User machines on Global Protect Client are able to be port scanned

User machines on Global Protect Client are able to be port scanned

194
Created On 11/07/23 18:37 PM - Last Modified 10/27/25 21:10 PM


Symptom


  • The customer has user machines who are on GP Client and working from home, they discovered that they are able to run a port scan on their public home IP, and the device is replying and acknowledging open ports. 


Environment


  • All Global Protect client versions.
  • All PAN OS versions.


Cause


  • The observed behavior is a result of the absence of restrictions on Windows inbound traffic.


Resolution




Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000008VnECAU&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail