How to restrict web GUI access from Global Protect Portal over port 4443

How to restrict web GUI access from Global Protect Portal over port 4443

20243
Created On 05/15/19 17:31 PM - Last Modified 07/31/19 01:15 AM


Objective


To restrict web GUI access to port 4443 on the Global Protect (GP) portal address

Environment


  • Firewall, any Hardware or VM platform
  • PAN-OS version 8.x.x or 9.x.x


Procedure


  1. Find out which interface is being used for the Global Protect portal
User-added image
GUI: Network > GlobalProtect > Portals > Interface
 
  1. Check which Management profile that is associated with the interface from step 1
User-added image
GUI: Network > Interfaces > Ethernet
 
  1. Uncheck HTTPS to disallow Web GUI access to the firewall which will disable port 4443 
User-added image
GUI: Network > Network Profile > Interface Mgmt > Click on the Management Profile from step 2
 


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PLyKCAW&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language