Use the GlobalProtect App for iOS
Updated on
Sep 1, 2023
Focus
Download PDF
Updated on
Sep 1, 2023
Focus
- Home
- GlobalProtect
- GlobalProtect App for iOS
- Use the GlobalProtect App for iOS
Download PDF
GlobalProtect
Table of Contents
Provides you with the steps you perform to use the GlobalProtectapp for iOS.
This chapter applies to you only if your setuprequires you to enter your GlobalProtect login credentials afteryou have logged in to your endpoint (single sign-on is disabled).
Wetypically recommend that organizations allow its GlobalProtect usersto log in transparently following app installation. After you login to an endpoint with transparent GlobalProtect login, the GlobalProtectapp automatically initiates and connects to the corporate networkwithout further user intervention.
If your setup requiresyou to enter your GlobalProtect credentials, follow the applicablesteps below.
Connect to the GlobalProtect portal or gateway.
Use one of the following workflows to connect to the GlobalProtectportal or gateway:
First time connection experience:
Launchthe GlobalProtect app.
(
Optional
) If you have not enabled GlobalProtectnotifications on your endpoint, a notification permission dialogappears.
Allow
GlobalProtect to send younotifications.If you
Don’tAllow
GlobalProtect to send you notifications, a reminderappears the next time you launch the app. Tap theSettings-> GlobalProtect
link to go to the notification permissionscreen, where you can enable notifications. If you still do notwant to enable notifications,Skip
this screen.Enter the GlobalProtect portal address.
(
Optional
) Depending on the connection mode, tap
Connect
toinitiate the connection.When the
“GlobalProtect” Would Like to AddVPN Configurations
messageappears, use the following steps to add VPN configurations to yourendpoint:Allow
GlobalProtectto add VPN configurations to your endpoint. This setting enablesGlobalProtect to filter and monitor network activity on the endpointwhen you are using the VPN.Enter your iPhone or iPad passcode to confirm that you wantto add VPN configurations to your endpoint.
(
Optional
) If your endpoint is unable to verifythe identity of the GlobalProtect portal using the portal servercertificate, the
Cannot Verify Server Identity
message appears.If you trust the certificate, tapContinue
to proceedwith the connection.(
Optional
) If prompted, enter your
Username
andPassword
andthenSIGN IN
.If your administratorhas allowed you to use biometric (fingerprint or, for iOS X devicesonly, face ID) information to sign in, you need to first sign-inwith a username and password twice (once to save it and again toauthenticate); you can then use biometric information to sign in.
(
Optional
) If you are using multi-factor authentication,enter the GlobalProtect verification
Code
thatis sent to your endpoint after you sign in, and then tapContinue
.(
Optional
) If your administrator configures theGlobalProtect app to display a welcome message, the welcome messageappears upon successful connection. Close the welcome message toproceed to the home screen.
(
Optional
) If there are notifications on your app,the Notifications dialog appears upon successful connection. Closethe Notifications dialog to proceed to the home screen.
When the home screen appears, verify that your connectionhas established successfully. If the connection is successful, thehome screen displays the
CONNECTED
state.(
Optional
) By default, the endpoint automaticallyconnects to the
Best Available
gateway basedon the configuration that the administrator defines and the responsetimes of the available gateways. To connect to a different gateway,tap the gateway drop-down at the bottom of the home screen and thenuse one of the following options:Select a gatewaymanually (external gateways only). If your administrator configuresmore than 10 manual external gateways in your portal agent configuration,you can also locate a specific gateway using the gateway search option.
Assign and automatically connect to a preferred gateway by tappingthe More Options (
) iconfor the gateway that you want to set as the preferred gateway andthen
Set As Preferred
. Alternatively, youcan long-press (tap and hold) the gateway and thenSetAs Preferred
.To removethe preferred gateway assignment, tap the More Options (
) icon for the preferredgateway and then
Remove Preferred
. Alternatively,you can long-press (tap and hold) the gateway and thenRemovePreferred
.
On-Demand (Remote Access VPN) connection experience:
WhenGlobalProtect administrator configures GlobalProtect with the
On-Demand
connectmethod, you must launch the GlobalProtect app to initiate the connectionmanually. After the connection initiates, you canTAPTO CONNECT
to establish the GlobalProtect connection.If your administrator enables GlobalProtect toSave User Credentials
,the connection establishes without requiring further user interaction.If your administrator does not enable GlobalProtect toSaveUser Credentials
, you must sign in to establish the connection.Always On connection experience
When your GlobalProtectadministrator configures GlobalProtect with the
AlwaysOn
connect method, the connection initiates automatically.Depending on whether your administrator configures the GlobalProtect apptoSave User Credentials
, you can establishthe GlobalProtect connection without launching the app. If youradministrator enables GlobalProtect toSave User Credentials
,the connection establishes automatically without requiring any userinteraction. If your administrator does not enable GlobalProtecttoSave User Credentials
, you must sign inthrough the app to establish the connection.
View information about your GlobalProtect connection.
After you establish the GlobalProtect connection, launchthe GlobalProtect app. Tap the settings icon to open the settingsmenu. From the settings menu, tap
SETTINGS
toview information about your connection, including thePortal
addressand connectionStatus
.If you want to connect to a different GlobalProtectportal, tap the
Portal
address. When prompted,enter a new portal address and then tapCONNECT
.If you are connected to an external gateway, tap the connection
Status
toview additional details about your connection (including the networkSSID and gateway IP address/FQDN).
(
Optional
) Change your saved password.
If your GlobalProtect administrator configures the GlobalProtectportal agent to
Save User Credentials
, yourcredentials are automatically saved to the GlobalProtect app. Whenyour password expires or a RADIUS or AD administrator requires apassword change at the next login, you can update your passwordon the app. This feature is enabled only when you are authenticatedwith a RADIUS server using the Protected Extensible AuthenticationProtocol Microsoft Challenge Handshake Authentication Protocol version2 (PEAP-MSCHAPv2).Launch the GlobalProtect app.
From the home screen,
TAP TO CONNECT
.(
Optional
) If prompted, enter your
old
Username
andPassword
,and thenSIGN IN
.When the GlobalProtect app prompts you to
Update Password
,enter yourCurrent Password
followed by yourNewPassword
.Retype Password
to confirmyour new password.SIGN IN
to reconnect to GlobalProtect withyour new password.
(
Optional
) Disconnect from GlobalProtect.
If your administrator configures GlobalProtect with the
On-Demand
connectmethod, you canTAP TO DISCONNECT
from thehome screen.
"); adBlockNotification.append($( "Thanks for visiting https://docs.paloaltonetworks.com. To improve your experience when accessing content across our site, please add the domain to the allow list on your ad blocker application." )); let adBlockNotificationClose = $("x"); adBlockNotification.prepend(adBlockNotificationClose) $('body').append(adBlockNotification); setTimeout(function (e) { adBlockNotification.addClass('open'); }, 10); adBlockNotificationClose.on('click', function (e) { adBlockNotification.removeClass('open'); }) } }, 5000)
Recommended For You
{{ if(( raw.pantechdoctype != "techdocsAuthoredContentPage" && raw.objecttype != "Knowledge" && raw.pancommonsourcename != "TD pan.dev Docs")) { }} {{ if (raw.panbooktype) { }} {{ if (raw.panbooktype.indexOf('PANW Yellow Theme') != -1){ }}
{{ } else if (raw.panbooktype.indexOf('PANW Green Theme') != -1){ }}
{{ } else if (raw.panbooktype.indexOf('PANW Blue Theme') != -1){ }}
{{ } else { }}
{{ } }} {{ } else { }}
{{ } }} {{ } else { }} {{ if (raw.pantechdoctype == "pdf"){ }}
{{ } else if (raw.objecttype == "Knowledge") { }}
{{ } else if (raw.pancommonsourcename == "TD pan.dev Docs") { }}
{{ } else if (raw.pancommonsourcename == "LIVEcommunity Public") { }}
{{ } else { }}
{{ } }} {{ } }}
{{ if (raw.pancommonsourcename == "LIVEcommunity Public") { }}
{{ if (raw.pantechdoctype == "pdf"){ }}
{{ } }}
{{ } else { }}
{{ if (raw.pantechdoctype == "pdf"){ }}
{{ } }}
{{ } }}
{{ if (raw.pancommonsourcename != "TD pan.dev Docs"){ }} {{ if (raw.pandevdocsosversion){ }} {{ } else { }} {{ if ((_.size(raw.panosversion)>0) && !(_.isNull(raw.panconversationid )) && (!(_.isEmpty(raw.panconversationid ))) && !(_.isNull(raw.otherversions ))) { }} (See other versions) {{ } }} {{ } }} {{ } }}
{{ } }}{{ if (raw.pantechdoctype == "bookDetailPage"){ }}
{{ } }}{{ if (raw.pantechdoctype == "bookLandingPage"){ }}
{{ } }}{{ if (raw.pantechdoctype == "productLanding"){ }}
{{ } }}{{ if (raw.pantechdoctype == "techdocsAuthoredContentPage"){ }}
{{ } }}{{ if (raw.pantechdoctype == "pdf"){ }}
{{ } }}