<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IPSec VPN from EC2 server to remote Palo Alto possible? in VM-Series in the Public Cloud</title>
    <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/ipsec-vpn-from-ec2-server-to-remote-palo-alto-possible/m-p/192656#M206</link>
    <description>&lt;P&gt;In a situation like this you can spin up a Palo Alto Networks VM series firewall in AWS and use the firewall as the VPN termination point to connecct to your on prem PA-3050. You can also use AWS VPN connection as well as the VPN termination point in AWS. Using Global protect VPN connectivity&amp;nbsp;would be limited to the one Global protect client that is connected. If only one person needs to connect then you can do that but you will still need a VM series firewall in AWS to terminate the Global Protect VPN&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 21 Dec 2017 05:39:58 GMT</pubDate>
    <dc:creator>jperry1</dc:creator>
    <dc:date>2017-12-21T05:39:58Z</dc:date>
    <item>
      <title>IPSec VPN from EC2 server to remote Palo Alto possible?</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/ipsec-vpn-from-ec2-server-to-remote-palo-alto-possible/m-p/192634#M205</link>
      <description>&lt;P&gt;Folks.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have a requirement for setting up an EC2 Windows server in a remote Amazon region for receiving files.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;On this server, I need some custom API stuff (easy) to allow file transfer from the Internet - but I also need a secure VPN to my normal site elsewhere to I can connect to several databases and other services which are *not* available on the Internet.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Does anyone know if it's possibel to use the Amazon VPN to setup an IPSec to my Palo Alto's (PA 3050, currently running 6.1.19) to allow for connections to the internal servers?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Or would it be easier to leave a console user logged on and run Global protect? While that might work, it's an ineligant solution as it needs all the remote processes to run as that user to be able to access the resources?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for any input&lt;/P&gt;</description>
      <pubDate>Thu, 21 Dec 2017 00:01:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/ipsec-vpn-from-ec2-server-to-remote-palo-alto-possible/m-p/192634#M205</guid>
      <dc:creator>darren_g</dc:creator>
      <dc:date>2017-12-21T00:01:26Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN from EC2 server to remote Palo Alto possible?</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/ipsec-vpn-from-ec2-server-to-remote-palo-alto-possible/m-p/192656#M206</link>
      <description>&lt;P&gt;In a situation like this you can spin up a Palo Alto Networks VM series firewall in AWS and use the firewall as the VPN termination point to connecct to your on prem PA-3050. You can also use AWS VPN connection as well as the VPN termination point in AWS. Using Global protect VPN connectivity&amp;nbsp;would be limited to the one Global protect client that is connected. If only one person needs to connect then you can do that but you will still need a VM series firewall in AWS to terminate the Global Protect VPN&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 21 Dec 2017 05:39:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/ipsec-vpn-from-ec2-server-to-remote-palo-alto-possible/m-p/192656#M206</guid>
      <dc:creator>jperry1</dc:creator>
      <dc:date>2017-12-21T05:39:58Z</dc:date>
    </item>
  </channel>
</rss>

