<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: On PA VM unable to change service route  configuration to select another interface for example e in VM-Series in the Public Cloud</title>
    <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/on-pa-vm-unable-to-change-service-route-configuration-to-select/m-p/284655#M660</link>
    <description>&lt;P&gt;You need to assign a static IP address to the Interface before it can be used as a service route.&amp;nbsp; Just ensure you use the same IP as what is assigned by the cloud provider.&lt;/P&gt;</description>
    <pubDate>Thu, 22 Aug 2019 17:17:06 GMT</pubDate>
    <dc:creator>jmeurer</dc:creator>
    <dc:date>2019-08-22T17:17:06Z</dc:date>
    <item>
      <title>On PA VM unable to change service route  configuration to select another interface for example eth1</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/on-pa-vm-unable-to-change-service-route-configuration-to-select/m-p/284647#M659</link>
      <description>&lt;P&gt;On PA VM unable to change service route configuration to select another interface for example eth1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;VM 8.1.6-H2&lt;/P&gt;</description>
      <pubDate>Thu, 22 Aug 2019 17:10:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/on-pa-vm-unable-to-change-service-route-configuration-to-select/m-p/284647#M659</guid>
      <dc:creator>fatboy1607</dc:creator>
      <dc:date>2019-08-22T17:10:17Z</dc:date>
    </item>
    <item>
      <title>Re: On PA VM unable to change service route  configuration to select another interface for example e</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/on-pa-vm-unable-to-change-service-route-configuration-to-select/m-p/284655#M660</link>
      <description>&lt;P&gt;You need to assign a static IP address to the Interface before it can be used as a service route.&amp;nbsp; Just ensure you use the same IP as what is assigned by the cloud provider.&lt;/P&gt;</description>
      <pubDate>Thu, 22 Aug 2019 17:17:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/on-pa-vm-unable-to-change-service-route-configuration-to-select/m-p/284655#M660</guid>
      <dc:creator>jmeurer</dc:creator>
      <dc:date>2019-08-22T17:17:06Z</dc:date>
    </item>
    <item>
      <title>Re: On PA VM unable to change service route  configuration to select another interface for example e</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/on-pa-vm-unable-to-change-service-route-configuration-to-select/m-p/284656#M661</link>
      <description>&lt;P&gt;Problem is I cannot change it to static as it needs to stop VM to do that ? would it be possibel to change it to static without rebooting VM ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Secondly I dont understand why my firewall is using public ip to communicate with DC even though I have private ip assigned on management interface&lt;/P&gt;</description>
      <pubDate>Thu, 22 Aug 2019 17:30:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/on-pa-vm-unable-to-change-service-route-configuration-to-select/m-p/284656#M661</guid>
      <dc:creator>fatboy1607</dc:creator>
      <dc:date>2019-08-22T17:30:12Z</dc:date>
    </item>
    <item>
      <title>Re: On PA VM unable to change service route  configuration to select another interface for example e</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/on-pa-vm-unable-to-change-service-route-configuration-to-select/m-p/284830#M662</link>
      <description>&lt;P&gt;You do not need to reboot to assign a static in the Firewall GUI, you leave the assignment as is on the EC2 side.&amp;nbsp; You just need to assign that IP in the firewall GUI as a static.&amp;nbsp; I cannot guarantee that it will not be traffic impacting though as it works through the DHCP release during the commit.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As for your second question, that comes down to how your VPC routing is configured.&amp;nbsp; Traffic leaves the Firewall Mgmt interface on its private IP, if VPC routing sends the traffic to an IGW or NatGW, the fabric will then SNAT to the assigned EIP.&amp;nbsp; If you have a route pointing to on prem via a DX or VGW, then the traffic should remain private.&lt;/P&gt;</description>
      <pubDate>Fri, 23 Aug 2019 17:06:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/on-pa-vm-unable-to-change-service-route-configuration-to-select/m-p/284830#M662</guid>
      <dc:creator>jmeurer</dc:creator>
      <dc:date>2019-08-23T17:06:32Z</dc:date>
    </item>
  </channel>
</rss>

