Maybe some of you have an idea regarding my problem. I am in Europe and my collegue is in California, US. He tries to connect to our GlobalProtect IP, which works, but then disconnects every minute. In the VPN log I only see the event ‘gateway-setup-ssl’ popping up every minute. Everything is on success though, no errors. Is it just a connection/provider problem on his end or a configuration problem that could be solved?
Appreciate any idea/help.
Are there ‘gateway-switch-to-ssl’ events too? If so, please check to see if udp/4501 is blocked from their end. Blocked udp/4501 traffic will mean that after initial connection, I’m sure GlobalProtect performs a heartbeat and if it fails, reverts to SSL.
This sounds like the known VPN SSL issue depending on the version of PAN-OS you’re running. The workarounds are to either connect via IPSEC or disable IPv6 on the PANGP adapter in network adapters.