<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IPSec VPN issue in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66538#M39227</link>
    <description>&lt;P&gt;Does the phase one is comming up? If yes then the issue with proxy ID.&lt;/P&gt;
&lt;P&gt;Have you opened the udp port 500 and udp 4500 on the AWS?&lt;/P&gt;
&lt;P&gt;Are you able to ping the public IP address?&lt;/P&gt;</description>
    <pubDate>Wed, 14 Oct 2015 12:21:32 GMT</pubDate>
    <dc:creator>pankaku</dc:creator>
    <dc:date>2015-10-14T12:21:32Z</dc:date>
    <item>
      <title>IPSec VPN issue</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66521#M39222</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have configured IPSec VPN between PAN and AWS.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When i iniate the tunnel, IPSec and IKE SA installed successfully as a initiator.&lt;/P&gt;
&lt;P&gt;then, IKE protocol IPSec SA delete message sent to peer. SPI:0x...&lt;/P&gt;
&lt;P&gt;After a second, IPSec key deleted. Deleted SA..... please suggest&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 14 Oct 2015 11:02:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66521#M39222</guid>
      <dc:creator>Javith</dc:creator>
      <dc:date>2015-10-14T11:02:56Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN issue</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66529#M39224</link>
      <description>&lt;P&gt;Soundslike some reachibility test fails. Check if you are dropping something towards AWS peers.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 14 Oct 2015 11:27:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66529#M39224</guid>
      <dc:creator>santonic</dc:creator>
      <dc:date>2015-10-14T11:27:56Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN issue</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66538#M39227</link>
      <description>&lt;P&gt;Does the phase one is comming up? If yes then the issue with proxy ID.&lt;/P&gt;
&lt;P&gt;Have you opened the udp port 500 and udp 4500 on the AWS?&lt;/P&gt;
&lt;P&gt;Are you able to ping the public IP address?&lt;/P&gt;</description>
      <pubDate>Wed, 14 Oct 2015 12:21:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66538#M39227</guid>
      <dc:creator>pankaku</dc:creator>
      <dc:date>2015-10-14T12:21:32Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN issue</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66567#M39234</link>
      <description>&lt;P&gt;Can you set vpn on Palo into passive mode and initiate vpn from other side?&lt;/P&gt;
&lt;P&gt;System log on Palo shows pretty exactly at what state vpn fails.&lt;/P&gt;</description>
      <pubDate>Wed, 14 Oct 2015 13:49:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66567#M39234</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2015-10-14T13:49:07Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN issue</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66585#M39239</link>
      <description>&lt;P&gt;The only options are Main, Auto, and Agressive. You can play with those. But like &lt;SPAN class="UserName lia-user-name lia-user-rank-L4-Transporter"&gt;&lt;A id="link_15" class="lia-link-navigation lia-page-link lia-user-name-link" href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/20090" target="_self"&gt;&lt;SPAN class=""&gt;pakumar&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt; pointed out. If its phase 2, it could be proxy id's.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Its under Ike Gateway -&amp;gt; Advanced Phase 1 options.&lt;/P&gt;</description>
      <pubDate>Wed, 14 Oct 2015 15:46:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66585#M39239</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2015-10-14T15:46:03Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN issue</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66586#M39240</link>
      <description>&lt;P&gt;Of course i didnt look very hard, Yes there is a Passive option in the IKE gateway.&lt;/P&gt;</description>
      <pubDate>Wed, 14 Oct 2015 15:52:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66586#M39240</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2015-10-14T15:52:03Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN issue</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66624#M39253</link>
      <description>&lt;P&gt;According to original post (Quote:"&lt;SPAN&gt;When i iniate the tunnel, IPSec and IKE SA installed successfully as a initiator.&lt;/SPAN&gt;") I'd say all parameters are ok and IPSEC is esatblished sucesfully but DPD mechanism kicks in and takes&amp;nbsp;it down.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 15 Oct 2015 07:42:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ipsec-vpn-issue/m-p/66624#M39253</guid>
      <dc:creator>santonic</dc:creator>
      <dc:date>2015-10-15T07:42:25Z</dc:date>
    </item>
  </channel>
</rss>

