<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Palo Alto Site to Site VPN ipsec tunnel up but unable to ping Source to destination in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-site-to-site-vpn-ipsec-tunnel-up-but-unable-to-ping/m-p/1253916#M6913</link>
    <description>&lt;P&gt;Dear Team,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When I am doing implement Site to Site VPN&amp;nbsp; ipsec tunnel then tunnel status is down &amp;amp; Ike gateways is down after&amp;nbsp;test commands manually trigger negotiation, then all up. But still source to destination unable to ping.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Already on virtual router point to tunnel interface for all traffic on both firewall. On security policies allow both zone on both firewall but still same. Allow ICMP on tunnel interface &amp;amp; other physical interface. Please help what should i do next.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;All configuration are attached for your reference.&lt;/P&gt;</description>
    <pubDate>Wed, 13 May 2026 09:35:32 GMT</pubDate>
    <dc:creator>surya_sapui</dc:creator>
    <dc:date>2026-05-13T09:35:32Z</dc:date>
    <item>
      <title>Palo Alto Site to Site VPN ipsec tunnel up but unable to ping Source to destination</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-site-to-site-vpn-ipsec-tunnel-up-but-unable-to-ping/m-p/1253916#M6913</link>
      <description>&lt;P&gt;Dear Team,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When I am doing implement Site to Site VPN&amp;nbsp; ipsec tunnel then tunnel status is down &amp;amp; Ike gateways is down after&amp;nbsp;test commands manually trigger negotiation, then all up. But still source to destination unable to ping.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Already on virtual router point to tunnel interface for all traffic on both firewall. On security policies allow both zone on both firewall but still same. Allow ICMP on tunnel interface &amp;amp; other physical interface. Please help what should i do next.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;All configuration are attached for your reference.&lt;/P&gt;</description>
      <pubDate>Wed, 13 May 2026 09:35:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-site-to-site-vpn-ipsec-tunnel-up-but-unable-to-ping/m-p/1253916#M6913</guid>
      <dc:creator>surya_sapui</dc:creator>
      <dc:date>2026-05-13T09:35:32Z</dc:date>
    </item>
  </channel>
</rss>

