<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PA2020 Dynamic IPsec VPN in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/pa2020-dynamic-ipsec-vpn/m-p/14103#M10355</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since NAT is being performed on the upstream device, you will probably have to enable NAT-T, the option to do so is a checkbox "enable NAT traversal" under IKE gateway advanced options.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, for dynamic VPNs you have the ability to choose local/peer identification as IP/hostname/email address.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 01 May 2012 19:12:28 GMT</pubDate>
    <dc:creator>goku123</dc:creator>
    <dc:date>2012-05-01T19:12:28Z</dc:date>
    <item>
      <title>PA2020 Dynamic IPsec VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa2020-dynamic-ipsec-vpn/m-p/14102#M10354</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have PA 2020 and I want to configure IPsec VPN but the PA is connected to an ADSL Router and the Ouside IP address if PA firewall is private IP address.&amp;nbsp; I don't have a static Public Ip address on PA side.Could it be possible that I can configure PA as dyamic client IP peer.&amp;nbsp; so that only the PA firewall will initate the VPn connection.Please help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 24 Apr 2012 13:00:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa2020-dynamic-ipsec-vpn/m-p/14102#M10354</guid>
      <dc:creator>itsecll</dc:creator>
      <dc:date>2012-04-24T13:00:55Z</dc:date>
    </item>
    <item>
      <title>Re: PA2020 Dynamic IPsec VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa2020-dynamic-ipsec-vpn/m-p/14103#M10355</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since NAT is being performed on the upstream device, you will probably have to enable NAT-T, the option to do so is a checkbox "enable NAT traversal" under IKE gateway advanced options.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, for dynamic VPNs you have the ability to choose local/peer identification as IP/hostname/email address.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 May 2012 19:12:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa2020-dynamic-ipsec-vpn/m-p/14103#M10355</guid>
      <dc:creator>goku123</dc:creator>
      <dc:date>2012-05-01T19:12:28Z</dc:date>
    </item>
  </channel>
</rss>

