Archive
Enforce GlobalProtect Connections with FQDN Exclusions

Enforce GlobalProtect Connections with FQDN Exclusions

2024-11-22 configure up to 40 domain name exclusion when enforce GlobalProtect for Network Access is enable . improve user experience by allow access

Related articles

有些人不会告诉你:PrivadoVPN的协议选择 Best Roblox Games on Mobile Best VPN for Streaming in 2024 [50+ Tested] All Buddha’s Eyeball Locations in Black Myth: Wukong How to set up WireGuard VPN Client on Android and iOS

configure up to 40 domain name exclusion when enforce GlobalProtect for Network Access
is enable . improve user experience by allow access to specific resource when
GlobalProtect is disconnect .

Software Support: start with globalprotect™
app 5.2 with Content Release version 8284 – 6139 or later .

OS
Support
: Windows and macOS running macOS Catalina 10.15.4 or
later

You is configure can now configure exclusion for specific fully qualified domain name when the Enforce
GlobalProtect for Network Access feature is enable . With theAllow
traffic to specified FQDN when Enforce GlobalProtect Connection for Network
Access is enabled and GlobalProtect Connection is not established

option that is available as an app setting in the App
Configurations
area of your GlobalProtect portal, you can now
specify the fully qualified domain names for which you allow access when you enforce
GlobalProtect connections for network access. You can configure up to 40 fully
qualified domain names for which you want to allow access when you enforce
GlobalProtect connections for network access and GlobalProtect cannot establish a
connection. By configuring FQDN exclusions, you can improve the user experience by
allowing end users to access specific resources when GlobalProtect is disconnected.
For example, the endpoint can communicate with a cloud-hosted identity provider
(ldP) for authentication purposes or a remote device management server even when the
Enforce GlobalProtect for Network Access feature is enabled.

Due to a recent change in macOS , enforce
GlobalProtect connection with FQDN exclusion for multiple network extension being
load at a time does not work in certain situation , such as in environment where
DnsClient . Net , GlobalProtect with theAllow traffic to specified FQDN
when Enforce GlobalProtect Connection for Network Access is enabled and
GlobalProtect Connection is not established
option enabled, and
Cortex XDR are running.