPC-20143
Fixed an issue where the user was redirected to the Authentication page twice on the default browser for both portal and gateway authentication when SAML was configured.
Addressed
6.2.4
GPC-20091
Fixed an issue where pre-logon failed when the computer was rebooted, when the machine store had an expired and active certificate.
Addressed
6.2.4
GPC-20080
Fixed an issue where the GlobalProtect logs displayed different event messages for Windows and macOS devices when the Allow User to Disable GlobalProtect App was set to Allow with Passcode for the GlobalProtect app.
Addressed
6.2.4
GPC-20060
Fixed an issue where it was possible for the GlobalProtect enforcer to be disabled when there was a network change during portal authentication.
Addressed
6.2.4
GPC-20040
Resolved an issue where GlobalProtect did not re-check for internal gateways when using cached portal configuration and an external network was previously detected.
Addressed
6.2.4
GPC-20028
Fixed an issue where macOS users, despite having 'Allow User to Change Portal Address' set to No, were able to choose a different portal from the existing list.
Addressed
6.2.4
GPC-20005
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, users were able to select the manual gateway and connect to the app even when the regional or global fall back gateway was not configured.
Addressed
6.2.4
GPC-20004
Fixed an issue where both certificates with and without the specified OID were incorrectly being selected as potential machine certificates.
Addressed
6.2.4
GPC-20003
Fixed an issue where GlobalProtect users with certificates were unable to connect a gateway on version 6.0.9.
Addressed
6.2.4
GPC-19991
Fixed an issue where client certificate authentication between embedded browser and IdP (SAML) failed.
Addressed
6.2.4
GPC-19972
Fixed an issue where users were unable to connect to Prisma Access after a break and had to reboot their computer.
Addressed
6.2.4
GPC-19961
Fixed an issue where the hamburger menu on the GlobalProtect app was disabled and end users were unable to click on the Report an Issue option when the GlobalProtect app was disabled in Alway-On mode.
Addressed
6.2.4
GPC-19930
Fixed an issue where the HIP check did not detect the BitLocker disk encryption correctly during windows update, causing the device to fail the HIP check.
Addressed
6.2.4
GPC-19918
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the HIP check did not detect CrowdStrike antivirus software correctly, causing the device to fail the HIP check.
Addressed
6.2.4
GPC-19889
Fixed an issue where, when the GlobalProtect app was installed on Windows machine and Connect Before Logon (CBL) was configured for the app, the app did not start properly when the user logged on to the device.
Addressed
6.2.4
GPC-19878
Fixed an issue where a typo in the IP address exclusion list was not marked as invalid by the GlobalProtect enforcer, resulting in all IP addresses in the range being allowed.
Addressed
6.2.4
GPC-19833
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the Smart card (Yubikey) authentication did not work when the device woke up from sleep mode.
Addressed
6.2.4
GPC-19829
Fixed an issue where the manual gateway login failed when users tried to login using their user name and password.
Addressed
6.2.4
GPC-19751
Fixed an issue where the programmatic and visual label for the GlobalProtect form field was not announced.
Addressed
6.2.4
GPC-19740
Fixed an issue where, when the GlobalProtect app was installed on VDI devices running Windows OS, the GlobalProtect app got disconnected without displaying any message.
Addressed
6.2.4
GPC-19696
Fixed an issue where, when the GlobalProtect app was installed on endpoints running macOS and the split tunnel was configured based on the application for Zoom, users were unable to access any sites when the split tunnel was disabled for Zoom and moved to full tunnel.
Addressed
6.2.4
GPC-19660
Fixed an issue where the "Check for Updates" button on GlobalProtect app version 6.2.2 did not work when the activated GlobalProtect version on the firewall was earlier than 6.2.2.
Addressed
6.2.4
GPC-19652
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, users were unable to access the applications and websites when the app got disconnected and reconnected while switching the medium from wired to wireless and vice versa.
Addressed
6.2.4
GPC-19629
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the split tunnel feature did not work as expected when Jamf was used to push the configuration policy rules.
Addressed
6.2.4
GPC-19610
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, end users were not prompted to enter a password and the app got stuck in Restoring VPN connection state until the cookie was deleted.
Addressed
6.2.4
GPC-19603
Fixed an issue where the GlobalProtect app displayed a generic SAML login page and not the actual login page for authentication and the connection was not established when cached portal configuration was used.
Addressed
6.2.4
GPC-19436
Fixed an issue where the screen reader could not identify the image in the GlobalProtect app tray on the devices running macOS causing accessibility issues.
Addressed
6.2.4
GPC-19532
Fixed an issue where, after upgrading GlobalProtect via the portal prompt, all traffic except DNS was being dropped because the new GlobalProtect extensions were not being loaded.
Addressed
6.2.4
GPC-19373
Fixed an issue where the HIP remediation pop up is displayed even when the user is disconnected.
Addressed
6.2.4
GPC-19373
Fixed an issue where the HIP remediation pop up is displayed even when the user is disconnected.
Addressed
6.2.4
GPC-19336
Fixed an issue where the ADEM portal did not display user information such as User-ID when the ADEM portal was changed from on-premises to Prisma Access.
Addressed
6.2.4
GPC-19279
Fixed an issue where the GlobalProtect client was not displayed during the upgrade from version 6.0.5-35 to 6.0.8-601.
Addressed
6.2.4
GPC-19237
Fixed an issue where the GlobalProtect app did not disconnect when the user used the Disable option on the hamburger menu. The tunnel was still up and connected even when the user disconnected the GlobalProtect app.
Addressed
6.2.4
GPC-19138
Resolved an issue where the exclude for google application was not working for users.
Addressed
6.2.4
GPC-19098
Resolved an issue where pre-logon setup was not working when GlobalProtect 6.2.1 was deployed via Microsoft Intune.
Addressed
6.2.4
GPC-19043
Fixed an issue where the GlobalProtect app did not add all routes configured in the access route to the route table.
Addressed
6.2.4
GPC-19011
Fixed an issue where the GlobalProtect app on a Windows computer was unable to connect to an IPv4 gateway behind a NAT64 device.
Addressed
6.2.4
GPC-18933
Fixed an issue where the GlobalProtect HIP check incorrectly detected Real Time Protection for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.2.4
GPC-18778
Resolved an issue where devices supporting Modern Standby (Microsoft Learn) crashed when they entered sleep mode while the VPN plugin had an active connection and was sending data over its tunnel.
Addressed
6.2.4
GPC-18728
Fixed an issue where the ‘I Agree’ option on the GlobalProtect app Welcome page did not work as expected when the user selected the option using a keyboard.
Addressed
6.2.4
GPC-18702
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the “Allow Manually upgrade failed when the user tried to upgrade the GlobalProtect app version from 6.0.5 to 6.0.7
Addressed
6.2.4
GPC-18625
Fixed an issue where the Zoom app intermittently stopped connecting on macOS and displayed an error message.
Addressed
6.2.4
GPC-18385
Fixed an issue where, when the GlobalProtect app got reconnected after the user changed the network access from Wi-Fi (IPv4 only) to Ethernet connection (Dual Stack IPv4 + IPv6), the IPv6 ip-user mapping was missing on the firewall and only IPv6 ip-user mapping was available. The user had to refresh the connection to resolve this issue.
Addressed
6.2.4
GPC-15750
Fixed an issue where a hyperlink in a HIP notification opened in the GPO-disabled Internet Explorer 11 browser instead of the default browser.
Addressed
6.2.4
GPC-14714
Fixed an error where the screen reader does the announce the status when the radio button is selected for Network configuration, Routing table, Sockets, and "Logs".
Addressed
6.2.3-c287
GPC-20243
Fixed an issue where, when the GlobalProtect app was used with an embedded browser, the browser displayed ‘can't reach page’ due to a Windows filter driver issue.
Addressed
6.2.3-c287
GPC-20157
Fixed an issue where the gateway location was not correctly displayed in the Connections panel.
Addressed
6.2.3-c287
GPC-20143
Fixed an issue where the user was redirected to the Authentication page twice on the default browser for both portal and gateway authentication when SAML was configured.
Addressed
6.2.3-c287
GPC-19991
Fixed an issue where client certificate authentication between embedded browser and IdP (SAML) failed.
Addressed
6.2.3
GPC-19968
Fixed an issue where the GlobalProtect agent failed to detect Bitdefender Antivirus Plus on the Windows ARM64 platform during the HIP check.
Addressed
6.2.3
GPC-19924
Resolved intermittent connection issues for users accessing GlobalProtect via an embedded browser.
Addressed
6.2.3
GPC-19901
Fixed an issue where the GlobalProtect client for Mac users was intermittently disconnecting and reconnecting.
Addressed
6.2.3
GPC-19840
Fixed an issue where Mac computers did not display all gateways in the Search Gateway tab.
Addressed
6.2.3
GPC-19818
Fixed an issue where when the Enforcer was enabled, Jamf connect was not working after the MacBook was rebooted. Users had to log in manually.
Addressed
6.2.3
GPC-19784
Fixed an issue where the HIP check did not detect McAfee Premium individual.
Addressed
6.2.3
GPC-19753
Fixed an issue where the GlobalProtect icon could not be selected using the keyboard.
Addressed
6.2.3
GPC-19712
Fixed an issue where PanGPS crashed on 6.0.4 caused by invalid memory reference. GlobalProtect did not run correctly after the system was rebooted.
Addressed
6.2.3
GPC-19686
Fixed an issue where translation errors were observed in the GlobalProtect app for French localization.
Addressed
6.2.3
GPC-19664
Fixed an issue where users were able to deploy GlobalProtect from JAMF on Mac Sonoma, but the connection to the portal was stuck.
Addressed
6.2.3
GPC-19659
Fixed an issue where macOS users were connected to the GlobalProtect app before they agreed to their company’s terms of service.
Addressed
6.2.3
GPC-19656
Resolved an issue where connecting to a GlobalProtect gateway with IPv6 from macOS resulted in the tunnel connection dropping every 45 seconds when Endpoint Traffic Policy Enforcement was set to All Traffic.
Addressed
6.2.3
GPC-19630
Fixed an issue where the prelogon connect method failed on the gateway prelogin stage.
Addressed
6.2.3
GPC-19587
Fixed an issue where the user could not login with Okta on macOS when Endpoint Traffic Policy Enforcement was set to All traffic .
Addressed
6.2.3
GPC-19581
Fixed an issue where GlobalProtect indicated that Windows firewall was not enabled in the HIP report even though it was enabled.
Addressed
6.2.3
GPC-19545
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, users were unable to connect to the GlobalProtect app when they used T-Mobile iPhone hotspot.
Addressed
6.2.3
GPC-19524
Fixed an issue where the GlobalProtect app connection failed when the user used CAS authentication to authenticate to the app. The app displayed the error message, "Username from CAS SSO response is different from the input".
Addressed
6.2.3
GPC-19513
Fixed an issue where the GlobalProtect client was trying to use the old portal's authorization cookie to login instead of the newly migrated portal. This happened when the user changed from secondary portal to primary portal or vice versa without signing out.
Addressed
6.2.3
GPC-19475
Fixed an issue where users got connection errors in an embedded browser after the computer woke up from sleep or when the user switched gateways.
Addressed
6.2.3
GPC-19449
Fixed an issue where the GlobalProtect client was trying to use the old portal's authorization cookie to login instead of the newly migrated portal. This happened when the user changed the portal from secondary to primary or vice versa without signing out.
Addressed
6.2.3
GPC-19433
Fixed an issue where a small white blank page randomly popped up on the user's screen and the focus shifted to this blank page. This issue occurs while the computer is connected to Global Protect.
Addressed
6.2.3
GPC-19431
Fixed an issue where interactive components in the session tray on Windows did not receive keyboard focus and were not keyboard operable.
Addressed
6.2.3
GPC-19418
Fixed an issue where GlobalProtect users randomly experienced issues connecting to the gateway after their computer woke up. This occurred when Enforce GlobalProtect for Network Access was enabled and Tunnel and Proxy was set to agent mode.
Addressed
6.2.3
GPC-19416
Fixed a GlobalProtect redirection issue in embedded browser. When a user tried to connect to GlobalProtect, an error was displayed while waiting for the SAML response instead of being redirected to the embedded browser.
Addressed
6.2.3
GPC-19414
Fixed an issue where GlobalProtect Always-On connect method was not triggered after a reboot when the connect-method setting was set to on-demand in the Windows Registry.
Addressed
6.2.3
GPC-19403
Fixed an issue where OPSWAT was unable to detect Kaspersky after an upgrade from 21.3.10.391 to 21.15.8.493.
Addressed
6.2.3
GPC-19400
Fixed an issue where the GlobalProtect HIP check did not detect the Definition Date for Bitdefender Virus Scanner, which caused the device to fail the HIP check.
Addressed
6.2.3
GPC-19391
Fixed an issue where GlobalProtect stayed disconnected even after being unlocked.
Addressed
6.2.3
GPC-19387
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app displayed text incorrectly when the system language was German.
Addressed
6.2.3
GPC-19374
Fixed an issue where the GlobalProtect debug logs displayed information, which was not supposed to display in the logs.
Addressed
6.2.3
GPC-19359
Fixed an issue where system extensions on MacBook were not updated after the GlobalProtect client was upgraded.
Addressed
6.2.3
GPC-19340
Fixed an issue where the GlobalProtect app failed to send HIP reports hourly.
Addressed
6.2.3
GPC-19337
Fixed an issue where the Captive Portal functionality of the GlobalProtect app did not work as expected when the users used public Wi-Fi hotspots.
Addressed
6.2.3
GPC-19331
Fixed an issue where, when SAML authentication was used to authenticate to the GlobalProtect app, the app used an unknown username ‘SAMLUser’ which was not configured instead of the actual username of the user, which caused an authentication failure.
Addressed
6.2.3
GPC-19314
Fixed an issue where, when the GlobalProtect app is installed on devices running macOS, the app displayed the message, ‘Downloading in progress’ when the GlobalProtect app was upgraded to 6.0.x using the option ‘Allow Transparently.’ The app should not display the message when upgraded using the transparent method.
Addressed
6.2.3
GPC-19284
Fixed an issue where GlobalProtect was unable to extend user session.
Addressed
6.2.3
GPC-19280
Fixed an issue where, when the GlobalProtect app transitioned from pre-logon to user-logon tunnel, the app did not display the list of gateways for the users to change the gateway. The gateway list was displayed only when the app was refreshed.
Addressed
6.2.3
GPC-19262
Fixed an issue where GlobalProtect 6.2.1 tried to connect automatically after the user restarted their computer even though the connect method was set to On-Demand.
Addressed
6.2.3
GPC-19193
Fixed an issue where the GlobalProtect app was unable to fetch Windows firewall and antimalware information correctly.
Addressed
6.2.3
GPC-19162
Fixed an issue where, when the user upgraded the GlobalProtect version to 5.2.13 or later, the HIP report displayed the DLP ‘Digital Guardian Agent’ as disabled.
Addressed
6.2.3
GPC-19107
Fixed an issue where some log files were missing from the GlobalProtect bundle when downloaded from the Explore app.
Addressed
6.2.3
GPC-19104
Fixed an issue where the GlobalProtect HIP report failed to detect the Real Time Protection status for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.2.3
GPC-19083
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the Connection tab under app Settings did not display the connection status and refresh connection did not work when the Settings window was opened.
Addressed
6.2.3
GPC-19074
Fixed an issue where Login Lifetime was incorrectly translated on the French version of the GlobalProtect 6.2.1 app.
Addressed
6.2.3
GPC-19060
Fixed an issue where the app Settings -> Connection tab did not display the connection status when the app was changed from a non-tunneled gateway to a tunneled gateway.
Addressed
6.2.3
GPC-19044
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and the user changed the network from wired to wireless within the organization, the device displayed a blue screen.
Addressed
6.2.3
GPC-19023
Fixed an issue where, when the GlobalProtect app version 5.2.13 was installed on devices running macOS, the users were unable to connect to the Zoom application.
Addressed
6.2.3
GPC-19009
Fixed an issue where, when SAML authentication was used to authenticate to the GlobalProtect app and the user changed the gateway to a manual gateway, the app stayed in the ‘Connecting’ stage.
Addressed
6.2.3
GPC-18992
Fixed an issue where internet via WiFi connection was unavailable for GlobalProtect users after their computer woke up from sleep because the client WiFi adapter was unable to obtain a DHCP IP address. This issue occurred on computers where Enforce GlobalProtect for Network Access was enabled.
Addressed
6.2.3
GPC-18983
Fixed an issue where the Central Authentication Service (CAS) authentication did not work when the GlobalProtect app was connected to an internal gateway and the app repeatedly opened the SAML authentication page.
Addressed
6.2.3
GPC-18913
Fixed an issue where the GlobalProtect app displayed the connection status as ‘Not Connected’ even though the app was connected to the internal gateway.
Addressed
6.2.3
GPC-18907
Fixed an issue where the GlobalProtect app running on macOS endpoints did not query the secondary DNS (when primary DNS is not responding) when the domain was part of the exclude domain list (both network and DNS).
Addressed
6.2.3
GPC-18854
Fixed an issue where users were prompted twice to authenticate using SAML authentication when used with CAS authentication and authentication override cookie, the GlobalProtect app got stuck in the 'Connecting' stage while trying to connect.
Addressed
6.2.3
GPC-18845
Fixed an issue, where the GlobalProtect app was installed manually and the user clicked the ‘Get Started’ button, the app displayed the incorrect message, "Oops! Slow or No Network Connection" instead of the actual message "Not Connected" window where they can input their portal address.
Addressed
6.2.3
GPC-18828
Fixed an issue where split tunnel CNAME records were created before the GlobalProtect tunnel was established.
Addressed
6.2.3
GPC-18822
Fixed an issue where, when the GlobalProtect app was installed on Windows devices and the device was reset using the Microsoft Recovery tool, the GlobalProtect app was not properly displayed.
Addressed
6.2.3
GPC-18815
Fixed an issue where the Logon button on the GlobalProtect login screen stopped working after receiving the Microsoft Edge WebView2 runtime, 117.0.2045.36 update on the devices.
Addressed
6.2.3
GPC-18750
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect HIP check did not detect the Total Defense antivirus application, which caused the device to fail the HIP check.
Addressed
6.2.3
GPC-18733
Fixed an issue where the hyperlinks with the URLs containing the "=" character in the HIP notification message did not work as expected and the page did not open when the user clicked the URL.
Addressed
6.2.3
GPC-18720
Fixed an issue where the GlobalProtect app became unresponsive when the user clicked the ESCbutton during authentication using a hard token.
Addressed
6.2.3
GPC-18703
Fixed an issue where the GlobalProtect HIP check did not detect the Trellix Endpoint Security application, which caused the device to fail the HIP check.
Addressed
6.2.3
GPC-18598
Fixed an issue where the GlobalProtect SSO tile was selected instead of the Windows Password tile in the Windows Login screen even though the registry key MakeGPCPDefault was set to No.
Addressed
6.2.3
GPC-18384
Fixed an issue where GlobalProtect did not connect while Netskope was connected and vice-versa.
Addressed
6.2.3
GPC-18379
Fixed an issue where, when the IP address type was set to IPv4 and IPv6, the GlobalProtect app could connect only to the manual gateway instead of connecting to the best available gateway.
Addressed
6.2.3
GPC-18223
Fixed an issue where GlobalProtect experienced a prolonged connection time when IPv6 was disabled on Windows devices.
Addressed
6.2.3
GPC-18157
Fixed an issue where the GlobalProtect app displayed the Credential Provider language in English when the system language was German.
Addressed
6.2.3
GPC-18039
Fixed an issue where the GlobalProtect HIP check did not detect the Definition Date correctly for the CrowdStrike application, which caused the device to fail the HIP check.
Addressed
6.2.3
GPC-17640
Fixed an issue where the GlobalProtect HIP check did not detect the Definition Date correctly for the CrowdStrike application, which caused the device to fail the HIP check.
Addressed
6.2.3
GPC-17518
Fixed an issue where the GlobalProtect app displayed the status as 'Connected-Internal' even when the app was not connected.
Addressed
6.2.3
GPC-17436
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the upload speed of the internet was reduced after a version upgrade.
Addressed
6.2.3
GPC-17204
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the certificate information was not accessible even though the GlobalProtect app had full access to the certificate store.
Addressed
6.2.3
GPC-16975
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader did not announce the name of the GlobalProtect gateway when the gateway was marked with the star symbol.
Addressed
6.2.3
GPC-16584
Fixed an issue where the GlobalProtect HIP check did not detect the CrowdStrike antivirus software correctly, causing the device to fail the HIP check.
Addressed
6.2.3
GPC-15123
Fixed an issue where users were unable to collapse the Change Portal and Change Gateway menus using the Escape key.
Addressed
6.2.2
GPC-19116
Fixed an issue where the user faced authentication issues while the GlobalProtect app was attempting to refresh the explicit proxy token.
Addressed
6.2.2
GPC-19049
Fixed an issue where, when the GlobalProtect app was configured in hybrid mode with internal host detection, the app failed to connect and continued to stay in the Connecting state when users tried to connect using SAML authentication.
Addressed
6.2.2
GPC-19007
Fixed an issue where users were unable to connect to the GlobalProtect portal and gateway after upgrading the app version to 6.2.1.
Addressed
6.2.2
GPC-19002
Fixed an issue where the GlobalProtect app did not display the Connect button when the user clicked the Get Started button after the app installation through Jamf.
Addressed
6.2.2
GPC-18991
Fixed an issue where the proxy auto-configuration (PAC) files were not restored as expected after a system reboot or when the user disconnected the GlobalProtect app.
Addressed
6.2.2
GPC-18964
Fixed an issue where the GlobalProtect tunnel got disconnected after 10 minutes on the app versions 6.0.8 and 6.2.1, when the GlobalProtect app was running on macOS devices and SAML authentication was used to authenticate.
Addressed
6.2.2
GPC-18861
Fixed an issue where the GlobalProtect MSI download was getting stuck at 27%.
Addressed
6.2.2
GPC-18471
Fixed an issue where, when multiple wa_3rd_party_host_64.exe processes persisted even after the HIP check, the GlobalProtect app stopped working.
Addressed
6.2.1
GPC-21151
Fixed an issue where, when the option Allow Authentication with User Credentials OR Client Certificate was set to Yes in the portal configuration, and no valid client certificate was installed on the endpoint, the connection failed with the error: Connection Failed. A valid client certificate is required for authentication without prompting the user for their credentials.
Addressed
6.2.1
GPC-20945
Fixed an issue where, when the GlobalProtect app was installed on Linux endpoints, users were unable to access ephemeral URLs.
Addressed
6.2.1
GPC-20605
Fixed an issue where, when the GlobalProtect app was installed on Linux endpoints with the connect method pre-deployed, the connect method failed to get updated with the portal configuration after the first successful connection.
Addressed
6.2.1
GPC-20574
Fixed an issue where, when the GlobalProtect app was installed on Linux (Fedora 38 version) endpoints, the GlobalProtect HIP check did not detect the SentinelOne application, which caused the device to fail the HIP check.
Addressed
6.2.1
GPC-20544
Fixed an issue where the GlobalProtect app on Linux endpoints was displaying confusing error messages when the user would connect to manual gateways.
Addressed
6.2.1
GPC-20525
Fixed an issue where, when the GlobalProtect app 6.1.4 version was installed on Linux endpoints and the Allow User to Change Portal Address option was set to No in the app settings of the portal configuration, the app did not retain the portal name after a system reboot.
Addressed
6.2.1
GPC-20449
Fixed an issue where the GlobalProtect HIP check incorrectly detected the date for ClamAV virus definition update, which caused the endpoint to fail the HIP check.
Addressed
6.2.1
GPC-20398
Fixed an issue where, when the GlobalProtect app was installed on Linux endpoints, the app could not resolve the DNS queries containing capital letters.
Addressed
6.2.1
GPC-20340
Fixed an issue where, when the GlobalProtect app was installed on Linux endpoints, end users had to reboot the system to reconnect the app when the GlobalProtect got disconnected.
Addressed
6.2.1
GPC-19973
Fixed an issue where, when the GlobalProtect app was installed on Linux endpoints (Ubuntu 22.04.4 LTS) and SAML authentication was used to authenticate to the app, a blank page appeared during the first attempt at SAML authentication every time.
Addressed
6.2.1
GPC-19297
Fixed an issue where the GlobalProtect HIP check did not detect the Last Full Scan Time for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.2.1
GPC-18105
Fixed an issue where the user was unable to cancel out of SAML authentication in on-demand mode while the GlobalProtect app was in connecting state.
Addressed
6.2.1
GPC-17378
Fixed an issue where, when the GlobalProtect app was installed on devices running System76 coreboot BIOS, the HIP check failed when the Device ID was empty.
Addressed
6.2.1
GPC-18789
Fixed an issue where the GlobalProtect app took a long time to connect to the gateway when the include domain list was used, while the enhanced split-tunnel feature was not used.
Addressed
6.2.1
GPC-18788
Fixed an issue where the GlobalProtect HIP check did not detect McAfee Total Protection as an anti-malware application, which caused the device to fail the HIP check.
Addressed
6.2.1
GPC-18594
Fixed an issue where the GlobalProtect app was unable to send HIP reports when the app was connected using IPv6.
Addressed
6.2.1
GPC-18566
Fixed an issue where the GlobalProtect app incorrectly displayed the gateway as internal when it was connected to an external gateway.
Addressed
6.2.1
GPC-18528
Fixed an issue where the GlobalProtect HIP check incorrectly detected the version for KES 12 (Kaspersky Endpoint Security), which caused the device to fail the HIP check.
Addressed
6.2.1
GPC-18509
Fixed an issue where, when the GlobalProtect app was configured with the Internal Host Detection and Conditional Connect method, the app did not connect to the internal network when the network was changed from external to internal as it should have with the Conditional Connect method enabled.
Addressed
6.2.1
GPC-18452
Fixed an issue where, when the GlobalProtect app was installed on Windows devices the app did not start right away after a system reboot.
Addressed
6.2.1
GPC-18426
Fixed an issue where when the GlobalProtect app was configured with the Disable GlobalProtect set to Allow with Ticket , the app did not display the correct Disable Duration time.
Addressed
6.2.1
GPC-18336
Fixed an issue where the GlobalProtect app got automatically connected after a system reboot even though the connection method configured was On-Demand .
Addressed
6.2.1
GPC-18318
Fixed an issue where, when the GlobalProtect app was connected to the internal gateway, the app displayed the message as Connected - Inter.... instead of Connected - Internal .
Addressed
6.2.1
GPC-18281
Fixed an issue where the MSI install logs showed mutiple messages for Autonomous DEM installation.
Addressed
6.2.1
GPC-18251
Fixed an issue where the GlobalProtect HIP check did not detect McAfee LiveSafe as an anti-malware application, which caused the device to fail the HIP check.
Addressed
6.2.1
GPC-18230
Fixed an issue where, when the user entered credentials during SAML authentication after the set internal login timer, the app displayed an authentication failed message without providing the reason. The Retry button on the app web interface did not work properly when using an embedded browser for authentication. The Retry button was not fully visible on the embedded browser.
Addressed
6.2.1
GPC-18175
Fixed an issue where users were prompted to enter their credentials even when the GlobalProtect app was configured for authenticating with either Authentication Profile /Cookie or Client Certificate.
Addressed
6.2.1
GPC-18173
Fixed an issue where the vertical scroll bar on the GlobalProtect app web interface did not work properly when users tried to select the certificate from the drop-down.
Addressed
6.2.1
GPC-18171
Fixed an issue where users were unable to select the external gateway manually when connected to the internal network. The GlobalProtect stayed in Connecting state and users had to manually disconnect the connection and connect to the internal network to exit the Connecting state.
Addressed
6.2.1
GPC-18167
Fixed an issue where the GlobalProtect app displayed the Prisma Access gateways that are not set for manual selection.
Addressed
6.2.1
GPC-18146
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the GlobalProtect HIP check did not detect the correct details for Cortex XDR, which caused the device to fail the HIP check.
Addressed
6.2.1
GPC-18135
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect HIP check detected the WithSecure antivirus software as XProtect, which caused the device to fail the HIP check.
Addressed
6.2.1
GPC-18107
Fixed an issue where the GlobalProtect HIP check did not detect McAfee LiveSafe – Internet Security, which caused the device to fail the HIP check.
Addressed
6.2.1
GPC-18092
Fixed an issue where GlobalProtect connected to an internal gateway got automatically disconnected after a certain period of time.
Addressed
6.2.1
GPC-18073
Fixed an issue where the GlobalProtect app selected an unexpected gateway due to a latency discrepancy seen between PanGPS and packet capture.
Addressed
6.2.1
GPC-18060
Fixed an issue where the GlobalProtect HIP check did not detect McAfee Total Protection, which caused the device to fail the HIP check.
Addressed
6.2.1
GPC-18036
Fixed an issue where, when the No direct access to local network option was enabled on the GlobalProtect app with access routes excluded from the GlobalProtect VPN tunnel, the feature did not work as expected when Endpoint Traffic Policy Enforcement was enabled.
Addressed
6.2.1
GPC-17936
Fixed an issue where the Conditional Connect method did not work as expected and users had to manually connect the app when they changed their network.
Addressed
6.2.1
GPC-17921
Fixed an issue where, when the language was set to Japanese, the time to connect was not displayed properly when Disconnect Timeout for the app was configured.
Addressed
6.2.1
GPC-17896
Fixed an issue where users were unable to connect to GlobalProtect gateway when only one external gateway was added due to the following error: Cannot Verify Server Certificate of Gateway .
Addressed
6.2.1
GPC-17795
Fixed an issue where the GlobalProtect HIP check did not detect the Xcitium Enterprise, the Endpoint Protection Platform by COMODO, which caused the device to fail the HIP check.
Addressed
6.2.1
GPC-17776
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and GlobalProtect enforcer was configured with allowed FQDNs, users were still able to access the internet and other public domains.
Addressed
6.2.1
GPC-17762
Fixed an issue when the GlobalProtect app was configured with the option Allow User to Disable GlobalProtect App with comment, the option did not work as expected.
Addressed
6.2.1
GPC-17748
Fixed an issue where the GlobalProtect HIP check did not detect the Real-Time Protection status correctly for the CrowdStrike Falcon application, which caused the device to fail the HIP check.
Addressed
6.2.1
GPC-17740
Fixed an issue where, when the GlobalProtect app was connected through the Prisma Access gateway, the upload speed of the internet was reduced to 2 Mbps.
Addressed
6.2.1
GPC-17728
Fixed an issue where users were unable to connect to GlobalProtect gateway when only one external gateway was added due to the following error: Cannot Verify Server Certificate of Gateway .
Addressed
6.2.1
GPC-17460
Fixed an issue where, when the GlobalProtect app was installed on Windows 10 or 11 devices, and when the user tried to authenticate using SAML authentication, the app did not display the Term of Use pop-up on the Welcome page properly.
Addressed
6.2.1
GPC-17398
Fixed an issue where the GlobalProtect app Settings Connection tab did not display the Assigned IP Address(es) and Gateway IP Address properly.
Addressed
6.2.1
GPC-17206
Fixed an issue where, when Internal Host Detection (IHD) was enabled but failed to detect the internal network properly, the app failed to switch to the external gateway when users switched from an internal network to an external network.
Addressed
6.2.1
GPC-17161
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect app failed to reconnect and continued to stay in the Connecting state after the device woke up from Modern Standby mode.
Addressed
6.2.1
GPC-17099
When the GlobalProtect app for Windows is upgraded to version 6.0.5, devices with Driver Verifier enabled and configured to monitor the PAN virtual adapter driver (pangpd.sys) display the DRIVER_VERIFIER_DETECTED_VIOLATION Blue Screen error.
Addressed
6.2.1
GPC-17001
Fixed an issue where, when the GlobalProtect app was installed on devices running on macOS, the app did not display the Connect button and Refresh Connection button properly.
Addressed
6.2.1
GPC-16978
Fixed an issue where the GlobalProtect app took a long time to establish a connection due to an erroneous packet capture process.
Addressed
6.2.1
GPC-16851
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app did not try to auto-connect to the gateway after exceeding the Disable Timeout Value .
Addressed
6.2.1
GPC-16397
Fixed an issue where the GlobalProtect app was installed on devices running macOS, a blank GlobalProtect app user interface was displayed instead of the correct page.
Addressed
6.2.1
GPC-16126
Fixed an issue where the GlobalProtect app did not display the certificate name in the Client Certificate selection field properly.
Addressed
6.2.1
GPC-16003
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app was not connected when the proxy was configured for Safari or Chrome.
Addressed
6.2.1
GPC-15968
Fixed an issue where the GlobalProtect app was stuck in Connecting state when users failed to authenticate with SAML and using an embedded browser. Users were unable to disconnect the app and had to reboot the device.
Addressed
6.2.1
GPC-15262
Fixed an issue where when single sign-on (SSO) for Smart Cards was used for authentication, users were prompted to enter a PIN instead of a password on the Windows login screen.
Addressed
6.2.1
GPC-15234
Fixed an issue where the app would get stuck at Connecting state while trying to connect to a gateway.
Addressed
6.2.1
GPC-15080
Fixed an issue where when the split tunnel was configured based on the destination domain, split tunneling did not work as expected when IPv6 traffic exclusion was configured.
Addressed
6.2.0
GPC-19792
Fixed an issue where an error message was displayed on the GlobalProtect app: Previous authentication attempt timed out. Please select Connect to initiate authentication once again . Despite this error, the VPN tunnel was established, and traffic was routed successfully through the tunnel.
Addressed
6.2.0
GPC-19748
Fixed an issue where the GlobalProtect app status was connected but no traffic was passing through. This issue occurred after the GlobalProtect Linux app was upgraded from 6.1.3 to 6.1.4 on Ubuntu Version 22.04.
Addressed
6.2.0
GPC-19353
Fixed an issue where GlobalProtect was stuck in Connecting stage a with Login Successful white page displayed on the default browser instead of the expected Microsoft SAML page.
Addressed
6.2.0
GPC-19143
Fixed an issue where the users were unable to choose the correct certificate for the app as the configured registry value previousCertificate did not work as expected.
Addressed
6.2.0
GPC-18903
Fixed an issue where when the GlobalProtect app was installed on Linux devices running on Red Hat version 9, the resolv.conf file was not getting updated with GlobalProtect DNS servers as expected.
Addressed
6.2.0
GPC-18820
Fixed an issue where some users were unable to connect to GlobalProtect after disconnecting the app.
Addressed
6.2.0
GPC-18512
Fixed an issue where, when the GlobalProtect app was installed on Linux devices running Ubuntu 22.04 or REHL 9.1, the app got disconnected periodically.
Addressed
6.2.0
GPC-18155
Fixed an issue where the GlobalProtect main panel was displayed on the bottom right instead of its usual location at the top right. This occurred when an NVidia Graphics GPU driver was installed in the environment,
Addressed
6.2.0
GPC-17598
Fixed an issue where, when the GlobalProtect app was installed on Linux devices and the GlobalProtect app was connected and the tunnel was up, the DNS requests were sent to the public DNS servers assigned to the physical interface.
Addressed
6.2.0
GPC-16980
Fixed an issue where users were unable to upgrade GlobalProtect app from 5.3 to 6.0.x or 6.1.x due to file conflicts between packages.
Addressed
6.3.2
GPC-22087
Fixed an issue where the GlobalProtect app was unable to validate the certificate from OCSP.
Addressed
6.3.2
GPC-22080
Fixed an issue where the OCSP requests were being rejected by the OCSP responder with a HTTP 400 Bad Request error due to the absence of the Host header in the OCSP request.
Addressed
6.3.2
GPC-21938
Fixed an issue where, when the GlobalProtect app version 6.3.x was installed on devices running macOS, the HIP check failed to detect ESET Endpoint Security version 8.
Addressed
6.3.2
GPC-21918
Fixed an issue where, when the patch management category was excluded for HIP checks, HIP checks were still happening for missing patches which consumed CPU resources on users' machine.
Addressed
6.3.2
GPC-21838
Fixed an issue in which the GlobalProtect app, when installed on Windows devices, caused a duplicate page to open in the system default browser (Chrome) when the user clicked the hyperlink on the Welcome page with fedmandate on the embedded browser.
Addressed
6.3.2
GPC-21836
Fixed an issue in GlobalProtect 6.3.1 for macOS where the Refresh Connection option was missing during the Connecting state, specifically for users who upgraded from version 6.3.0.
Addressed
6.3.2
GPC-21778
Fixed an issue where the GlobalProtect IPSec tunnel got disconnected on GlobalProtect app version 6.2.5 when gpupdate /force command was used to update policy.
Addressed
6.3.2
GPC-21774
Fixed an issue where the GlobalProtect ARM64 installers for 6.2.5 version did not display the Digital Signatures tab.
Addressed
6.3.2
GPC-21771
Fixed an issue where the GlobalProtect HIP check incorrectly detected Malware Definition Date for Trend Micro Deep Security Agent, which caused the device to fail the HIP check.
Addressed
6.3.2
GPC-21733
Fixed an issue where all the added portals got deleted from the portal list except the connected portal when the GlobalProtect app was upgraded from version 6.2.4 to 6.2.5-788. Users had to manually add them again to resolve the issue.
Addressed
6.3.2
GPC-21604
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS and were connected to the internal gateway, the app did not display the Disconnect option under Settings .
Addressed
6.3.2
GPC-21571
Fixed an issue where the hyperlink in HIP notification opened up in Webview2 instead of the default browser.
Addressed
6.3.2
GPC-21565
Fixed an issue where the SAML embedded browser did not remember the username after sign-out, even when the user had selected the check box Remember Me on the SAML embedded browser.
Addressed
6.3.2
GPC-21542
Fixed an issue where GlobalProtect got stuck in connecting and failed the connection after some time.
Addressed
6.3.2
GPC-21443
Fixed an issue where GlobalProtect crashed when the PanGPS service was stopped.
Addressed
6.3.2
GPC-21414
Fixed an issue where the SAML authentication page would occasionally fail to appear due to the usage of a previous SAML pre-login cookie.
Addressed
6.3.2
GPC-21399
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the HIP check for the built-in firewall shows N/A incorrectly.
The value should be either Yes or No .
Addressed
6.3.2
GPC-21370
Fixed an issue where the HIP check could not detect Trellix Firewall Status, which caused the device to fail the HIP check.
Addressed
6.3.2
GPC-21332
Fixed an issue where the GlobalProtect HIP check incorrectly detected Real Time Protection status for Avast and XProtect, which caused the device to fail the HIP check.
Addressed
6.3.2
GPC-21320
Fixed an issue where the GlobalProtect HIP check did not detect Kaspersky Endpoint Security antimalware application which caused the device to fail the HIP check.
Addressed
6.3.2
GPC-21301
Fixed an issue where, when the user upgraded the GlobalProtect app version to 6.2.4 with SAML authentication, users were unable to connect to GlobalProtect intermittently when Enforcer is enabled.
Addressed
6.3.2
GPC-21247
Fixed an issue where GlobalProtect HIP set the Filevault encryption status to unencrypted on macOS running devices, which denied access to the end-point machines.
Addressed
6.3.2
GPC-21222
Fixed an issue where the GlobalProtect HIP check incorrectly detected the Real Time Protection Status and Last Full Scan for Avast application, which caused the device to fail the HIP check.
Addressed
6.3.2
GPC-21206
Fixed an issue where the GlobalProtect service exited when the user logs off or put the computer in sleep mode.
Addressed
6.3.2
GPC-21174
Fixed an issue where the GlobalProtect HIP check did not detect Real time protection status for Acronis Cyber Protection Agent, which caused the device to fail the HIP check.
Addressed
6.3.2
GPC-21130
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect app failed to reconnect and continued to stay in the Connecting state after the device woke up from Modern Standby mode.
Addressed
6.3.2
GPC-21106
Fixed an issue where the GlobalProtect HIP check did not detect Real Time Protection status for Malwarebytes antimalware application, which caused the device to fail the HIP check.
Addressed
6.3.2
GPC-21043
Fixed an issue where the GlobalProtect app got stuck in connecting stage after authentication when the app was upgraded to 6.2.4 version.
Addressed
6.3.2
GPC-20983
Fixed an issue where the GlobalProtect app was installed on devices running macOS, the GlobalProtect got stuck in Connecting state when the device woke up from sleep mode.
Addressed
6.3.2
GPC-20967
Fixed an issue where, when the GlobalProtect app was installed with the Conditional Connect method, users had to click the Connect button twice to connect to an external gateway after a system reboot.
Addressed
6.3.2
GPC-20943
Fixed an issue where the GlobalProtect enforcer blocked DHCP packets.
Addressed
6.3.2
GPC-20838
Fixed an issue where the HIP report was not completed within the allowed time.
Addressed
6.3.2
GPC-20807
Fixed an issue where the HIP report for Symantec Encryption Desktop shows the encryption state as unencrypted.
Addressed
6.3.2
GPC-20779
Fixed an issue where Windows regional settings were not respected by Webview 2 on SAML embedded browser resulting in regional language(French, German, Chinese, Spanish, and Japanese) not loading properly in embedded browser.
Addressed
6.3.2
GPC-20700
Fixed an issue where macOS users had to enter the SAML username and password each time they refreshed or rebooted their computer. This issue occurred more frequently when they used Safari as the default browser or used the embedded browser.
Addressed
6.3.2
GPC-20674
Fixed an issue where all GlobalProtect portals except for the currently connected portal were deleted during the upgrade from 6.2.2 to 6.2.3 or from 6.2.3 to 6.3.0.
Addressed
6.3.2
GPC-20492
Fixed an issue where the PanGPS process crashed due to exception code 0xC0000374.
Addressed
6.3.2
GPC-20466
Fixed an issue where the tunnel gets broken during modern standby when using Enforce GlobalProtect for Network Access and the enforcer gets re-enabled only after the user resumes working on the computer.
Addressed
6.3.2
GPC-20441
Fixed an issue where HIP reports are sometimes not available on the firewall for newly connected users.
Addressed
6.3.2
GPC-20322
Fixed an issue where users were unable to install GlobalProtect 6.2 on windows 11 ARM64 devices.
Addressed
6.3.2
GPC-20191
Fixed an issue where the PanGPA executable version 6.1.2.83 did not work as expected on Windows devices.
Addressed
6.3.2
GPC-20168
Fixed an issue where it was possible to do a privilege escalation and\or login bypass when using a 3rd party credential provider with GlobalProtect.
Addressed
6.3.2
GPC-18943
Fixed an issue where when Endpoint Traffic enforcement feature was enabled, certain traffic was going through the physical adapter and not getting blocked as per the rules set.
Addressed
6.3.2
GPC-18695
Fixed an issue where, when the GlobalProtect app version 6.0.7 was installed on devices running macOS, the " Allow with Passcode option did not work as expected when the user tried to disable the GlobalProtect app with the configured passcode.
Addressed
6.3.2
GPC-18671
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the GlobalProtect macOS install package created an unused /Library/Application folder.
Addressed
6.3.2
GPC-18452
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the app did not start right away after a system reboot.
Addressed
6.3.1-c383
GPC-21486
Fixed an issue where users were unable to keep the proxy on when the
tunnel was disconnected.
Addressed
6.3.1-c383
GPC-21414
Fixed an issue where GlobalProtect gets stuck in a connecting loop upon authentication cookie expiration.
Addressed
6.3.1-c383
GPC-21101
Fixed an issue where the embedded browser pop-up with "Login Successful" was displayed for each SAML authentication.
Addressed
6.3.1-c383
GPC-20983
Fixed an a Windows computer resumes from sleep, the GlobalProtect app remains stuck in the connecting stage.
Addressed
6.3.1-c383
GPC-20595
Fixed an issue where GlobalProtect users were unable to connect after upgrading to 6.2.3-270 and received a "Your internet access is blocked" error during SAML authentication using the embedded browser.
Addressed
6.3.1-c383
GPC-20492
Fixed an issue where the PanGPS process crashed due to exception code 0xC0000374.
Addressed
6.3.1
GPC-21022
Fixed an issue where the GlobalProtect re-authentication prompt appeared in the background instead of the foreground after deploying Okta FastPass.
Addressed
6.3.1
GPC-20895
Fixed an issue where a macOS GlobalProtect app user was able to modify or add a new portal even though the portal agent configuration specified Allow User to Change Portal Address = NO and Allow user to Sign Out from GlobalProtect App = No .
Addressed
6.3.1
GPC-20864
Fixed an issue where the GlobalProtect embedded browser login window did not stay pinned to the front of all open windows on Windows and MAC computers.
Addressed
6.3.1
GPC-20839
Fixed an issue where a macOS user was unable to connect to the GlobalProtect app.
Addressed
6.3.1
GPC-20722
Fixed an issue in the GlobalProtect macOS client where the UI incorrectly displayed a "Not Connected" status and a "Connect" button while the user was in the process of connecting to a new gateway.
Addressed
6.3.1
GPC-20645
Fixed an issue where the GlobalProtect macOS app was stuck in connecting stage when the macOS computer woke from sleep and the user had to restart the computer.
Addressed
6.3.1
GPC-20601
Fixed an issue where users unable to connect to GlobalProtect after upgrading from version 6.2.2 to 6.2.3 via JAMF.
Addressed
6.3.1
GPC-20595
Fixed an issue where GlobalProtect users were unable to connect after upgrading to 6.2.3-270 and received a Y our internet access is blocked error during SAML authentication using the embedded browser.
Addressed
6.3.1
GPC-20527
Fixed an issue where the Conditional Connect method configured for the GlobalProtect app did not work as expected when the user shifted from external network (home) to an internal network (office). Users had to reboot the system to resolve this issue.
Addressed
6.3.1
GPC-20463
Fixed an issue where the GlobalProtect status panel is not disabled at startup when the Display Status Panel at Startup parameter is set to no.
Addressed
6.3.1
GPC-20442
Fixed an issue on appliances running PanOS 10.1.11-h1 and GlobalProtect 6.0.10-811 where the tunnel status failed to update to connected immediately after establishment. This problem was specific to IPv4-only clients connecting to dual-stack (IPv4 + IPv6) GlobalProtect gateways or portals.
Addressed
6.3.1
GPC-20427
Fixed an issue where the GlobalProtect client on Windows 11 devices displayed an error message "The parameter is incorrect" when attempting to connect to a firewall running PAN-OS 10.1.13 with SAML authentication enabled.
Addressed
6.3.1
GPC-20374
Fixed an issue where users were unable to connect to GlobalProtect if they accidentally clicked decline on the Terms of Service page.
Addressed
6.3.1
GPC-20157
Fixed an issue where the gateway location was not correctlydisplayed in the Connections panel.
Addressed
6.3.1
GPC-20143
Fixed an issue where the user was redirected to the Authentication page twice on the default browser for both portal and gateway authentication when SAML was configured.
Addressed
6.3.1
GPC-20114
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the certificate information was incorrect during the portal login phase causing authentication failure.
Addressed
6.3.1
GPC-20112
Fixed an issue where the GlobalProtect HIP check incorrectly detected Real time protection status for Kaspersky Endpoint Security, which caused the device to fail the HIP check.
Addressed
6.3.1
GPC-20091
Fixed an issue where pre-logon failed when the computer was rebooted, when the machine store had an expired and active certificate.
Addressed
6.3.1
GPC-20080
Fixed an issue where the GlobalProtect logs displayed different event messages for Windows and macOS devices when the Allow User to Disable GlobalProtect App was set to Allow with Passcode for the GlobalProtect app.
Addressed
6.3.1
GPC-20060
Fixed an issue where it was possible for the GlobalProtect enforcer to be disabled when there was a network change during portal authentication.
Addressed
6.3.1
GPC-20040
Fixed an issue where GlobalProtect did not re-check for internal gateways when using cached portal configuration and an external network was previously detected.
Addressed
6.3.1
GPC-19991
Fixed an issue where client certificate authentication between embedded browser and IdP (SAML) fails.
Addressed
6.3.1
GPC-19966
Fixed an issue where the embedded browser was unable to load the Microsoft IdP login page for the users to authenticate to the GlobalProtect app.
Addressed
6.3.1
GPC-19901
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the app got disconnected and reconnected intermittently.
Addressed
6.3.1
GPC-19889
Fixed an issue where, when the GlobalProtect app was installed on Windows machine and Connect Before Logon (CBL) was configured for the app, the app did not start properly when the user logged on to the device.
Addressed
6.3.1
GPC-19840
Fixed an issue where Mac computers did not display all gateways in the Search Gateway tab.
Addressed
6.3.1
GPC-19833
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the Smart card (Yubikey) authentication did not work when the device woke up from sleep mode.
Addressed
6.3.1
GPC-19753
Fixed an issue where the GlobalProtect icon could not be selected using the keyboard.
Addressed
6.3.1
GPC-19751
Fixed an issue where the programmatic and visual label for the GlobalProtect form field was not announced.
Addressed
6.3.1
GPC-19686
Fixed an issue where translation errors were observed in the GlobalProtect app for French localization.
Addressed
6.3.1
GPC-19659
Fixed an issue where macOS users were connected to the GlobalProtect app before they agreed to their company’s terms of service.
Addressed
6.3.1
GPC-19513
Fixed an issue where the GlobalProtect app was trying to use the old portal's authorization cookie to login instead of the newly migrated portal. This happened when the user changed from secondary portal to primary portal or vice versa without signing out.
Addressed
6.3.1
GPC-19475
Fixed an issue where users got connection errors in an embedded browser after the computer woke up from sleep or when the user switched gateways.
Addressed
6.3.1
GPC-19433
Fixed an issue where a small white blank page randomly popped up on the device screen distracting the users. This issue occurred while the device was connected to GlobalProtect app.
Addressed
6.3.1
GPC-19373
Fixed an issue where the HIP remediation pop up is displayed even when the user is disconnected.
Addressed
6.3.1
GPC-18991
Fixed an issue where the proxy auto-configuration (PAC) files were not restored as expected after a system reboot or when the user disconnected the GlobalProtect app.
Addressed
6.3.1
GPC-18728
Fixed an issue where the ‘I Agree’ option on the GlobalProtect app Welcome page did not work as expected when the user selected the option using a keyboard.
Addressed
6.3.1
GPC-18702
Fixed an issue where, when the GlobalProtect app was installed on Windows devices, the “Allow Manually upgrade failed when the user tried to upgrade the GlobalProtect app version from 6.0.5 to 6.0.7.
Addressed
6.3.1
GPC-18647
Fixed an issue where the user reported an issue using the Report an Issue option on the GlobalProtect app and the issue was not reported as expected.
Addressed
6.3.1
GPC-17820
Fixed an issue where Firefox was not supported for proxied traffic in Tunnel and Proxy mode or proxy mode.
Addressed
6.3.1
GPC-17727
Fixed an issue where when the GlobalProtect app was connected in Tunnel and Proxy mode or proxy mode, SSH traffic could not be sent over the proxy.
Addressed
6.3.1
GPC-16975
Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the screen reader did not announce the name of the GlobalProtect gateway when the gateway was marked with the star symbol.
Addressed
6.3.1
GPC-15750
Fixed an issue where a hyperlink in a HIP notification opened in the GPO-disabled Internet Explorer 11 browser instead of the default browser.