<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic PA2020 Proxy ID Limitations in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/pa2020-proxy-id-limitations/m-p/37979#M27799</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am configuring a VPN Tunnel between a PA2020 and a Cisco ASA. The PA is running version 3.1.5.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The PA is obviously route based VPN's... The Cisco ASA uses policies or encryption domains/ACL's to define what traffic is allowed down the VPN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So in order to get this working we have used Proxy ID's to define the traffic that is allowed down the tunnel on the PA. Does anyone know if there is a limit on the number of Proxy ID's that can be configured on the PA? As I know that on the Cisco ASA the ACL or encryption domain can be pretty big!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help would be appreciated...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Harsh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 12 May 2011 15:40:53 GMT</pubDate>
    <dc:creator>harsh01</dc:creator>
    <dc:date>2011-05-12T15:40:53Z</dc:date>
    <item>
      <title>PA2020 Proxy ID Limitations</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa2020-proxy-id-limitations/m-p/37979#M27799</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am configuring a VPN Tunnel between a PA2020 and a Cisco ASA. The PA is running version 3.1.5.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The PA is obviously route based VPN's... The Cisco ASA uses policies or encryption domains/ACL's to define what traffic is allowed down the VPN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So in order to get this working we have used Proxy ID's to define the traffic that is allowed down the tunnel on the PA. Does anyone know if there is a limit on the number of Proxy ID's that can be configured on the PA? As I know that on the Cisco ASA the ACL or encryption domain can be pretty big!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help would be appreciated...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Harsh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 May 2011 15:40:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa2020-proxy-id-limitations/m-p/37979#M27799</guid>
      <dc:creator>harsh01</dc:creator>
      <dc:date>2011-05-12T15:40:53Z</dc:date>
    </item>
    <item>
      <title>Re: PA2020 Proxy ID Limitations</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa2020-proxy-id-limitations/m-p/37980#M27800</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I've read that it's 10 proxy IDs per tunnel.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A __default_attr="2187" __jive_macro_name="thread" class="jive_macro jive_macro_thread default_title"&gt;&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 May 2011 16:52:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa2020-proxy-id-limitations/m-p/37980#M27800</guid>
      <dc:creator>mharding</dc:creator>
      <dc:date>2011-05-12T16:52:44Z</dc:date>
    </item>
    <item>
      <title>Re: PA2020 Proxy ID Limitations</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa2020-proxy-id-limitations/m-p/37981#M27801</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the reply. That is really helpful. I guess if we need more then 10 proxy IDs then we can configure another tunnel with the same phase 1 attributes and different phase 2. I'll give this a try...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many Thanks again for your reply and help&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Harsh &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 May 2011 20:14:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa2020-proxy-id-limitations/m-p/37981#M27801</guid>
      <dc:creator>harsh01</dc:creator>
      <dc:date>2011-05-12T20:14:28Z</dc:date>
    </item>
  </channel>
</rss>

