<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Prisma SD-WAN initial deployment - LAN port in Prisma SD-WAN Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/prisma-sd-wan-discussions/prisma-sd-wan-initial-deployment-lan-port/m-p/584975#M173</link>
    <description>&lt;P&gt;Hello All,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Looking for some feedback on how to best configure our ION devices.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have setup HA ION devices with redundant Internet and Private circuits. The issue I keep running into is the LAN port configuration doesn't seem right.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I setup a test machine and set a default route to the LAN port of the ION device so traffic passes through the box. Initially I had a default gateway on the LAN interface, but this cause traffic to go from LAN port to Controller port and out the current edge infrastructure. So, I removed the gateway and traffic was hitting the correct path policies but return traffic didn't know where to go.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So, I added a static route with next hop IP - but the traffic again hit the controller port on the way back. Switched to a next hop LAN interface, but then the traffic doesn't know where to go...&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What am I doing wrong here?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also, should the LAN interface on the HA IONs have the same IP addresses? I'm seeing conflicting documentation regarding this.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 25 Apr 2024 19:28:53 GMT</pubDate>
    <dc:creator>gianlucabastia91</dc:creator>
    <dc:date>2024-04-25T19:28:53Z</dc:date>
    <item>
      <title>Prisma SD-WAN initial deployment - LAN port</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-sd-wan-discussions/prisma-sd-wan-initial-deployment-lan-port/m-p/584975#M173</link>
      <description>&lt;P&gt;Hello All,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Looking for some feedback on how to best configure our ION devices.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have setup HA ION devices with redundant Internet and Private circuits. The issue I keep running into is the LAN port configuration doesn't seem right.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I setup a test machine and set a default route to the LAN port of the ION device so traffic passes through the box. Initially I had a default gateway on the LAN interface, but this cause traffic to go from LAN port to Controller port and out the current edge infrastructure. So, I removed the gateway and traffic was hitting the correct path policies but return traffic didn't know where to go.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So, I added a static route with next hop IP - but the traffic again hit the controller port on the way back. Switched to a next hop LAN interface, but then the traffic doesn't know where to go...&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What am I doing wrong here?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also, should the LAN interface on the HA IONs have the same IP addresses? I'm seeing conflicting documentation regarding this.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 25 Apr 2024 19:28:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-sd-wan-discussions/prisma-sd-wan-initial-deployment-lan-port/m-p/584975#M173</guid>
      <dc:creator>gianlucabastia91</dc:creator>
      <dc:date>2024-04-25T19:28:53Z</dc:date>
    </item>
    <item>
      <title>Re: Prisma SD-WAN initial deployment - LAN port</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-sd-wan-discussions/prisma-sd-wan-initial-deployment-lan-port/m-p/585248#M174</link>
      <description>&lt;P&gt;&lt;SPAN&gt;What ION devices model do you have?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;It will be better if you could share simple diagram for your scenario for better understanding.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;LAN interfaces on both HA IONs should have the same IP addresses.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 29 Apr 2024 19:42:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-sd-wan-discussions/prisma-sd-wan-initial-deployment-lan-port/m-p/585248#M174</guid>
      <dc:creator>MALjaaidi</dc:creator>
      <dc:date>2024-04-29T19:42:40Z</dc:date>
    </item>
    <item>
      <title>Re: Prisma SD-WAN initial deployment - LAN port</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-sd-wan-discussions/prisma-sd-wan-initial-deployment-lan-port/m-p/590624#M180</link>
      <description>&lt;P&gt;Firmware version here plays a very important role here. Palo SDWAN solution at 6.3.x level has simplified the design a bit. As suggested a simple diagram will yield a better discussion&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jun 2024 15:12:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-sd-wan-discussions/prisma-sd-wan-initial-deployment-lan-port/m-p/590624#M180</guid>
      <dc:creator>Junedshaikh</dc:creator>
      <dc:date>2024-06-27T15:12:03Z</dc:date>
    </item>
  </channel>
</rss>

