--- type: Addressed product: GlobalProtect version: 6.3.3-h3 --- ## GPC-24113 Fixed an issue where, on Mac OS endpoints, the agent proxy was attempting to download PAC files directly, bypassing the configured proxy settings. This resulted in download failures when the corporate network was configured to block direct traffic. ## GPC-23947 Fixed an issue where GlobalProtect agent-msg logs were not generated on Panorama when a user disconnected from the GlobalProtect gateway. ## GPC-23839 Fixed an issue that caused the GlobalProtect 6.3.3 HIP report to fail with the error Method: WAAPI_MID_GET_AGENT_STATE ## GPC-23760 GlobalProtect app version 6.3.3 using SAML with the embedded browser loses cursor focus in the password field, requiring users to click in the password field before entering their password. ## GPC-23753 Fixed an issue where the DNS registration script configured on pre-vpn-connect did not run on the first GlobalProtect connection on version 6.3.3. ## GPC-23752 Fixed an issue where the GlobalProtect app failed to authenticate to the portal and gateway after a machine certificate was renewed by Intune MDM. A reboot was required to restore the connection. ## GPC-23746 Fixed an issue where the GlobalProtect HIP check incorrectly detected status for Symantec Endpoint Protection, which caused the device to fail the HIP check. ## GPC-23616 Fixed an issue where, when the GlobalProtect app was installed on devices running macOS, the following error "TransparentProxy: openWithLocalEndpoint failed" occurred in PanNExt.log when using an IPv6 address. ## GPC-23488 Fixed an issue where the HIP report intermittently detected MacOS XProtect "Real Time Protection" status as disabled. ## GPC-23468 Fixed an issue where the GlobalProtect HIP check failed to detect the correct version of Forticlient Antivirus, which caused the device to fail the HIP check. ## GPC-23417 Fixed an issue where SAML authentication with Azure AD, using Cisco Duo EAM, failed after upgrading to GlobalProtect version 6.2.8 ## GPC-23403 Fixed an issue where the GlobalProtect HIP report failed to detect the status of SentinelOne, causing the device to fail the HIP check ## GPC-23361 Fixed an issue where the GlobalProtect HIP report did not detect the Status for Zoho corporation - ManageEngine Patch Manager Plus Agent, which caused the device to fail the HIP check. ## GPC-23283 Fixed an issue where GlobalProtect was unable to set [exclude/include] 0.0.0.0/netmask routes on Mac endpoint ## GPC-23095 Fixed and issue where the GlobalProtect HIP report failed to detect the Symantec DLP software, which caused the device to fail the HIP check. ## GPC-22156 Fixed an issue where the GlobalProtect application displayed unexpected characters on the user interface after installing the GlobalProtect client on Windows 11 machines. This issue was observed with GlobalProtect client versions 6.3.1-c383 and 6.2.6-838, where the Lato font appeared to be the cause. ## GPC-21745 Fixed an issue where the GlobalProtect HIP check failed to detect Workspace ONE status, which caused the device to fail the HIP check.