<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: AWS Totally Noob Question - Routing in VM-Series in the Public Cloud</title>
    <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/aws-totally-noob-question-routing/m-p/251089#M536</link>
    <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/9233"&gt;@glynn&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Absolute legend, that fixed it. Really don't know why I didn't think of grabbing the IP from the DHCP Client Info.&lt;/P&gt;</description>
    <pubDate>Sun, 24 Feb 2019 14:15:13 GMT</pubDate>
    <dc:creator>LukeBullimore</dc:creator>
    <dc:date>2019-02-24T14:15:13Z</dc:date>
    <item>
      <title>AWS Totally Noob Question - Routing</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/aws-totally-noob-question-routing/m-p/251074#M534</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've just deployed my first VM series firewall in the AWS Public Cloud. I've made the security groups, attached ENIs to Network Interfaces, I can get to the GUI and I can see my traffic coming into my untrust interface just fine.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;On that untrust interface, I'm hosting a GlobalProtect Portal but can't access it. The traffic shows no return bytes. If I look at the packet counters it's being dropped because of no route. My main question, what is the next hop of my default route supposed to be (in the PA VR) so the traffic can leave and go back to the VPC?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;With Azure, this was a little easier for me to understand because you'd just give it the .1 address in the same subnet to point it back to the Azure Fabric.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Again, very sorry for the noob question!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Luke.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 24 Feb 2019 12:32:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/aws-totally-noob-question-routing/m-p/251074#M534</guid>
      <dc:creator>LukeBullimore</dc:creator>
      <dc:date>2019-02-24T12:32:48Z</dc:date>
    </item>
    <item>
      <title>Re: AWS Totally Noob Question - Routing</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/aws-totally-noob-question-routing/m-p/251088#M535</link>
      <description>&lt;DIV&gt;Luke:&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;As with Azure, the first IP in the subnet (after the subnet address) is the VPC router in AWS. See&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;A href="https://docs.aws.amazon.com/vpc/latest/userguide/VPC_Subnets.html" target="_blank" rel="noopener"&gt;https://docs.aws.amazon.com/vpc/latest/userguide/VPC_Subnets.html&lt;/A&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;In particular, the bottom of the section titled “VPC and Subnet Sizing for IPv4” where it lists the reserved addresses in the subnet.&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;If you have the interface set to DHCP, you can click on “Dynamic-DHCP Client” for the &amp;nbsp;interface and see the gateway IP as well as a number of other items (DHCP options, DNS, etc).&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Regards,&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Patrick&lt;/DIV&gt;</description>
      <pubDate>Sun, 24 Feb 2019 13:46:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/aws-totally-noob-question-routing/m-p/251088#M535</guid>
      <dc:creator>glynn</dc:creator>
      <dc:date>2019-02-24T13:46:50Z</dc:date>
    </item>
    <item>
      <title>Re: AWS Totally Noob Question - Routing</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/aws-totally-noob-question-routing/m-p/251089#M536</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/9233"&gt;@glynn&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Absolute legend, that fixed it. Really don't know why I didn't think of grabbing the IP from the DHCP Client Info.&lt;/P&gt;</description>
      <pubDate>Sun, 24 Feb 2019 14:15:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/aws-totally-noob-question-routing/m-p/251089#M536</guid>
      <dc:creator>LukeBullimore</dc:creator>
      <dc:date>2019-02-24T14:15:13Z</dc:date>
    </item>
  </channel>
</rss>

