<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Allow traffic other than IPSec in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/allow-traffic-other-than-ipsec/m-p/518188#M107510</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/247068"&gt;@mike.07&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do you have specific public servers you would like the internet to access? Setting up access from the outside zone to your DMZ zone should not affect the tunnel you have between the two-sites.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 18 Oct 2022 02:55:26 GMT</pubDate>
    <dc:creator>JayGolf</dc:creator>
    <dc:date>2022-10-18T02:55:26Z</dc:date>
    <item>
      <title>Allow traffic other than IPSec</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/allow-traffic-other-than-ipsec/m-p/517951#M107460</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Site A&lt;/P&gt;
&lt;P&gt;Source Zone: test-DMZ&lt;/P&gt;
&lt;P&gt;Interface: ae 1 (172.16.1.1)&lt;/P&gt;
&lt;P&gt;Tunnel Interface is in internal-trust zone.&lt;/P&gt;
&lt;P&gt;Static route set to destination 10.10.10.1&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have an IPsec tunnel between 2 sites.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;However, i want to allow traffic from other sources to test-DMZ zone.&lt;/P&gt;
&lt;P&gt;How can i deploy policy that will allow me to communicate from test-DMZ to outside internet and vice versa without breaking the IPsec connection?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Oct 2022 14:09:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/allow-traffic-other-than-ipsec/m-p/517951#M107460</guid>
      <dc:creator>mike.07</dc:creator>
      <dc:date>2022-10-14T14:09:18Z</dc:date>
    </item>
    <item>
      <title>Re: Allow traffic other than IPSec</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/allow-traffic-other-than-ipsec/m-p/518188#M107510</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/247068"&gt;@mike.07&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do you have specific public servers you would like the internet to access? Setting up access from the outside zone to your DMZ zone should not affect the tunnel you have between the two-sites.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 18 Oct 2022 02:55:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/allow-traffic-other-than-ipsec/m-p/518188#M107510</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2022-10-18T02:55:26Z</dc:date>
    </item>
    <item>
      <title>Re: Allow traffic other than IPSec</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/allow-traffic-other-than-ipsec/m-p/518550#M107575</link>
      <description>&lt;P&gt;HI Jay,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Yes, i need to allow access to one specific server, problem is it is a FQDN which resolves to multiple IPs.&lt;/P&gt;
&lt;P&gt;Is there any way i can create Source NAT that would allow traffic to FQDN?&lt;/P&gt;</description>
      <pubDate>Thu, 20 Oct 2022 18:40:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/allow-traffic-other-than-ipsec/m-p/518550#M107575</guid>
      <dc:creator>mike.07</dc:creator>
      <dc:date>2022-10-20T18:40:25Z</dc:date>
    </item>
  </channel>
</rss>

