<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Dual VPNs with Dual ISPs with a Single Firewall to a Remote Site in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/dual-vpns-with-dual-isps-with-a-single-firewall-to-a-remote-site/m-p/582714#M116517</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;All the UP status means is that the port sees a connection. I would recommend the monitor IP be at the remote site on the inside of the firewall, like its port. This way the port can still be up but the path will be down and should fail over properly.&lt;/P&gt;
&lt;P&gt;Hope this helps.&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;</description>
    <pubDate>Thu, 04 Apr 2024 21:06:10 GMT</pubDate>
    <dc:creator>OtakarKlier</dc:creator>
    <dc:date>2024-04-04T21:06:10Z</dc:date>
    <item>
      <title>Dual VPNs with Dual ISPs with a Single Firewall to a Remote Site</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dual-vpns-with-dual-isps-with-a-single-firewall-to-a-remote-site/m-p/582485#M116495</link>
      <description>&lt;P&gt;Dual isp with tunnels have been configured. primary isp is on eth0/1 and secondary is on eth0/5.&lt;/P&gt;
&lt;P&gt;Tunnel monitoring has been configured on primary tunnel. when primary isp goes down tunnel traffic will be shifted to secondary isp tunnel.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Physically i have tested by removing primary isp at firewall, automatically all traffic get shifted to secondary tunnel and secondary isp ethernet as expected.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the concern what has been observed that during live isp failover. when primary isp goes down, still i have observed primary ethernet at firewall level showing status as up even enabled path monitoring . and tunnel shifting to secondary tunnel. and in the route forwarding table still i can see the gateway was reaching at primary isp only.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;need the support the concern.&lt;/P&gt;</description>
      <pubDate>Wed, 03 Apr 2024 10:28:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dual-vpns-with-dual-isps-with-a-single-firewall-to-a-remote-site/m-p/582485#M116495</guid>
      <dc:creator>S.ChakkiralaVenkata</dc:creator>
      <dc:date>2024-04-03T10:28:18Z</dc:date>
    </item>
    <item>
      <title>Re: Dual VPNs with Dual ISPs with a Single Firewall to a Remote Site</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dual-vpns-with-dual-isps-with-a-single-firewall-to-a-remote-site/m-p/582714#M116517</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;All the UP status means is that the port sees a connection. I would recommend the monitor IP be at the remote site on the inside of the firewall, like its port. This way the port can still be up but the path will be down and should fail over properly.&lt;/P&gt;
&lt;P&gt;Hope this helps.&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Thu, 04 Apr 2024 21:06:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dual-vpns-with-dual-isps-with-a-single-firewall-to-a-remote-site/m-p/582714#M116517</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2024-04-04T21:06:10Z</dc:date>
    </item>
  </channel>
</rss>

