GlobalProtect-openconnect icon indicating copy to clipboard operation
GlobalProtect-openconnect copied to clipboard

This site can't be reached after authentication with Okta

Open dtluna opened this issue 2 years ago • 2 comments
trafficstars

After entering my authentication details to Okta I get the following error: login_failure

dtluna avatar Feb 28 '23 09:02 dtluna

Me too, it's because of self-signed or expired certificate of the PA gateway. I still haven't found a way around this. smh

HALKRON avatar Mar 10 '23 12:03 HALKRON

Hi! I just found a workaround to this problem. Firstly, open your Global Protect gateway IP on your browser where can you export the certificate file.

image

Screenshot from 2023-03-15 00-15-41

Don't forget to export it in Base64-encoded, ceritificate chain

And then use this guide to import the certificate into your linux system. https://thomas-leister.de/en/how-to-import-ca-root-certificate/

Remove and reinstall the app, and you are good to go! :)

HALKRON avatar Mar 14 '23 17:03 HALKRON

Should no longer be a problem in 2.x, which has an option to ignore the TLS errors. Closing it for now, reopen it if the problem still there.

yuezk avatar Mar 23 '24 13:03 yuezk