<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: o session in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4888#M3584</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;You are saying traffics are traversing PA-200 and you are enable to see any web-sites, right?&lt;/P&gt;&lt;P&gt;I just wonder 3rd party firewall is using pppoe or not.&lt;/P&gt;&lt;P&gt;I saw very similar issue before.&lt;/P&gt;&lt;P&gt;My situation was PA placed between two devices and all packets are capsuled by pppoe.&lt;/P&gt;&lt;P&gt;The result of 'show system statistics session' was counting correctly, but we could not see any sessions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 01 May 2013 03:08:19 GMT</pubDate>
    <dc:creator>emr_1</dc:creator>
    <dc:date>2013-05-01T03:08:19Z</dc:date>
    <item>
      <title>o session</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4885#M3581</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have a installation with a PA-200 firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It's a standard vwire-setup with policyes from untrust to trust. It is places between the ISPs router and another firewall.&lt;/P&gt;&lt;P&gt;The traffic is forwarding between the interfaces, but the PA-200 is counting 0 sessions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Log monitor e.g state null traffic.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have created a case at Palo Alto, but have no solution yet.&lt;/P&gt;&lt;P&gt;Downgraded from 5.0.4 to 5.03 with no luck.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anyone seen this issue before?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 30 Apr 2013 20:16:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4885#M3581</guid>
      <dc:creator>klumpen</dc:creator>
      <dc:date>2013-04-30T20:16:50Z</dc:date>
    </item>
    <item>
      <title>Re: o session</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4886#M3582</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hmmm, If I understand you, Vwire is NOT counting any sessions. What I visualize is the following (please confirm if different) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ISP-Router &amp;lt;====&amp;gt;&amp;nbsp; PA200 &amp;lt;====&amp;gt;&amp;nbsp; 3rd party firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Questions, obeservations I have: If your FW was NOT in the middle, I would be lead to believe that you would have &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ISP-Router &amp;lt;========&amp;gt;&amp;nbsp; 3rd party firewall.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Which gives me indication that you have UNTRUST from Internet talking to UNTRUST interface on the 3rd party FW. Maybe your Zones are setup incorrectly? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would think Untrust talking to Untrust just looks like your setup, (yet you have Untrust talking to Trust, which does not match)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you provide a simple network drawing (like I did)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 30 Apr 2013 20:32:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4886#M3582</guid>
      <dc:creator>scantwell</dc:creator>
      <dc:date>2013-04-30T20:32:58Z</dc:date>
    </item>
    <item>
      <title>Re: o session</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4887#M3583</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your network diagram is correct.&lt;/P&gt;&lt;P&gt;I have ensured that ethernet 1/1 (untrust) is connected to the ISP and ethernet 1/2 (tust)is connected to the original firewall. &lt;/P&gt;&lt;P&gt;Packets from the ISP is untagged, so VLAN should not be a issue.&lt;/P&gt;&lt;P&gt;Have also a second policy that accept traffic from untrust to trust, so in the case that I had mixed between the zones that should not matter (since they have some services on the inside..)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 30 Apr 2013 20:41:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4887#M3583</guid>
      <dc:creator>klumpen</dc:creator>
      <dc:date>2013-04-30T20:41:27Z</dc:date>
    </item>
    <item>
      <title>Re: o session</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4888#M3584</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;You are saying traffics are traversing PA-200 and you are enable to see any web-sites, right?&lt;/P&gt;&lt;P&gt;I just wonder 3rd party firewall is using pppoe or not.&lt;/P&gt;&lt;P&gt;I saw very similar issue before.&lt;/P&gt;&lt;P&gt;My situation was PA placed between two devices and all packets are capsuled by pppoe.&lt;/P&gt;&lt;P&gt;The result of 'show system statistics session' was counting correctly, but we could not see any sessions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 01 May 2013 03:08:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4888#M3584</guid>
      <dc:creator>emr_1</dc:creator>
      <dc:date>2013-05-01T03:08:19Z</dc:date>
    </item>
    <item>
      <title>Re: o session</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4889#M3585</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is configured for "tag allowed" under Network -&amp;gt; Virtual Wires -&amp;gt; (Name of the vwire instance)?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please add "0-4094" for tag allowed, commit the change and check to see if traffic traverses successfully. 0-4094 will allow tagged as well as untagged traffic through the vwire pair.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Manish&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 01 May 2013 06:07:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4889#M3585</guid>
      <dc:creator>mvenkatesan</dc:creator>
      <dc:date>2013-05-01T06:07:12Z</dc:date>
    </item>
    <item>
      <title>Re: o session</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4890#M3586</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for your help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The problem was PPPoE between the existing firewall and the ISP.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 06 May 2013 11:53:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/o-session/m-p/4890#M3586</guid>
      <dc:creator>klumpen</dc:creator>
      <dc:date>2013-05-06T11:53:41Z</dc:date>
    </item>
  </channel>
</rss>

