<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic GP disconnects frequently in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/gp-disconnects-frequently/m-p/549328#M4207</link>
    <description>&lt;P&gt;Hi All,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Needing your assistance. Our GP users on our VPN BC-OKI will get disconnected at least once or twice the whole day. I check the ISP interfaces and HA and IP Sec tunnels all are up. Currently i'm connected on BC OKI now and I'm a newbie on Palo alto.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The setup of our net work is our Okinawa site has 2 ISP's and it has a IP SEC tunnels going to YOK site. All the servers and apps are accesible through Yokohama site because it has SDWAN while our OKI Doesn't have. So I check the HA,IP SEC , ISP interfaces all are up. I check the logs-system on our OKI firewall and I see this message please see attached screen shot. the DENDC DNS is our backup DATA center while the SAC DNS is our main data center. On our OKI firewall the Secondary NTP server address is the DNS address of our SAC data center. The primary tunnel on YOK going to OKI is still down because the Primary ISP still has issues. While the secondary tunnel is up. I check the error logs on Global protect and I see a lot of DNS errors. Seems that there is a problem on loadsharing when traffic traverse to SEC IP SEC tunnel.&amp;nbsp; Will this get fix if the Primary ISP is up as well as the primary Tunnel?&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="weezy_1-1689301048965.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/51595i95ACA11689122D8B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="weezy_1-1689301048965.png" alt="weezy_1-1689301048965.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="weezy_0-1689300596074.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/51594i4573033E4BC75FA1/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="weezy_0-1689300596074.png" alt="weezy_0-1689300596074.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 14 Jul 2023 02:20:03 GMT</pubDate>
    <dc:creator>weezy</dc:creator>
    <dc:date>2023-07-14T02:20:03Z</dc:date>
    <item>
      <title>GP disconnects frequently</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/gp-disconnects-frequently/m-p/549328#M4207</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Needing your assistance. Our GP users on our VPN BC-OKI will get disconnected at least once or twice the whole day. I check the ISP interfaces and HA and IP Sec tunnels all are up. Currently i'm connected on BC OKI now and I'm a newbie on Palo alto.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The setup of our net work is our Okinawa site has 2 ISP's and it has a IP SEC tunnels going to YOK site. All the servers and apps are accesible through Yokohama site because it has SDWAN while our OKI Doesn't have. So I check the HA,IP SEC , ISP interfaces all are up. I check the logs-system on our OKI firewall and I see this message please see attached screen shot. the DENDC DNS is our backup DATA center while the SAC DNS is our main data center. On our OKI firewall the Secondary NTP server address is the DNS address of our SAC data center. The primary tunnel on YOK going to OKI is still down because the Primary ISP still has issues. While the secondary tunnel is up. I check the error logs on Global protect and I see a lot of DNS errors. Seems that there is a problem on loadsharing when traffic traverse to SEC IP SEC tunnel.&amp;nbsp; Will this get fix if the Primary ISP is up as well as the primary Tunnel?&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="weezy_1-1689301048965.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/51595i95ACA11689122D8B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="weezy_1-1689301048965.png" alt="weezy_1-1689301048965.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="weezy_0-1689300596074.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/51594i4573033E4BC75FA1/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="weezy_0-1689300596074.png" alt="weezy_0-1689300596074.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Jul 2023 02:20:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/gp-disconnects-frequently/m-p/549328#M4207</guid>
      <dc:creator>weezy</dc:creator>
      <dc:date>2023-07-14T02:20:03Z</dc:date>
    </item>
  </channel>
</rss>

