Hello guys,
I have GlobalProtect Portal and Gateway on same public IP I would like to move the portal to another IP address so we can issue a third party certificate for the portal without messing with that public IP.
How can I achieve this? A loopback interface instead of layer 3 could work?
If the IP belongs to the same subnet as the external interface, no NAT or additional routing is required
If you want to use a different IP on the same firewall, just create a loopback interface and assign it the desired ip and zone, then move your portal to it