GlobalProtect 6.2.8-h14 (6.2.8-c1079) Windows and macOS Addressed Issues
Focus
Focus
GlobalProtect

GlobalProtect 6.2.8-h14 (6.2.8-c1079) Windows and macOS Addressed Issues

Table of Contents

GlobalProtect 6.2.8-h14 (6.2.8-c1079) Windows and macOS Addressed Issues

Lists the addressed issues in GlobalProtect 6.2.8-h14 Windows and macOS.
The following table lists the issues that are addressed in GlobalProtect app 6.2.8-h14 (6.2.8-c1079) Windows and macOS.
Issue ID
Description
GPC-27513
Fixed an issue where GlobalProtect intermittently did not detect the Real-time Protection (RTP) state of Windows Defender, which prevented authorized users from accessing resources when Host Information Profile (HIP) policies were applied. This behavior occurred after an upgrade of Windows Defender. With this fix, GlobalProtect properly detects the RTP state of Windows Defender.
GPC-27403
(GlobalProtect client on Windows devices using SmartCard authentication) Fixed an issue where the GlobalProtect client would unexpectedly terminate and fail to establish a connection, which was caused by inter-process communication issues during the authentication process. With this fix, the client connects as expected.
GPC-27394
Fixed an issue where GlobalProtect gateway certificate verification would fail after a software upgrade, which prevented connections to the gateway. With this fix, gateway certificate verification proceeds as expected.
GPC-27342
Fixed an issue where the GlobalProtect (GlobalProtect) client on macOS would fail to connect using a client certificate after the device woke from sleep, which occurred because the client did not properly re-establish access to the client certificate. With this fix, the client properly handles certificate access issues and re-establishes the connection.
GPC-27281
Fixed an issue where GlobalProtect Host Information Profile (HIP) checks intermittently failed with an "Invalid authentication cookie" error after machines woke up from modern standby, which caused traffic to incorrectly match policies without HIP requirements or fall through to default rules. With this fix, HIP checks proceed as expected, and traffic correctly matches policies based on HIP requirements.
GPC-27202
Fixed an issue where GlobalProtect log entries for macOS agents that disconnected using ticket were not displayed in the Strata Cloud Manager Log Viewer, which led to an inconsistency in log reporting compared with Windows agents. With this fix, log entries for macOS agents are displayed correctly.
GPC-27149
Fixed an issue where GlobalProtect connections would intermittently stall, preventing internet access. With this fix, GlobalProtect connections establish and maintain properly.
GPC-26994
Fixed an issue where Host Information Profile (HIP) reports were not sent to the gateway intermittently, which resulted in issues with user-IP mapping. With this fix, HIP reports are sent consistently, ensuring accurate user-IP mapping.
GPC-26933
(macOS endpoints only) Fixed an issue where the GlobalProtect app would not connect to the GlobalProtect service after a macOS upgrade and a sleep-wake event. With this fix, the GlobalProtect app connects as expected.
GPC-26928
Fixed an issue where the GlobalProtect client would remain in a connecting state after an initial authentication attempt failed, and would not attempt to connect to alternate gateways. With this fix, the GlobalProtect client now properly transitions out of the connecting state and attempts alternate gateways when authentication fails.
GPC-26910
Fixed an issue where the GlobalProtect embedded browser displayed a blank white screen during Security Assertion Markup Language (SAML) authentication on macOS Tahoe 26.5, which prevented users from completing authentication and connecting to the VPN.
GPC-26808
Fixed an issue where GlobalProtect did not detect a specific version of the Broadcom Endpoint Security Agent (ESA) on macOS endpoints. With this fix, the agent is correctly detected, and administrators can configure policies for it.
GPC-26790
(macOS devices running GlobalProtect) Fixed an issue where GlobalProtect would not connect, which caused users to encounter a "Could not connect to the GlobalProtect service" error after a macOS update or system reboot. This occurred because the GlobalProtect service would not start or would stop unexpectedly. With this fix, GlobalProtect connects successfully.
GPC-26780
(macOS devices only) Fixed an issue where GlobalProtect would get stuck in a connecting state after the device woke from sleep or reconnected to a network, which resulted from GlobalProtect attempting to resolve the gateway's fully qualified domain name (FQDN) using the tunnel's DNS instead of the local internet service provider (ISP) DNS. With this fix, GlobalProtect correctly uses the local ISP DNS for gateway FQDN resolution when disconnected.
GPC-26764
(GlobalProtect app on macOS devices) Fixed an issue where the GlobalProtect app initiated unexpected portal requests after a manual gateway selection. With this fix, the app behaves as expected after a manual gateway selection.
GPC-26699
(macOS only) Fixed an issue where the GlobalProtect user interface popover would not dismiss after a successful connection, which occurred because the GlobalProtect menu bar icon became inaccessible when hidden by the operating system. With this fix, the popover automatically dismisses after a successful connection.
GPC-26682
Fixed an issue where internet connectivity would stop working on macOS when the GlobalProtect client was connected to certain mobile hotspots that assigned IP addresses from a specific reserved range, which occurred because the GlobalProtect client did not properly process this particular IP address range used in some mobile network environments. With this fix, internet connectivity is maintained in these scenarios.
GPC-26657
Fixed an issue where the HIP process repeatedly launched in a rapid-fire loop, which triggered alerts. With this fix, the process launches as expected.
GPC-26619
(GlobalProtect app on macOS only) Fixed an issue where the GlobalProtect app remained in a connecting state for approximately two minutes after a local network-extension or route-change event, which required a restart of the app to recover. With this fix, the GlobalProtect app now connects as expected after such events.
GPC-26618
(GlobalProtect app on macOS) Fixed an issue where the GlobalProtect app would fail to connect to gateways after a manual gateway selection. With this fix, the GlobalProtect app connects successfully to gateways after manual selection.
GPC-26560
Fixed an issue where GlobalProtect app connections experienced a delay when Autonomous Digital Experience Management (ADEM) was disabled in the portal, which occurred because the agent continued to search for the ADEM configuration file. With this fix, the agent no longer attempts to locate the ADEM configuration file when ADEM is disabled.
GPC-26558
Fixed an issue where GlobalProtect App disconnect reason text was truncated in the user interface when the GlobalProtect Portal was configured with a custom disconnect reason, which prevented the full message from being displayed. With this fix, the user interface now properly displays the complete disconnect reason.
GPC-26537
Fixed an issue where an unauthorized user could disconnect a GlobalProtect connection after interrupting Security Assertion Markup Language (SAML) authentication during a connection refresh. With this fix, the Disconnect button no longer appeared for unauthorized users in this scenario.
GPC-26536
Fixed an issue where the GlobalProtect client on macOS would intermittently become stuck in a connecting state after the system resumed from sleep mode, which prevented internet access even after disconnecting the virtual private network (VPN). With this fix, the client now connects as expected and allows proper network access.
GPC-26224
Fixed an issue where the GlobalProtect client stole focus when a user entered a PIN for PINGID/Security Assertion Markup Language (SAML) authentication. With this fix, the GlobalProtect client no longer unexpectedly takes focus during this authentication process.
GPC-26133
Fixed an issue where the DisplayVersion registry key for GlobalProtect clients on Windows reported an incomplete version string, which led to other software misidentifying the installed GlobalProtect version. With this fix, the registry key now accurately reflects the full client version.
GPC-26088
Fixed an issue where the GlobalProtect Enforcer did not unblock network traffic after a GlobalProtect connection was established, which resulted in the blocking of traffic not explicitly excluded from enforcement. With this fix, the GlobalProtect Enforcer now correctly unblocks traffic upon successful GlobalProtect connection.
GPC-25840
Fixed an issue where applications configured for split tunneling would not function correctly after a network transition. With this fix, applications would function as expected after network changes.
GPC-25670
Fixed an issue where the GlobalProtect app would intermittently get stuck in a connecting state after a laptop woke up from standby, preventing it from establishing a connection to the gateway. With this fix, the GlobalProtect agent connects successfully.
GPC-25575
(macOS devices only) Fixed an issue where custom Host Information Profile (HIP) checks did not correctly evaluate certain system configuration parameters, which prevented macOS devices from matching the intended HIP objects. With this fix, HIP checks accurately evaluate the system configuration parameters.
GPC-25567
Fixed an issue where the GlobalProtect Client would intermittently not complete Kerberos Single Sign-On (SSO) during pre-login. This occurred when the client did not post the Kerberos token back after receiving an initial authentication challenge from the portal, which prompted users for credentials and displayed an error message indicating an unreachable network or unresponsive portal. With this fix, Kerberos SSO now succeeds consistently.
GPC-25308
Fixed an issue where the GlobalProtect app intermittently stopped transmitting Host Information Profile (HIP) reports, which caused User-ID entries to be cleared and resulted in missing user-to-IP mappings. With this fix, the GlobalProtect app now consistently transmits HIP reports, maintaining accurate user-to-IP mappings.
GPC-25219
Fixed an issue where users were unable to select the GlobalProtect icon from the status bar on macOS.