<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Global Protect Satellite over 2 ISP's in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/global-protect-satellite-over-2-isp-s/m-p/530450#M891</link>
    <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have multiple branches connecting to a data center via Global Protect satellite connections. This works perfectly fine. We've now started installing redundant Internet links but I'm experiening issues with the GP Satellite config. Obviously, when you configure the Satellite IPSec tunnel, you need to specify the interface from which you're generating the tunnel, so you can only specify one. How do you go about this when you have 2 ISP's/Links? Merely creating 2 GP IPSec tunnels, selecting the 2 interfaces for the 2 seperate ISP's and hoping traffic switches when the main ISP goes down doesn't work.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Main ISP advertises a default route and a secondary static default is set up to secondary ISP. Internet switches over fine but the second tunnel to the data center isn't kicking in.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;TIA&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 09 Feb 2023 09:23:09 GMT</pubDate>
    <dc:creator>rudiGQ</dc:creator>
    <dc:date>2023-02-09T09:23:09Z</dc:date>
    <item>
      <title>Global Protect Satellite over 2 ISP's</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/global-protect-satellite-over-2-isp-s/m-p/530450#M891</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have multiple branches connecting to a data center via Global Protect satellite connections. This works perfectly fine. We've now started installing redundant Internet links but I'm experiening issues with the GP Satellite config. Obviously, when you configure the Satellite IPSec tunnel, you need to specify the interface from which you're generating the tunnel, so you can only specify one. How do you go about this when you have 2 ISP's/Links? Merely creating 2 GP IPSec tunnels, selecting the 2 interfaces for the 2 seperate ISP's and hoping traffic switches when the main ISP goes down doesn't work.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Main ISP advertises a default route and a secondary static default is set up to secondary ISP. Internet switches over fine but the second tunnel to the data center isn't kicking in.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;TIA&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Feb 2023 09:23:09 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/global-protect-satellite-over-2-isp-s/m-p/530450#M891</guid>
      <dc:creator>rudiGQ</dc:creator>
      <dc:date>2023-02-09T09:23:09Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Satellite over 2 ISP's</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/global-protect-satellite-over-2-isp-s/m-p/551624#M1607</link>
      <description>&lt;P&gt;I'm interested in the same thing but can't find anything anywhere for this.&lt;BR /&gt;Multiple gateways, yes but not multiple ISPs/WAN interfaces for a satellite.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 17:05:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/global-protect-satellite-over-2-isp-s/m-p/551624#M1607</guid>
      <dc:creator>Dan_Morin</dc:creator>
      <dc:date>2023-07-28T17:05:51Z</dc:date>
    </item>
  </channel>
</rss>

