<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic communication of vlan interfaces not working in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/communication-of-vlan-interfaces-not-working/m-p/539554#M1170</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I have two firewalls connected over "L2 Line" from our ISP.&lt;/P&gt;
&lt;P&gt;We would like to use this line to route between our two sites instead of IPSec tunnel.&lt;BR /&gt;On this line I can use vlans from 1-100 for communication.&lt;/P&gt;
&lt;P&gt;On both firewalls I created L2 interface with tagged sub-interface from this range.&lt;/P&gt;
&lt;P&gt;Then I created vlan interface with IP address and same tag as the L2 sub-interface.&lt;/P&gt;
&lt;P&gt;L2 sub-interface and vlan interface are in the same vlan.&lt;/P&gt;
&lt;P&gt;On both firewalls vlan interface has Management profile set for this IP address range and ping allowed.&lt;/P&gt;
&lt;P&gt;No policy is blocking this traffic on both firewalls(confirmed by Traffic monitor)&lt;/P&gt;
&lt;P&gt;When I tried ping with selecting source IP to be the vlan interface and host the opposite vlan interface on the second firewall, ping is not working.&lt;/P&gt;
&lt;P&gt;Can you point me if I am missing something in this config or what else to check? I would like to be sure that I did all I can before I will go to ISP with assumption that maybe the L2 line is not working as expected.&lt;/P&gt;
&lt;P&gt;Thank you for help&lt;/P&gt;</description>
    <pubDate>Thu, 20 Apr 2023 15:02:49 GMT</pubDate>
    <dc:creator>AdamHP</dc:creator>
    <dc:date>2023-04-20T15:02:49Z</dc:date>
    <item>
      <title>communication of vlan interfaces not working</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/communication-of-vlan-interfaces-not-working/m-p/539554#M1170</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I have two firewalls connected over "L2 Line" from our ISP.&lt;/P&gt;
&lt;P&gt;We would like to use this line to route between our two sites instead of IPSec tunnel.&lt;BR /&gt;On this line I can use vlans from 1-100 for communication.&lt;/P&gt;
&lt;P&gt;On both firewalls I created L2 interface with tagged sub-interface from this range.&lt;/P&gt;
&lt;P&gt;Then I created vlan interface with IP address and same tag as the L2 sub-interface.&lt;/P&gt;
&lt;P&gt;L2 sub-interface and vlan interface are in the same vlan.&lt;/P&gt;
&lt;P&gt;On both firewalls vlan interface has Management profile set for this IP address range and ping allowed.&lt;/P&gt;
&lt;P&gt;No policy is blocking this traffic on both firewalls(confirmed by Traffic monitor)&lt;/P&gt;
&lt;P&gt;When I tried ping with selecting source IP to be the vlan interface and host the opposite vlan interface on the second firewall, ping is not working.&lt;/P&gt;
&lt;P&gt;Can you point me if I am missing something in this config or what else to check? I would like to be sure that I did all I can before I will go to ISP with assumption that maybe the L2 line is not working as expected.&lt;/P&gt;
&lt;P&gt;Thank you for help&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 15:02:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/communication-of-vlan-interfaces-not-working/m-p/539554#M1170</guid>
      <dc:creator>AdamHP</dc:creator>
      <dc:date>2023-04-20T15:02:49Z</dc:date>
    </item>
  </channel>
</rss>

