<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IPsec tunnel PA-Forcepoint Up but no traffic passing through in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/ipsec-tunnel-pa-forcepoint-up-but-no-traffic-passing-through/m-p/582132#M2920</link>
    <description>&lt;P&gt;Hi ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'm configuring an ipsec tunnel between PA-5410&amp;nbsp; (route based )and Forcepoint Firewall (policy based), and showing up but when i try to ping from LAN-to-LAN i could not recieve any trafic or logs . from system log,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;""PSec key deleted. Deleted SA: 172........[500]-.............peer[500] SPI:0xA83E98C1/0x3D6DB38C.'""&amp;nbsp; and ( eventid eq 'ipsec-key-delete' )&lt;/P&gt;
&lt;P&gt;Need to resolve this matter.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;regards&lt;/P&gt;</description>
    <pubDate>Fri, 29 Mar 2024 11:11:34 GMT</pubDate>
    <dc:creator>Bouthaina</dc:creator>
    <dc:date>2024-03-29T11:11:34Z</dc:date>
    <item>
      <title>IPsec tunnel PA-Forcepoint Up but no traffic passing through</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/ipsec-tunnel-pa-forcepoint-up-but-no-traffic-passing-through/m-p/582132#M2920</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'm configuring an ipsec tunnel between PA-5410&amp;nbsp; (route based )and Forcepoint Firewall (policy based), and showing up but when i try to ping from LAN-to-LAN i could not recieve any trafic or logs . from system log,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;""PSec key deleted. Deleted SA: 172........[500]-.............peer[500] SPI:0xA83E98C1/0x3D6DB38C.'""&amp;nbsp; and ( eventid eq 'ipsec-key-delete' )&lt;/P&gt;
&lt;P&gt;Need to resolve this matter.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;regards&lt;/P&gt;</description>
      <pubDate>Fri, 29 Mar 2024 11:11:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/ipsec-tunnel-pa-forcepoint-up-but-no-traffic-passing-through/m-p/582132#M2920</guid>
      <dc:creator>Bouthaina</dc:creator>
      <dc:date>2024-03-29T11:11:34Z</dc:date>
    </item>
    <item>
      <title>Re: IPsec tunnel PA-Forcepoint Up but no traffic passing through</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/ipsec-tunnel-pa-forcepoint-up-but-no-traffic-passing-through/m-p/582647#M2941</link>
      <description>&lt;P&gt;Hi Bouthaina,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So both your Phase 1 and 2 are up?&lt;/P&gt;
&lt;P&gt;Phase1&lt;/P&gt;
&lt;P&gt;show vpn ike-sa gateway&lt;/P&gt;
&lt;P&gt;Phase2&lt;/P&gt;
&lt;P&gt;show vpn ipsec-sa&lt;/P&gt;
&lt;P&gt;Can you find anything in our ikemgr.log?&amp;nbsp; less mp-log ikemgr.log&lt;/P&gt;
&lt;P&gt;Can you post also output of show vpn flow.&lt;/P&gt;
&lt;P&gt;Is any of you upstream devices using NAT?&amp;nbsp; Could be you need to enable nat-traversal .&lt;/P&gt;
&lt;P&gt;Are your global counters revealing anything?&lt;/P&gt;
&lt;P&gt;Are u using proxy-id's , you must be using them since it is policy based VPN.&lt;/P&gt;</description>
      <pubDate>Thu, 04 Apr 2024 13:39:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/ipsec-tunnel-pa-forcepoint-up-but-no-traffic-passing-through/m-p/582647#M2941</guid>
      <dc:creator>zGomez</dc:creator>
      <dc:date>2024-04-04T13:39:51Z</dc:date>
    </item>
  </channel>
</rss>

