<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IPsec VPN in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn/m-p/16944#M12349</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;!--[if gte mso 10]&gt;
&lt;style&gt;
 /* Style Definitions */
 table.MsoNormalTable
	{mso-style-name:"Table Normal";
	mso-tstyle-rowband-size:0;
	mso-tstyle-colband-size:0;
	mso-style-noshow:yes;
	mso-style-priority:99;
	mso-style-qformat:yes;
	mso-style-parent:"";
	mso-padding-alt:0in 5.4pt 0in 5.4pt;
	mso-para-margin-top:0in;
	mso-para-margin-right:0in;
	mso-para-margin-bottom:10.0pt;
	mso-para-margin-left:0in;
	line-height:115%;
	mso-pagination:widow-orphan;
	font-size:11.0pt;
	font-family:"Calibri","sans-serif";
	mso-ascii-font-family:Calibri;
	mso-ascii-theme-font:minor-latin;
	mso-hansi-font-family:Calibri;
	mso-hansi-theme-font:minor-latin;
	mso-bidi-font-family:"Times New Roman";
	mso-bidi-theme-font:minor-bidi;}
&lt;/style&gt;
&lt;![endif]--&gt;&lt;P class="MsoNormal"&gt;The customer currently has 4 internet links (3 DSL &amp;amp; 1 leased line). They have an office in Site B and they require VPN connectivity between the 2 locations. The simple requirement is that the VPN has to be established and all 4 internet links have to be used in unison to send and receive the VPN traffic at the Site A end. It is not enough that the VPN is established over 1 link and if that link fails the VPN is transferred to a 2nd link. This is merely a VPN failover. The customer needs load balancing where all 4 links are used for sending VPN traffic. &lt;BR /&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;BR /&gt; &lt;!--[endif]--&gt;&lt;/P&gt;&lt;P class="MsoListParagraphCxSpFirst" style="text-indent: -0.25in;"&gt;&lt;!--[if !supportLists]--&gt;&lt;SPAN&gt;&lt;SPAN&gt;1.&lt;SPAN style="font: 7pt &amp;amp;quot;Times New Roman&amp;amp;quot;;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;!--[endif]--&gt;Can I use a Site-to-Site vpn in Palo Alto for site A and the some other firewall for the other end?&lt;/P&gt;&lt;P class="MsoListParagraphCxSpLast" style="text-indent: -0.25in;"&gt;&lt;!--[if !supportLists]--&gt;&lt;SPAN&gt;&lt;SPAN&gt;2.&lt;SPAN style="font: 7pt &amp;amp;quot;Times New Roman&amp;amp;quot;;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;!--[endif]--&gt;What will happen to the IPsec tunnel with the act of the link load balancer?&lt;/P&gt;&lt;P class="MsoNormal"&gt;I have attached a diagram of the requirement. &lt;SPAN&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 15 Sep 2010 06:34:36 GMT</pubDate>
    <dc:creator>roshithw</dc:creator>
    <dc:date>2010-09-15T06:34:36Z</dc:date>
    <item>
      <title>IPsec VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn/m-p/16944#M12349</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;!--[if gte mso 10]&gt;
&lt;style&gt;
 /* Style Definitions */
 table.MsoNormalTable
	{mso-style-name:"Table Normal";
	mso-tstyle-rowband-size:0;
	mso-tstyle-colband-size:0;
	mso-style-noshow:yes;
	mso-style-priority:99;
	mso-style-qformat:yes;
	mso-style-parent:"";
	mso-padding-alt:0in 5.4pt 0in 5.4pt;
	mso-para-margin-top:0in;
	mso-para-margin-right:0in;
	mso-para-margin-bottom:10.0pt;
	mso-para-margin-left:0in;
	line-height:115%;
	mso-pagination:widow-orphan;
	font-size:11.0pt;
	font-family:"Calibri","sans-serif";
	mso-ascii-font-family:Calibri;
	mso-ascii-theme-font:minor-latin;
	mso-hansi-font-family:Calibri;
	mso-hansi-theme-font:minor-latin;
	mso-bidi-font-family:"Times New Roman";
	mso-bidi-theme-font:minor-bidi;}
&lt;/style&gt;
&lt;![endif]--&gt;&lt;P class="MsoNormal"&gt;The customer currently has 4 internet links (3 DSL &amp;amp; 1 leased line). They have an office in Site B and they require VPN connectivity between the 2 locations. The simple requirement is that the VPN has to be established and all 4 internet links have to be used in unison to send and receive the VPN traffic at the Site A end. It is not enough that the VPN is established over 1 link and if that link fails the VPN is transferred to a 2nd link. This is merely a VPN failover. The customer needs load balancing where all 4 links are used for sending VPN traffic. &lt;BR /&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;BR /&gt; &lt;!--[endif]--&gt;&lt;/P&gt;&lt;P class="MsoListParagraphCxSpFirst" style="text-indent: -0.25in;"&gt;&lt;!--[if !supportLists]--&gt;&lt;SPAN&gt;&lt;SPAN&gt;1.&lt;SPAN style="font: 7pt &amp;amp;quot;Times New Roman&amp;amp;quot;;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;!--[endif]--&gt;Can I use a Site-to-Site vpn in Palo Alto for site A and the some other firewall for the other end?&lt;/P&gt;&lt;P class="MsoListParagraphCxSpLast" style="text-indent: -0.25in;"&gt;&lt;!--[if !supportLists]--&gt;&lt;SPAN&gt;&lt;SPAN&gt;2.&lt;SPAN style="font: 7pt &amp;amp;quot;Times New Roman&amp;amp;quot;;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;!--[endif]--&gt;What will happen to the IPsec tunnel with the act of the link load balancer?&lt;/P&gt;&lt;P class="MsoNormal"&gt;I have attached a diagram of the requirement. &lt;SPAN&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 15 Sep 2010 06:34:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn/m-p/16944#M12349</guid>
      <dc:creator>roshithw</dc:creator>
      <dc:date>2010-09-15T06:34:36Z</dc:date>
    </item>
    <item>
      <title>Re: IPsec VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn/m-p/16945#M12350</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The most commonly used feature to accomplish this is Policy Based Forwarding.&amp;nbsp; The route monitoring feature in PBF will allow you to failover to another tunnel when your NH is down.&amp;nbsp; In order to achieve the load-sharing you're after, you'll have to configure multiple PBF rules that service different source or destination addresses (using PBF rules to send traffic from certain hosts/servers down different IPSec tunnels).&amp;nbsp; There are other alternatives (such as dynamic routing) that you could use but PBF is the most straightforward.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps!&lt;/P&gt;&lt;P&gt;Nick Campagna &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 18 Sep 2010 16:29:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn/m-p/16945#M12350</guid>
      <dc:creator>ncampagna</dc:creator>
      <dc:date>2010-09-18T16:29:39Z</dc:date>
    </item>
  </channel>
</rss>

