<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Palo Alto VM Series Routing Problem in AWS in VM-Series in the Public Cloud</title>
    <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/palo-alto-vm-series-routing-problem-in-aws/m-p/1001216#M2317</link>
    <description>&lt;P&gt;I am working on a greenfield proof of concept and I am running into some challenges. I am trying to get VPC A in Account A to route internet traffic through VPC B in Account B using VPC peering. The Palo Alto VM Series resides in VPC B. Is this configuration possible, or am I forced to use a Transit Gateway or IPSEC VPN?&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Account A / VPC A CIDR&amp;nbsp;&lt;SPAN&gt;10.0.1.32/27&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Account B / VPC B CIDR&amp;nbsp;&lt;SPAN&gt;10.0.0.0/24&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV class="awsui_child_18582_j01vr_149"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;Peering connection is active&lt;BR /&gt;Source / Destination check disabled on all interfaces.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Account A / VPC A Peering:&lt;BR /&gt;0.0.0.0/0 =&amp;gt; &amp;lt;peering connection&amp;gt;&lt;BR /&gt;&lt;SPAN&gt;10.0.1.32/27 =&amp;gt; local&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;Account B / VPC B Route Table (Main Route Table associated with the subnet for the Trust interface):&lt;BR /&gt;0.0.0.0/0 =&amp;gt; &amp;lt;untrust interface&amp;gt;&lt;BR /&gt;&lt;SPAN&gt;10.0.1.32/27 =&amp;gt; &amp;lt;peering connection&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;Account B / VPC B Route Table (Untrust Interface)&lt;/P&gt;
&lt;P&gt;0.0.0.0/0 =&amp;gt; &amp;lt;internet gateway&amp;gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;10.0.1.32/27 =&amp;gt; &amp;lt;peering connection&amp;gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 08 Jan 2025 23:19:05 GMT</pubDate>
    <dc:creator>CLombardi</dc:creator>
    <dc:date>2025-01-08T23:19:05Z</dc:date>
    <item>
      <title>Palo Alto VM Series Routing Problem in AWS</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/palo-alto-vm-series-routing-problem-in-aws/m-p/1001216#M2317</link>
      <description>&lt;P&gt;I am working on a greenfield proof of concept and I am running into some challenges. I am trying to get VPC A in Account A to route internet traffic through VPC B in Account B using VPC peering. The Palo Alto VM Series resides in VPC B. Is this configuration possible, or am I forced to use a Transit Gateway or IPSEC VPN?&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Account A / VPC A CIDR&amp;nbsp;&lt;SPAN&gt;10.0.1.32/27&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Account B / VPC B CIDR&amp;nbsp;&lt;SPAN&gt;10.0.0.0/24&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV class="awsui_child_18582_j01vr_149"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;Peering connection is active&lt;BR /&gt;Source / Destination check disabled on all interfaces.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Account A / VPC A Peering:&lt;BR /&gt;0.0.0.0/0 =&amp;gt; &amp;lt;peering connection&amp;gt;&lt;BR /&gt;&lt;SPAN&gt;10.0.1.32/27 =&amp;gt; local&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;Account B / VPC B Route Table (Main Route Table associated with the subnet for the Trust interface):&lt;BR /&gt;0.0.0.0/0 =&amp;gt; &amp;lt;untrust interface&amp;gt;&lt;BR /&gt;&lt;SPAN&gt;10.0.1.32/27 =&amp;gt; &amp;lt;peering connection&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;Account B / VPC B Route Table (Untrust Interface)&lt;/P&gt;
&lt;P&gt;0.0.0.0/0 =&amp;gt; &amp;lt;internet gateway&amp;gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;10.0.1.32/27 =&amp;gt; &amp;lt;peering connection&amp;gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Jan 2025 23:19:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/palo-alto-vm-series-routing-problem-in-aws/m-p/1001216#M2317</guid>
      <dc:creator>CLombardi</dc:creator>
      <dc:date>2025-01-08T23:19:05Z</dc:date>
    </item>
    <item>
      <title>Re: Palo Alto VM Series Routing Problem in AWS</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/palo-alto-vm-series-routing-problem-in-aws/m-p/1205502#M2324</link>
      <description>&lt;P&gt;Curious have you considered using AWS Privatelink?&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jan 2025 17:02:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/palo-alto-vm-series-routing-problem-in-aws/m-p/1205502#M2324</guid>
      <dc:creator>Murph</dc:creator>
      <dc:date>2025-01-27T17:02:22Z</dc:date>
    </item>
  </channel>
</rss>

