<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic communication between 2 segments in 2 zones diferents in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/communication-between-2-segments-in-2-zones-diferents/m-p/534914#M110050</link>
    <description>&lt;P&gt;I have a problem to be able to communicate internally my different segments which are declared in two different interfaces and in different zones.&lt;/P&gt;
&lt;P&gt;I dont use vlan's&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Eth 1/6= WAN 141.201.78.43/27&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Eth 1/8= LAN&lt;BR /&gt;10.144.3.19/26&lt;BR /&gt;10.144.3.64/26&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Eth 1/4= LAN2&lt;BR /&gt;192.168.200.254/24&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Interfaces&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Fipaterm_1-1679082061379.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/48868i5923ED2D40698E9B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Fipaterm_1-1679082061379.png" alt="Fipaterm_1-1679082061379.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Routes static&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Fipaterm_0-1679081978740.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/48867i149B95B060F4BFFC/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Fipaterm_0-1679081978740.png" alt="Fipaterm_0-1679081978740.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;policies&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Fipaterm_2-1679082177979.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/48869iAD3E9E10F4587D34/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Fipaterm_2-1679082177979.png" alt="Fipaterm_2-1679082177979.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I dont use vlan's&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 17 Mar 2023 19:43:37 GMT</pubDate>
    <dc:creator>Fipaterm</dc:creator>
    <dc:date>2023-03-17T19:43:37Z</dc:date>
    <item>
      <title>communication between 2 segments in 2 zones diferents</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/communication-between-2-segments-in-2-zones-diferents/m-p/534914#M110050</link>
      <description>&lt;P&gt;I have a problem to be able to communicate internally my different segments which are declared in two different interfaces and in different zones.&lt;/P&gt;
&lt;P&gt;I dont use vlan's&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Eth 1/6= WAN 141.201.78.43/27&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Eth 1/8= LAN&lt;BR /&gt;10.144.3.19/26&lt;BR /&gt;10.144.3.64/26&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Eth 1/4= LAN2&lt;BR /&gt;192.168.200.254/24&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Interfaces&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Fipaterm_1-1679082061379.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/48868i5923ED2D40698E9B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Fipaterm_1-1679082061379.png" alt="Fipaterm_1-1679082061379.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Routes static&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Fipaterm_0-1679081978740.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/48867i149B95B060F4BFFC/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Fipaterm_0-1679081978740.png" alt="Fipaterm_0-1679081978740.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;policies&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Fipaterm_2-1679082177979.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/48869iAD3E9E10F4587D34/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Fipaterm_2-1679082177979.png" alt="Fipaterm_2-1679082177979.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I dont use vlan's&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 17 Mar 2023 19:43:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/communication-between-2-segments-in-2-zones-diferents/m-p/534914#M110050</guid>
      <dc:creator>Fipaterm</dc:creator>
      <dc:date>2023-03-17T19:43:37Z</dc:date>
    </item>
    <item>
      <title>Re: communication between 2 segments in 2 zones diferents</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/communication-between-2-segments-in-2-zones-diferents/m-p/534929#M110051</link>
      <description>&lt;P&gt;By default, Zone to Zone communication is blocked by the interzone-default Security Policy. So if you want to allow LAN to talk with nueva_LAN you need to create a security rule to allow the interzone traffic. I.e.&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Name = Allow LAN to nueva_LAN&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Src.Zone = LAN&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Src.Address = 10.0.0.0/8&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Dst.Zone = nueva_LAN&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Dst.Address = 192.168.200.254/24&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Action = Allow&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Name = Allow nueva_LAN to LAN&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Src.Zone = nueva_LAN&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Src.Address = 192.168.200.254/24&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Dst.Zone = LAN&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Dst.Address = 10.0.0.0/8&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Action = Allow&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Update the above Security Policies to allow what you want based on your internal security requirements. You will also want to modify your Security and NAT Policies for Internet access from the new VLAN:&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Name = Allow traffic to Internet&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Src.Zone = LAN, nueva_LAN&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Src.Address = 10.0.0.0/8, 192.168.200.254/24&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Dst.Zone = INTERNET&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Dst.Address = any&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;Action = Allow&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You do not need to add anything to the routing table unless you have created multiple routing tables and put the nueva_LAN interface in a different table.&lt;/P&gt;</description>
      <pubDate>Fri, 17 Mar 2023 23:52:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/communication-between-2-segments-in-2-zones-diferents/m-p/534929#M110051</guid>
      <dc:creator>Adrian_Jensen</dc:creator>
      <dc:date>2023-03-17T23:52:58Z</dc:date>
    </item>
    <item>
      <title>Re: communication between 2 segments in 2 zones diferents</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/communication-between-2-segments-in-2-zones-diferents/m-p/534930#M110052</link>
      <description>&lt;P&gt;very thanks&lt;/P&gt;</description>
      <pubDate>Sat, 18 Mar 2023 00:00:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/communication-between-2-segments-in-2-zones-diferents/m-p/534930#M110052</guid>
      <dc:creator>Fipaterm</dc:creator>
      <dc:date>2023-03-18T00:00:08Z</dc:date>
    </item>
  </channel>
</rss>

