<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Policy Based Forwarding in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding/m-p/15018#M11012</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am looking for this exact configuration. Were you able to get it working as expected using PBF? &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 15 May 2013 08:09:28 GMT</pubDate>
    <dc:creator>rob.burgoyne</dc:creator>
    <dc:date>2013-05-15T08:09:28Z</dc:date>
    <item>
      <title>Policy Based Forwarding</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding/m-p/15016#M11010</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We have a branch in a different state to which we have a DS3 MPLS circuit. We and our&amp;nbsp; branch office have there own ISP connections for Internet access. I would like to have redundancy build between both of our companies through IPSec VPN tunnel in the event of DS3 goes down. So my question is can I use&amp;nbsp; PBF's to achieve the redundancy. Is PBF capable of monitoring the next hop link and failover to the next PBF's.&amp;nbsp; Can any one suggest me which path should I take to achieve the auto failover of my DS3 to IPsec VPN tunnel.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 28 Aug 2011 15:09:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding/m-p/15016#M11010</guid>
      <dc:creator>LCMember4417</dc:creator>
      <dc:date>2011-08-28T15:09:40Z</dc:date>
    </item>
    <item>
      <title>Re: Policy Based Forwarding</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding/m-p/15017#M11011</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;IF the IPSEC tunnel is the backup and the MPLS link is the preferred route, then do the folloing.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1) Set the routing table to choose the tunnel as the best route.&lt;/P&gt;&lt;P&gt;2) Configure a PBF rule that sends traffic out the MPLS link&lt;/P&gt;&lt;P&gt;-- The PBF needs to monitor the next hop or a device along the MPLS path&lt;/P&gt;&lt;P&gt;-- You can not use PBF to redirect traffic that originates/terminates on the Paloalto&lt;/P&gt;&lt;P&gt;For example:&lt;/P&gt;&lt;P&gt;If your IPSEC tunnel uses eth1 as an endpoint&amp;nbsp; and&amp;nbsp; exits eth1 to build that tunnel, PBF can not be useto redirect the eth1 IPSEC out eth2 instead.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Steve Krall&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Dec 2011 17:33:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding/m-p/15017#M11011</guid>
      <dc:creator>skrall</dc:creator>
      <dc:date>2011-12-08T17:33:07Z</dc:date>
    </item>
    <item>
      <title>Re: Policy Based Forwarding</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding/m-p/15018#M11012</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am looking for this exact configuration. Were you able to get it working as expected using PBF? &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 15 May 2013 08:09:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding/m-p/15018#M11012</guid>
      <dc:creator>rob.burgoyne</dc:creator>
      <dc:date>2013-05-15T08:09:28Z</dc:date>
    </item>
  </channel>
</rss>

