<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Azure internal load balancer and VM firewalls not working in VM-Series in the Public Cloud</title>
    <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-internal-load-balancer-and-vm-firewalls-not-working/m-p/533168#M1831</link>
    <description>&lt;P&gt;Palo Alto devices need to have 2 VRs one for trust mapped to the trust interface and one for untrust mapped to untrust interface. The reason for this is the health probes configuration.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 03 Mar 2023 16:51:26 GMT</pubDate>
    <dc:creator>Stevenjw0728</dc:creator>
    <dc:date>2023-03-03T16:51:26Z</dc:date>
    <item>
      <title>Azure internal load balancer and VM firewalls not working</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-internal-load-balancer-and-vm-firewalls-not-working/m-p/464555#M1450</link>
      <description>&lt;P&gt;We are attempting to internal load balance a pair of VM firewalls in Azure.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The firewalls work when traffic is sent directly to the firewalls.&amp;nbsp; But when the Azure internal load balancer is added into the mix no traffic hits the firewall.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have searched all over the Palo web sites, the live community and Internet, but have not found instructions on how to configure this.&amp;nbsp; I see references to NATs, sandwiches, lots of public load balance scenarios, but nothing I have been able to use.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a third part contractor configuring Azure, as this is new to us.&amp;nbsp; They are also stumped.&amp;nbsp; I have a support case open with Palo but have not been able to get an engineer assigned to it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for any help.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Feb 2022 15:37:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-internal-load-balancer-and-vm-firewalls-not-working/m-p/464555#M1450</guid>
      <dc:creator>Joel_W</dc:creator>
      <dc:date>2022-02-09T15:37:42Z</dc:date>
    </item>
    <item>
      <title>Re: Azure internal load balancer and VM firewalls not working</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-internal-load-balancer-and-vm-firewalls-not-working/m-p/464835#M1453</link>
      <description>&lt;P&gt;I've deployed this, which deployment guide did you follow? It was a pain initially but then made sense.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Have you got each interface separated with Virtual routers and static routes for the load balancers in each route table routing traffic for the load balancers back to the subnet gateway?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you look at the metrics of the load balancer then you will see if the availability of the Interfaces the load balancers are talking to is working.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.paloaltonetworks.com/apps/pan/public/downloadResource?pagePath=/content/pan/en_US/resources/guides/azure-transit-vnet-deployment-guide" target="_blank"&gt;Azure Transit VNet Design Model Deployment Guide (paloaltonetworks.com)&lt;/A&gt;&amp;nbsp;is an extensive guide pick what you need, sounds like its the virtual routers and the Load balancer availability checking tripping you up.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 10 Feb 2022 10:30:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-internal-load-balancer-and-vm-firewalls-not-working/m-p/464835#M1453</guid>
      <dc:creator>steve.delve</dc:creator>
      <dc:date>2022-02-10T10:30:25Z</dc:date>
    </item>
    <item>
      <title>Re: Azure internal load balancer and VM firewalls not working</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-internal-load-balancer-and-vm-firewalls-not-working/m-p/517557#M1697</link>
      <description>&lt;P&gt;Hi Steve&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am also having same issue&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You mentioned "have you separated each interface"&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Which interfaces are you referring to ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Oct 2022 05:41:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-internal-load-balancer-and-vm-firewalls-not-working/m-p/517557#M1697</guid>
      <dc:creator>Anthony81</dc:creator>
      <dc:date>2022-10-12T05:41:34Z</dc:date>
    </item>
    <item>
      <title>Re: Azure internal load balancer and VM firewalls not working</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-internal-load-balancer-and-vm-firewalls-not-working/m-p/533168#M1831</link>
      <description>&lt;P&gt;Palo Alto devices need to have 2 VRs one for trust mapped to the trust interface and one for untrust mapped to untrust interface. The reason for this is the health probes configuration.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Mar 2023 16:51:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-internal-load-balancer-and-vm-firewalls-not-working/m-p/533168#M1831</guid>
      <dc:creator>Stevenjw0728</dc:creator>
      <dc:date>2023-03-03T16:51:26Z</dc:date>
    </item>
  </channel>
</rss>

