<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Tunnel between PaloAlto and PaloAlto in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4231#M3121</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please find below mentioned document, hope it will help you.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A __default_attr="4791" __jive_macro_name="document" class="jive_macro jive_macro_document" href="https://live.paloaltonetworks.com/"&gt;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="7348" alt="VPN.jpg" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/7348_VPN.jpg" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Gantait&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 20 Jul 2013 18:30:35 GMT</pubDate>
    <dc:creator>HULK</dc:creator>
    <dc:date>2013-07-20T18:30:35Z</dc:date>
    <item>
      <title>Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4217#M3107</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i'm trying to get this constellation running:&lt;/P&gt;&lt;P&gt;Two PA 200 behind a DSL-Home-Router and a firewall with a fixed public IP at the passive site.&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="7288" alt="overview.jpg" class="jive-image-thumbnail jive-image" height="125" src="https://live.paloaltonetworks.com/legacyfs/online/7288_overview.jpg" width="505" /&gt;&lt;/P&gt;&lt;P&gt;This image is just an example how it looks like....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;First i want to get the active site ("PA-Active"; PA 200; Version 5.0.6) running...&lt;/P&gt;&lt;P&gt;I configured the IKE Gateway, Tunnel interface and also the IPSec Tunnel, but the PA doesn't want to establish/initialize the connection at all...I cannot see any log files in "traffic" either in "system"...Firewall policies should allow the traffic...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here are the settings i made:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="7298" alt="router.jpg" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/7298_router.jpg" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="7299" alt="tunnel.jpg" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/7299_tunnel.jpg" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="7296" alt="interface.jpg" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/7296_interface.jpg" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="7297" alt="ipsec.jpg" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/7297_ipsec.jpg" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="7295" alt="ike.jpg" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/7295_ike.jpg" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can someone help? Did i missed a config?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Jul 2013 13:59:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4217#M3107</guid>
      <dc:creator>Hithead</dc:creator>
      <dc:date>2013-07-18T13:59:12Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4218#M3108</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Hithead,&lt;/P&gt;&lt;P&gt;Do you have a policy to permit ike and ipsec application from the untrust zone to the untrust zone, if at all there is a clean up rule at the bottom of the firewalls ?&lt;/P&gt;&lt;P&gt;What are the IKE identities that you are using on the remote&amp;nbsp; PA firewalls?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Jul 2013 14:13:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4218#M3108</guid>
      <dc:creator>kprakash</dc:creator>
      <dc:date>2013-07-18T14:13:36Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4219#M3109</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you also permitting ike and ipsec traffic on the firewall 2?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To rephrase my earlier question, may I know what local and remote peer IDs have been configured on each of the PA 200s?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Jul 2013 14:15:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4219#M3109</guid>
      <dc:creator>kprakash</dc:creator>
      <dc:date>2013-07-18T14:15:22Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4220#M3110</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi...You need to add a static route for the IP network that is found across the tunnel.&amp;nbsp; Let's say the remote LAN has IP subnet 10.11.12.0/24.&amp;nbsp; You would add static route dest=10.11.12.0.24 use interface=tunnel.2.&amp;nbsp; Then you need to generate traffic like pinging a host at 10.11.12.x to force traffic to the tunnel &amp;amp; bring the tunnel up.&amp;nbsp; Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Jul 2013 14:20:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4220#M3110</guid>
      <dc:creator>rmonvon</dc:creator>
      <dc:date>2013-07-18T14:20:12Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4221#M3111</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The static route is the thing that's needed as &lt;A __default_attr="2357" __jive_macro_name="user" class="jive_macro jive_macro_user" data-objecttype="3" href="https://live.paloaltonetworks.com/"&gt;&lt;/A&gt; said.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also I would suggesting building a tunnel monitoring profile on both sides... I have Palo Alto to Palo Alto IPSec tunnels in production, and I noticed that the tunnels wouldn't come back up if I rebooted one side of the tunnel without tunnel monitoring in place (which kind of makes sense.. the IPSec SA was never being torn down on one side, I had to clear it manually to get the tunnel back up).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I will say that my PA to PA tunnels have been rock solid though, after that one little gotcha.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Jul 2013 14:25:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4221#M3111</guid>
      <dc:creator>ericgearhart</dc:creator>
      <dc:date>2013-07-18T14:25:15Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4222#M3112</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i added 10.0.0.0/8 (because all traffic should go through the tunnel)...And also make a ping from the interface 1/1... and still no reaction or something else to initialize a tunnel...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="router2.jpg" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/7308_router2.jpg" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="ping.jpg" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/7309_ping.jpg" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="traffic.jpg" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/7311_traffic.jpg" width="450" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Jul 2013 14:41:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4222#M3112</guid>
      <dc:creator>Hithead</dc:creator>
      <dc:date>2013-07-18T14:41:46Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4223#M3113</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do you have a catch all NAT policy configured on your PA? If you do, you need to set up a noNAT for the traffic you're trying to send over the tunnel. That's usually the culprit when I can't figure out why a tunnel isn't seeing interesting traffic and coming up&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Jul 2013 14:56:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4223#M3113</guid>
      <dc:creator>ericgearhart</dc:creator>
      <dc:date>2013-07-18T14:56:57Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4224#M3114</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi..&lt;/P&gt;&lt;P&gt;no there is no NAT configured for this traffic.&lt;/P&gt;&lt;P&gt;Can you please do me a favour and provide some screenshots of your configuration?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Because i'm really confused why my PA didn't try to establish a VPN tunnel...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Jul 2013 15:07:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4224#M3114</guid>
      <dc:creator>Hithead</dc:creator>
      <dc:date>2013-07-18T15:07:46Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4225#M3115</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Your traffic log shows the ping are being dropped so the tunnel will not come up.&amp;nbsp; Make sure you have a security rule allowing the traffic to the tunnel zone.&amp;nbsp; Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Jul 2013 15:16:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4225#M3115</guid>
      <dc:creator>rmonvon</dc:creator>
      <dc:date>2013-07-18T15:16:29Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4226#M3116</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi HIthead,&lt;/P&gt;&lt;P&gt;I am still wondering if the Phase-1 is getting established or not. Are the phase 1 and the phase 2 up?&lt;/P&gt;&lt;P&gt;&amp;gt;show vpn ike-sa&lt;/P&gt;&lt;P&gt;&amp;gt;show vpn ipsec-sa&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have an apprehension that we are failing in the negotiation itself.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;BR,&lt;/P&gt;&lt;P&gt;Karthik &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Jul 2013 15:28:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4226#M3116</guid>
      <dc:creator>kprakash</dc:creator>
      <dc:date>2013-07-18T15:28:38Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4227#M3117</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As &lt;A __default_attr="2357" __jive_macro_name="user" class="jive_macro jive_macro_user" data-objecttype="3" href="https://live.paloaltonetworks.com/"&gt;&lt;/A&gt; said, there are denies in that log you posted. You probably want to resolve letting traffic over the tunnel zone first. Your config looks ok from the screenshots you're posting... this was a very straightforward process when I went to set up a PA-PA tunnel.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Jul 2013 18:47:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4227#M3117</guid>
      <dc:creator>ericgearhart</dc:creator>
      <dc:date>2013-07-18T18:47:07Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4228#M3118</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks a lot,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;after allowing ping to the tunnel zone the PA tries to establish a tunnel.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;BUT, now i need to get NAT Traversal running. Because both PAs are behind a NATing firewall and DSL router, so the IKE will be lost on the way... In the IKE gateway settings i enabled the NAT traversal option and the PA still try to use IKE Port UDP500... Is it correct? Or how can i solve the NAT problem to prevent the UDP packet lost?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Jul 2013 14:01:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4228#M3118</guid>
      <dc:creator>Hithead</dc:creator>
      <dc:date>2013-07-19T14:01:03Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4229#M3119</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Don't know if you understood the problem...but...&lt;/P&gt;&lt;P&gt;The IKE UDP packet doesn't get received at the other end... Does IKE works with NAT? Have i change something at PA or somewhere else to get it run?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Jul 2013 17:24:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4229#M3119</guid>
      <dc:creator>Hithead</dc:creator>
      <dc:date>2013-07-20T17:24:12Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4230#M3120</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could you please make the PA firewall as initiator which is behind the dynamic public IP address. Also set the IKE negotiation in aggressive mode.&amp;nbsp; &lt;SPAN style="color: #000000; font-family: Arial, Helvetica, sans-serif; font-size: 12.222222328186035px; line-height: 1.5em;"&gt;Since&lt;/SPAN&gt;&lt;SPAN style="background-color: #ffffff; color: #000000; font-family: Arial, Helvetica, sans-serif; font-size: 12.222222328186035px; line-height: 1.5em;"&gt; we don't have any address to use to contact the peer ( to the dynamic side). . Also set the IKE gateway "Peer type" as dynamic with a suitable&amp;nbsp; local and peer identification ( FQDN, IP address, email Address).&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="background-color: #ffffff; color: #000000; font-family: Arial, Helvetica, sans-serif; font-size: 12.222222328186035px; line-height: 1.5em;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="background-color: #ffffff; color: #000000; font-family: Arial, Helvetica, sans-serif; font-size: 12.222222328186035px; line-height: 1.5em;"&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="background-color: #ffffff; color: #000000; font-family: Arial, Helvetica, sans-serif; font-size: 12.222222328186035px; line-height: 1.5em;"&gt;Gantait&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Jul 2013 18:20:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4230#M3120</guid>
      <dc:creator>HULK</dc:creator>
      <dc:date>2013-07-20T18:20:55Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4231#M3121</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please find below mentioned document, hope it will help you.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A __default_attr="4791" __jive_macro_name="document" class="jive_macro jive_macro_document" href="https://live.paloaltonetworks.com/"&gt;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="7348" alt="VPN.jpg" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/7348_VPN.jpg" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Gantait&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Jul 2013 18:30:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4231#M3121</guid>
      <dc:creator>HULK</dc:creator>
      <dc:date>2013-07-20T18:30:35Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4232#M3122</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it seems to work now. But the problem was the ISP at the other side (doesn't allowed the protocols). After switching to an other public subnet it works. Thanks a lot guys!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Jul 2013 11:59:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4232#M3122</guid>
      <dc:creator>Hithead</dc:creator>
      <dc:date>2013-07-22T11:59:39Z</dc:date>
    </item>
    <item>
      <title>Re: Tunnel between PaloAlto and PaloAlto</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4233#M3123</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Good to hear it's working. Can you please mark this question as answered?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Jul 2013 14:29:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tunnel-between-paloalto-and-paloalto/m-p/4233#M3123</guid>
      <dc:creator>ericgearhart</dc:creator>
      <dc:date>2013-07-22T14:29:13Z</dc:date>
    </item>
  </channel>
</rss>

