<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Azure Nat Configuration in VM-Series in the Public Cloud</title>
    <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-nat-configuration/m-p/154136#M43</link>
    <description>&lt;P&gt;Steve,&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp;For outbound, just add a static route that forwards trafffic as you suggest. I *think* you can just forward it to eth 1/1 (an not mention&amp;nbsp;the ip address of the subnet) of the fw -- assuming eth1/1 is what&amp;nbsp;NIC1 is connected to.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The NIC in Azure has the public IP and the firewall doesn't even see it. It only see the private address.&lt;/P&gt;</description>
    <pubDate>Tue, 25 Apr 2017 17:49:29 GMT</pubDate>
    <dc:creator>niyengar</dc:creator>
    <dc:date>2017-04-25T17:49:29Z</dc:date>
    <item>
      <title>Azure Nat Configuration</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-nat-configuration/m-p/154126#M42</link>
      <description>&lt;P&gt;With the NAT VM no longer being required and you can assign a public address to NIC1 &amp;nbsp;I have a question on the NAT process concerning only connectivity from resources to the interent. Do you need to configure a source nat policy or do you just forward traffic to 0.0.0.0/0 via a static route to the .1 address of the subnet on NIC1 and the Azure environment will do the translation? It is my understanding you only assign the public IP address to the VM NIC and do not assign this to an interface within the Palo Alto configuration?&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Steve&lt;/P&gt;</description>
      <pubDate>Tue, 25 Apr 2017 17:29:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-nat-configuration/m-p/154126#M42</guid>
      <dc:creator>r24481</dc:creator>
      <dc:date>2017-04-25T17:29:58Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Nat Configuration</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-nat-configuration/m-p/154136#M43</link>
      <description>&lt;P&gt;Steve,&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp;For outbound, just add a static route that forwards trafffic as you suggest. I *think* you can just forward it to eth 1/1 (an not mention&amp;nbsp;the ip address of the subnet) of the fw -- assuming eth1/1 is what&amp;nbsp;NIC1 is connected to.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The NIC in Azure has the public IP and the firewall doesn't even see it. It only see the private address.&lt;/P&gt;</description>
      <pubDate>Tue, 25 Apr 2017 17:49:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-nat-configuration/m-p/154136#M43</guid>
      <dc:creator>niyengar</dc:creator>
      <dc:date>2017-04-25T17:49:29Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Nat Configuration</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-nat-configuration/m-p/154464#M46</link>
      <description>&lt;P&gt;I was not able to get this to work without putting a source nat policy in and after I put that in internet access is available.&amp;nbsp;&lt;/P&gt;&lt;P&gt;nat-type ipv4;&lt;BR /&gt;from trust;&lt;BR /&gt;source any;&lt;BR /&gt;to INTERNET;&lt;BR /&gt;to-interface ethernet1/1 ;&lt;BR /&gt;destination any;&lt;BR /&gt;service any/any/any;&lt;BR /&gt;translate-to "src: ethernet1/1 x.x.x.x (dynamic-ip-and-port) (pool idx: 1)";&lt;/P&gt;</description>
      <pubDate>Thu, 27 Apr 2017 19:45:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/azure-nat-configuration/m-p/154464#M46</guid>
      <dc:creator>r24481</dc:creator>
      <dc:date>2017-04-27T19:45:30Z</dc:date>
    </item>
  </channel>
</rss>

