GloablProtect VPN users can’t access LAN resources because of IP addresses conflict

Situation: The client uses Palo Alto Firewall GloablProtectr VPN for remote users to access the LAN resources. Many Xfinity modems assign 10.0.0.0/24 IP range which conflicts with the LAN 10.0.0.0/16. The VPN users may not be able to access some LAN resources, for example 10.0.0.40.

Resolution: Adding the IP address to the GolablProtect rotuing table with 32 slash. for example 10.0.0.40/32. To do that, go to Network>GloblProtect>Gateway. Click on the Gateway and go to Agent>Client Settings. Add 10.0.0.40/32 to the routing table.

Published by

Bob Lin

Bob Lin, Chicagotech-MVP, MCSE & CNE Data recovery, Windows OS Recovery, Networking, and Computer Troubleshooting on http://www.ChicagoTech.net How to Install and Configure Windows, VMware, Virtualization and Cisco on http://www.HowToNetworking.com

Leave a Reply