<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Can the peer identification be a local ip while the ipsec tunnel is between 2 public IPs? in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/can-the-peer-identification-be-a-local-ip-while-the-ipsec-tunnel/m-p/444953#M100413</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In this tunnel with a FortiGate, I see the FGT sends its peer id as a local IP and not as the IP which takes part in the tunnel ..&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So I just modified the peer identification for the local PA to match the FGT private IP peer IP and the tunnel has come up.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AllwynMascarenhas_2-1635844200076.png" style="width: 552px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/37443iE748275E410F8E15/image-dimensions/552x185/is-moderation-mode/true?v=v2" width="552" height="185" role="button" title="AllwynMascarenhas_2-1635844200076.png" alt="AllwynMascarenhas_2-1635844200076.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AllwynMascarenhas_1-1635844111916.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/37442iE715360EDAC49DF4/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="AllwynMascarenhas_1-1635844111916.png" alt="AllwynMascarenhas_1-1635844111916.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 02 Nov 2021 09:10:14 GMT</pubDate>
    <dc:creator>AllwynMascarenhas</dc:creator>
    <dc:date>2021-11-02T09:10:14Z</dc:date>
    <item>
      <title>Can the peer identification be a local ip while the ipsec tunnel is between 2 public IPs?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/can-the-peer-identification-be-a-local-ip-while-the-ipsec-tunnel/m-p/444953#M100413</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In this tunnel with a FortiGate, I see the FGT sends its peer id as a local IP and not as the IP which takes part in the tunnel ..&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So I just modified the peer identification for the local PA to match the FGT private IP peer IP and the tunnel has come up.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AllwynMascarenhas_2-1635844200076.png" style="width: 552px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/37443iE748275E410F8E15/image-dimensions/552x185/is-moderation-mode/true?v=v2" width="552" height="185" role="button" title="AllwynMascarenhas_2-1635844200076.png" alt="AllwynMascarenhas_2-1635844200076.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AllwynMascarenhas_1-1635844111916.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/37442iE715360EDAC49DF4/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="AllwynMascarenhas_1-1635844111916.png" alt="AllwynMascarenhas_1-1635844111916.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Nov 2021 09:10:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/can-the-peer-identification-be-a-local-ip-while-the-ipsec-tunnel/m-p/444953#M100413</guid>
      <dc:creator>AllwynMascarenhas</dc:creator>
      <dc:date>2021-11-02T09:10:14Z</dc:date>
    </item>
    <item>
      <title>Re: Can the peer identification be a local ip while the ipsec tunnel is between 2 public IPs?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/can-the-peer-identification-be-a-local-ip-while-the-ipsec-tunnel/m-p/445099#M100425</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/73984"&gt;@AllwynMascarenhas&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;The Local ID and the Peer ID on a tunnel just need to match when received, it doesn't actually matter at all what they're set to. If the Fortigate is sending a private ID that's perfectly fine as long as that's what the firewall is expecting to receive.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Nov 2021 23:59:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/can-the-peer-identification-be-a-local-ip-while-the-ipsec-tunnel/m-p/445099#M100425</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2021-11-02T23:59:21Z</dc:date>
    </item>
  </channel>
</rss>

