<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IPSec IKEv2 multiple events per second in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-ikev2-multiple-events-per-second/m-p/586016#M116957</link>
    <description>&lt;P&gt;We didn't set up proxy IDs but I will add and check.&lt;/P&gt;
&lt;P&gt;Thank you&lt;/P&gt;</description>
    <pubDate>Tue, 07 May 2024 14:50:20 GMT</pubDate>
    <dc:creator>MostafaSafari</dc:creator>
    <dc:date>2024-05-07T14:50:20Z</dc:date>
    <item>
      <title>IPSec IKEv2 multiple events per second</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-ikev2-multiple-events-per-second/m-p/586006#M116955</link>
      <description>&lt;P&gt;Hello everyone,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I see many events per second for a site-to-site IPSec tunnel and am unsure if it's normal. The below events have a severity level of informational but go over and over in a second.&lt;/P&gt;
&lt;P&gt;My question is, is it normal? if not, where should I look to fix it? What can be wrong?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ikev2-nego-child-start&lt;BR /&gt;ikev2-nego-ike-start&lt;BR /&gt;ipsec-key-delete&lt;BR /&gt;ikev2-recv-p2-delete&lt;BR /&gt;ipsec-key-delete&lt;BR /&gt;ikev2-send-p2-delete&lt;BR /&gt;ikev2-nego-ike-succ&lt;BR /&gt;ikev2-nego-child-succ&lt;BR /&gt;ipsec-key-install&lt;BR /&gt;ikev2-nego-child-start&lt;BR /&gt;ikev2-nego-ike-start&lt;BR /&gt;ikev2-recv-p2-delete&lt;BR /&gt;ipsec-key-delete&lt;BR /&gt;ikev2-send-p2-delete&lt;BR /&gt;ikev2-recv-p1-delete&lt;BR /&gt;ikev2-nego-child-succ&lt;BR /&gt;ipsec-key-install&lt;BR /&gt;ikev2-nego-child-start&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 13:46:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-ikev2-multiple-events-per-second/m-p/586006#M116955</guid>
      <dc:creator>MostafaSafari</dc:creator>
      <dc:date>2024-05-07T13:46:13Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec IKEv2 multiple events per second</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-ikev2-multiple-events-per-second/m-p/586014#M116956</link>
      <description>&lt;P&gt;It is not normal.&lt;/P&gt;
&lt;P&gt;It usually happens if proxy-id's don't match with peer side&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 14:44:16 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-ikev2-multiple-events-per-second/m-p/586014#M116956</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2024-05-07T14:44:16Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec IKEv2 multiple events per second</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-ikev2-multiple-events-per-second/m-p/586016#M116957</link>
      <description>&lt;P&gt;We didn't set up proxy IDs but I will add and check.&lt;/P&gt;
&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 14:50:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-ikev2-multiple-events-per-second/m-p/586016#M116957</guid>
      <dc:creator>MostafaSafari</dc:creator>
      <dc:date>2024-05-07T14:50:20Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec IKEv2 multiple events per second</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-ikev2-multiple-events-per-second/m-p/586017#M116958</link>
      <description>&lt;P&gt;If you did not set up proxy id's then Palo sends 0.0.0.0/0 to other side.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You can dig deeper by following KB&amp;nbsp;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClcKCAS" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClcKCAS&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Instead of less command at the end you can run "tail follow yes mp-log ikemgr.log" to get updates in real time.&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 14:56:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-ikev2-multiple-events-per-second/m-p/586017#M116958</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2024-05-07T14:56:13Z</dc:date>
    </item>
  </channel>
</rss>

