|
Fixed an issue where, when GlobalProtect app was configured with
Enforcer, users could bypass Enforcer restrictions by repeatedly
canceling authentication prompts after logging into Windows. This
occurred because the cached portal configuration, which contains
Enforcer settings, was not loaded when a pre-logon tunnel failed to
establish due to a quick user login. This fix ensures that the
cached portal configuration is loaded as soon as PanGPA starts and
PanGPS learns the username, preventing unrestricted access in
scenarios where Enforcer is intended to lockdown the endpoint.
|