<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: site to site VPN on  TP-link --- PALO ALTO ---- AWS in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/site-to-site-vpn-on-tp-link-palo-alto-aws/m-p/467133#M102756</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/194759"&gt;@SamuelCardoz&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In order to achieve your goal, you need to do all the required configuration at both Palo Alto as well as AWS end to allow communication between&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;STORE router/POS1&amp;nbsp;and AWS. Only adding route at Palo Alto end won't help. You can verify traffic logs on palo alto side to see what's going on and decide further actions.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;I will recommend&amp;nbsp;you to verify below configurations-&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Security Policy&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;NAT if any&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Encryption domains at both sides&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Routes at both sides.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 21 Feb 2022 09:17:54 GMT</pubDate>
    <dc:creator>SutareMayur</dc:creator>
    <dc:date>2022-02-21T09:17:54Z</dc:date>
    <item>
      <title>site to site VPN on  TP-link --- PALO ALTO ---- AWS</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/site-to-site-vpn-on-tp-link-palo-alto-aws/m-p/467113#M102754</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="IPSEC S2S store to HO to AWSrev1 .jpg" style="width: 962px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/39222i82C43B30C7EFF28A/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="IPSEC S2S store to HO to AWSrev1 .jpg" alt="IPSEC S2S store to HO to AWSrev1 .jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As of now STORE router/POS1 able to reach the head office(PALO ALTO) via site to site VPN and HeadOffice(PAN) to AWS also working via site to site VPN. But our main goal is that POS1/Store able to reach the AWS network. As of the momment POS1 not able to reach the AWS networks. I already tried to add a route on the PAN from Store network going to AWS tunnel but still not working.&lt;BR /&gt;Any idea on how i can make it working.&amp;nbsp; Is there any one from the community have this kind of setup.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Thanks&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Feb 2022 08:44:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/site-to-site-vpn-on-tp-link-palo-alto-aws/m-p/467113#M102754</guid>
      <dc:creator>SamuelCardoz</dc:creator>
      <dc:date>2022-02-21T08:44:57Z</dc:date>
    </item>
    <item>
      <title>Re: site to site VPN on  TP-link --- PALO ALTO ---- AWS</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/site-to-site-vpn-on-tp-link-palo-alto-aws/m-p/467133#M102756</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/194759"&gt;@SamuelCardoz&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In order to achieve your goal, you need to do all the required configuration at both Palo Alto as well as AWS end to allow communication between&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;STORE router/POS1&amp;nbsp;and AWS. Only adding route at Palo Alto end won't help. You can verify traffic logs on palo alto side to see what's going on and decide further actions.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;I will recommend&amp;nbsp;you to verify below configurations-&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Security Policy&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;NAT if any&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Encryption domains at both sides&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Routes at both sides.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Feb 2022 09:17:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/site-to-site-vpn-on-tp-link-palo-alto-aws/m-p/467133#M102756</guid>
      <dc:creator>SutareMayur</dc:creator>
      <dc:date>2022-02-21T09:17:54Z</dc:date>
    </item>
  </channel>
</rss>

