<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Strata Cloud manager gateway traffic on cloudfront.net failing in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/strata-cloud-manager-gateway-traffic-on-cloudfront-net-failing/m-p/1228505#M124230</link>
    <description>&lt;P&gt;Well when the user connects via the US gateways the traffic doesn't work however it works via the UK gateway. Thats the only way I can the tell something is up with the US gateway.&lt;/P&gt;
&lt;P&gt;The intrusive option is the last resort I rather not go that route as its excessive to do that while no other traffic is impacted. It doesn't fly when you explain it to others.&lt;/P&gt;</description>
    <pubDate>Thu, 08 May 2025 14:45:28 GMT</pubDate>
    <dc:creator>G.Varkey</dc:creator>
    <dc:date>2025-05-08T14:45:28Z</dc:date>
    <item>
      <title>Strata Cloud manager gateway traffic on cloudfront.net failing</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/strata-cloud-manager-gateway-traffic-on-cloudfront-net-failing/m-p/1228499#M124226</link>
      <description>&lt;P&gt;No blocks observed but US gateways are dropping the traffic going to ohio.gov were as the UK gateway it works. The logs do not show any blocks. Any ideas how to troubleshoot would be helpful. Opened a TAC case however its dragging out for 3 days now&lt;/P&gt;</description>
      <pubDate>Thu, 08 May 2025 14:24:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/strata-cloud-manager-gateway-traffic-on-cloudfront-net-failing/m-p/1228499#M124226</guid>
      <dc:creator>G.Varkey</dc:creator>
      <dc:date>2025-05-08T14:24:24Z</dc:date>
    </item>
    <item>
      <title>Re: Strata Cloud manager gateway traffic on cloudfront.net failing</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/strata-cloud-manager-gateway-traffic-on-cloudfront-net-failing/m-p/1228502#M124228</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/152302069"&gt;@G.Varkey&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;
&lt;P&gt;No blocks observed but US gateways are dropping the traffic going to ohio.gov were as the UK gateway it works. The logs do not show any blocks. Any ideas how to troubleshoot would be helpful. Opened a TAC case however its dragging out for 3 days now&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;How do you know the gateways are dropping the traffic?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It sounds like one potential might be an IP protection thing happening in CF against the US GW IPs?&amp;nbsp; As subscribers to the Prisma service we have no access to the virtual FWs so the only way to diagnose the potential "dropping" issue is for TAC to do analysis on the infra.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;--edit--&lt;/P&gt;
&lt;P&gt;This would be a VERY intrusive option, but you could remove your US gateways from deployment 1 at a time, then redeploy them.&amp;nbsp; This would create new IPs for the gateways in the deployed regions.&amp;nbsp; Doing so would be a very direct way to see if it's an IP issue.&amp;nbsp; This drastic of a step could potentially mean disruption of services though if your current GW IPs are used in an allow list for things like MFA or some other public service.&lt;/P&gt;</description>
      <pubDate>Thu, 08 May 2025 14:41:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/strata-cloud-manager-gateway-traffic-on-cloudfront-net-failing/m-p/1228502#M124228</guid>
      <dc:creator>Brandon_Wertz</dc:creator>
      <dc:date>2025-05-08T14:41:40Z</dc:date>
    </item>
    <item>
      <title>Re: Strata Cloud manager gateway traffic on cloudfront.net failing</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/strata-cloud-manager-gateway-traffic-on-cloudfront-net-failing/m-p/1228505#M124230</link>
      <description>&lt;P&gt;Well when the user connects via the US gateways the traffic doesn't work however it works via the UK gateway. Thats the only way I can the tell something is up with the US gateway.&lt;/P&gt;
&lt;P&gt;The intrusive option is the last resort I rather not go that route as its excessive to do that while no other traffic is impacted. It doesn't fly when you explain it to others.&lt;/P&gt;</description>
      <pubDate>Thu, 08 May 2025 14:45:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/strata-cloud-manager-gateway-traffic-on-cloudfront-net-failing/m-p/1228505#M124230</guid>
      <dc:creator>G.Varkey</dc:creator>
      <dc:date>2025-05-08T14:45:28Z</dc:date>
    </item>
  </channel>
</rss>

