<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: DR Site in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/dr-site/m-p/17688#M12883</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;So what is the best way to create to different configurations? Its easy enough to remove the extra tunnels from the DR site, backup the configuration. You good take the config file from the main site back it up and load it on the DR site but you do have to make several changes to the config account for the DR site being at a different location&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 17 Mar 2014 19:42:37 GMT</pubDate>
    <dc:creator>infotech</dc:creator>
    <dc:date>2014-03-17T19:42:37Z</dc:date>
    <item>
      <title>DR Site</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dr-site/m-p/17686#M12881</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I currently setting up a PA 3020 for my DR site and currently have one set up for my Main site. I exported the configuration from my main PA and am using it to set up my DR PA. Is it possible to disable the VPN tunnels on the DR site so they will be there and not need to be configured if a cirsis happens but not interfer with the active working tunnels at my main site?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Mar 2014 16:14:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dr-site/m-p/17686#M12881</guid>
      <dc:creator>infotech</dc:creator>
      <dc:date>2014-03-17T16:14:22Z</dc:date>
    </item>
    <item>
      <title>Re: DR Site</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dr-site/m-p/17687#M12882</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello &lt;A href="https://live.paloaltonetworks.com/u1/24678"&gt;infotech&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There is no "disable" option for vpn tunnels as we see in the security rules. The best we can do is to have 2 versions of the configuration file&lt;/P&gt;&lt;P&gt;1&amp;gt; Exact configuration as Main site. ( as back up config file loaded on device )&lt;/P&gt;&lt;P&gt;2&amp;gt; Same configuration but has the vpn configuration removed from the file as needed for the DR site.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So based on the need any of this file can be loaded when needed to have the tunnels up or removed.&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Mar 2014 19:28:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dr-site/m-p/17687#M12882</guid>
      <dc:creator>Phoenix</dc:creator>
      <dc:date>2014-03-17T19:28:23Z</dc:date>
    </item>
    <item>
      <title>Re: DR Site</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dr-site/m-p/17688#M12883</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;So what is the best way to create to different configurations? Its easy enough to remove the extra tunnels from the DR site, backup the configuration. You good take the config file from the main site back it up and load it on the DR site but you do have to make several changes to the config account for the DR site being at a different location&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Mar 2014 19:42:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dr-site/m-p/17688#M12883</guid>
      <dc:creator>infotech</dc:creator>
      <dc:date>2014-03-17T19:42:37Z</dc:date>
    </item>
    <item>
      <title>Re: DR Site</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dr-site/m-p/17689#M12884</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is there an issue creating a second set of tunnels? Unless you will have the same public addressing at your DR site, using the same configuration won't help (as the other end of the tunnel won't be configured for the DR IP address). Additionally, having a second set of tunnels that are already up will reduce your recovery time.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Mar 2014 07:12:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dr-site/m-p/17689#M12884</guid>
      <dc:creator>cstancill</dc:creator>
      <dc:date>2014-03-18T07:12:02Z</dc:date>
    </item>
    <item>
      <title>Re: DR Site</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dr-site/m-p/17690#M12885</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The only issue that might be caused by having the additional tunnels is confusion of the traffic. The DR site does have its only public address though. I would be more comfortable leaving the additional tunnels if I could assure that they will not interfer with the primary routes.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Mar 2014 12:57:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dr-site/m-p/17690#M12885</guid>
      <dc:creator>infotech</dc:creator>
      <dc:date>2014-03-18T12:57:46Z</dc:date>
    </item>
  </channel>
</rss>

