GlobalProtect-openconnect
openconnect
GlobalProtect-openconnect | openconnect | |
---|---|---|
15 | 13 | |
1,143 | - | |
- | - | |
8.7 | - | |
6 days ago | - | |
Rust | ||
GNU General Public License v3.0 only | - |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
GlobalProtect-openconnect
-
GlobalProtect VPN and browser configuration
In order to reach a client's domain for a project, my team needs to use a VPN and the instructions were pretty clear regarding which tool to use - GlobalProtect VPN - so I've installed https://github.com/yuezk/GlobalProtect-openconnect and was able to connect successfully.
-
Looking for GlobalProtect VPN Client from Palo Alto Networks
Use this one instead https://github.com/yuezk/GlobalProtect-openconnect
- Anyone have a download link for the Global Protect VPN for Linux?
-
How to vet an untrusted open-source project?
Sometimes you may want to use some software in your project, but the maintainer(s) may have some functional affiliation(s) that makes it difficult to use without significant security assessment effort.
Example here: GlobalProtect is VPN software from Palo Alto Networks, but the maintainer of this open source client is based in China. He may be a fine, upstanding person, the code may be pristine, but there's systemic risk that needs to be bought down.
What are your tools of choice to assess something like this?
https://github.com/yuezk/GlobalProtect-openconnect
-
University VPN on Linux
Ooh yes I recently went through this. This is the one that finally worked: https://github.com/yuezk/GlobalProtect-openconnect
-
RavynOS â Finesse of macOS. Freedom of FreeBSD
I've seen this on Linux too, specifically with this VPN application https://github.com/yuezk/GlobalProtect-openconnect
Closing it via the "x" will minimize to tray and hide (which is the behavior I want, but an example nonetheless)
-
School internet blocks any Linux devices, any ideas?
I work for a Uni running eduroam. Mine isn't hostile to Linux, but it is definitely a second class citizen. I run Linux where I can. I don't know where you are, but openconnect can probably work for you. Specifically, I use https://github.com/yuezk/GlobalProtect-openconnect/ on top of openconnect for SAML auth. Might be worth the try for you.
-
GlobalProtect from PaloAlto: "Cannot connect to local gpd service."
I'm not familiar with the service and software can only be downloaded and installed via the customer portal. Would something like GlobalProtect-openconnect or gp-saml-gui suffice?
- If you're failing to connect to WPA2 networks, there is a reason (and a workaround).
-
WPA2 Enterprise Network not working on 22.04
Solution to the GlobalProtect problem is to install the non-official client https://github.com/yuezk/GlobalProtect-openconnect and follow the fix in issue #142 on the github repo.
openconnect
-
Backdoor in upstream xz/liblzma leading to SSH server compromise
A lot of software (including https://gitlab.com/openconnect/openconnect of which I'm a maintainer) uses libxml2, which in turn transitively links to libzma, using it to load and store compressed XML.
I'm not *too* worried about OpenConnect given that we use `libxml2` only to read and parse uncompressed XMLâŚ
But I am wondering if there has been any statement from libxml2 devs (they're under the GNOME umbrella) about potential risks to libxml2 and its users.
-
Actual SSH over HTTPS
From the article:
> Ubiquitous presence of HTTPS allows you to pass your data through very restrictive middle boxes!
This is, in fact, why all â or nearly all â proprietary VPN protocols (so-called "SSL VPNs") implement a mode that initiates a tunnel via HTTPS, at least as a fallback if not as the primary mode of operation: precisely in order to have a mode of operation that works with almost any connection to the global Internet.
I'm one of the main developers of https://gitlab.com/openconnect/openconnect, which implements many such protocols, and wrote https://github.com/dlenski/what-vpn, which sniffs or identifies even more flavors of TLS-based VPN servers.
-
OpenConnect stopped working: Unexpected 404 result from server
Found the solution: It's as simple, as changing the user agent with --useragent=AnyConnect. This is ridiculous. https://gitlab.com/openconnect/openconnect/-/issues/544
-
Work from home (WFH) while travelling internationally?
Source: I am one of the lead developers of OpenConnect, a popular open-source client for many corporate VPNs, and have done all of the above.
-
How to vet an untrusted open-source project?
Be careful you're not using an illicit fork. https://gitlab.com/openconnect/openconnect
-
Which SLT package is better if I want the best consistent speed? would they reduce the speed in the unlimited package?
I personally have an openconnect server, and I patched their client to let me specify the SNI, (it's set to the server's hostname by default (https://gitlab.com/openconnect/openconnect/-/blob/master/gnutls.c#L2366), but it's optional in the anyconnect protocol spec)
-
GlobalProtect from PaloAlto: "Cannot connect to local gpd service."
Thank you, trying openconnect for multiple hours, but cannot auth, created issue about that https://gitlab.com/openconnect/openconnect/-/issues/446
-
Overriding a minimum EC2 sizing from a vendor
If this is for anything other than AnyConnect I feel like you're better off with a t4g.nano running OpenVPN. If it's AnyConnect, you can run OpenConnect.
- Linux user has to migrate to Windows or Mac
-
Create second MacOS VM within MacOS install
I had similar issue with Fortinet VPN. Try using something like https://gitlab.com/openconnect/openconnect. Run this from terminal to connect to VPN when needed. If this doesn't work search for global protect open source and there are other options.
What are some alternatives?
openconnect - OpenConnect client extended to support Palo Alto Networks' GlobalProtect VPN
macos-virtualbox-vm - Instructions and script to help you create a VirtualBox VM running macOS.
RADIUS-to-Okta-MFA - A utility to support Windows Remote Desktop Gateway MFA with Okta.
rsa_ct_kip - Provision an RSA SecurID token with RSA's CT-KIP protocol
Soundux - đ A cross-platform soundboard
OpenSSL - TLS/SSL and crypto library
gp-saml-gui - Interactively authenticate to GlobalProtect VPNs that require SAML
lutris - Lutris desktop client
stencil-golang - Template repository for Golang applications
LogFileHighlighting - Reading large amounts of log files is difficult. These Sublime Text files help highlight events in the log files.
ligolo-ng - An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.