<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Nest Thermostat in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/205671#M60376</link>
    <description>&lt;P&gt;The problem the Nest is having (or at least mine was having), is that it is trying to use the dropcam app on a non-default port (tcp-9543). if you're using policies&amp;nbsp;that use&amp;nbsp;application-default to allow your nest traffic out, it won't work.&lt;/P&gt;&lt;P&gt;Add a rule that allows dropcam (&amp;amp; web-browsing) outbound using tcp-9543 (along with your regular app-default outbound rules) and you should be golden.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 15 Mar 2018 15:09:08 GMT</pubDate>
    <dc:creator>Rob_Notman</dc:creator>
    <dc:date>2018-03-15T15:09:08Z</dc:date>
    <item>
      <title>Nest Thermostat</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/75012#M41858</link>
      <description>&lt;P&gt;Anyone running a Nest Thermostat behind a Palo Alto Networks firewall? &amp;nbsp;I am seeing an inability to connect to the nest site. &amp;nbsp;Logs show &amp;nbsp;a repating SSL on 443 with session end reason: &amp;nbsp;tcp-rst-from-client&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any thoughts would be appreciated.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Bob&lt;/P&gt;</description>
      <pubDate>Mon, 21 Mar 2016 21:18:04 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/75012#M41858</guid>
      <dc:creator>BobW</dc:creator>
      <dc:date>2016-03-21T21:18:04Z</dc:date>
    </item>
    <item>
      <title>Re: Nest Thermostat</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/75014#M41859</link>
      <description>&lt;P&gt;I've got a pair of Nests at my house behind a PA-200. Almost all the connections end up with a client reset, but everything works for my Nest reporting and login. My phone can manage them just fine, and I can see all my historical data. I think that Nest is just really aggressive with TCP handling.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here's a screenshot of my logs. You'll notice that everything ends with rst, but the byte sizes are significant:&lt;/P&gt;
&lt;P&gt;&lt;IMG src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/3142i5AF5C1E406B6DF7D/image-size/original?v=mpbl-1&amp;amp;px=-1" border="0" alt="nest-logs.jpg" title="nest-logs.jpg" /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope this helps,&lt;/P&gt;
&lt;P&gt;Greg&lt;/P&gt;</description>
      <pubDate>Mon, 21 Mar 2016 21:25:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/75014#M41859</guid>
      <dc:creator>gwesson</dc:creator>
      <dc:date>2016-03-21T21:25:22Z</dc:date>
    </item>
    <item>
      <title>Re: Nest Thermostat</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/75015#M41860</link>
      <description>&lt;P&gt;Thanks for the prompt reply.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have very similar logs. &amp;nbsp;Problem is it is always offline and can not be controlled. &amp;nbsp;As soon as I remove the PA-200 and switch to an old school wireless router it works fine.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any thoughts on what settings to tweak, what to look for to try and figure it out? &amp;nbsp;etc.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Bob&lt;/P&gt;</description>
      <pubDate>Mon, 21 Mar 2016 21:32:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/75015#M41860</guid>
      <dc:creator>BobW</dc:creator>
      <dc:date>2016-03-21T21:32:21Z</dc:date>
    </item>
    <item>
      <title>Re: Nest Thermostat</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/75016#M41861</link>
      <description>&lt;P&gt;I haven't had any issues with it connecting and being controlled.&amp;nbsp;Are you doing NAT on your firewall for the Nest device? That's the only thing I can think of, as it doesn't need any inbound rules and your security rules are probably good.&lt;/P&gt;</description>
      <pubDate>Mon, 21 Mar 2016 21:39:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/75016#M41861</guid>
      <dc:creator>gwesson</dc:creator>
      <dc:date>2016-03-21T21:39:35Z</dc:date>
    </item>
    <item>
      <title>Re: Nest Thermostat</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/203412#M59929</link>
      <description>&lt;P&gt;Any update on this?&amp;nbsp; I am troubleshooting Nest cameras and thermostat with the same symptoms.&lt;/P&gt;</description>
      <pubDate>Sun, 04 Mar 2018 02:57:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/203412#M59929</guid>
      <dc:creator>Kelly_Olivier</dc:creator>
      <dc:date>2018-03-04T02:57:02Z</dc:date>
    </item>
    <item>
      <title>Re: Nest Thermostat</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/203633#M59988</link>
      <description>&lt;P&gt;My solution was to throw up another AP/router with a different SSID for the Nest as well as the PS4 and other UPNP devices.&amp;nbsp; That assumes your ISP gives you more than a single external IP.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope that helps,&lt;/P&gt;&lt;P&gt;Bob&lt;/P&gt;</description>
      <pubDate>Mon, 05 Mar 2018 20:16:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/203633#M59988</guid>
      <dc:creator>BobW</dc:creator>
      <dc:date>2018-03-05T20:16:27Z</dc:date>
    </item>
    <item>
      <title>Re: Nest Thermostat</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/203961#M60046</link>
      <description>&lt;P&gt;I'm running a nest thermostat (v3) at home behind a PA-200 and haven't run into any issues or had to configure anything differently. Have you chedked the unified log to make sure any other traffic required may not be being blocked?&lt;/P&gt;</description>
      <pubDate>Tue, 06 Mar 2018 20:07:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/203961#M60046</guid>
      <dc:creator>tcasw86</dc:creator>
      <dc:date>2018-03-06T20:07:38Z</dc:date>
    </item>
    <item>
      <title>Re: Nest Thermostat</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/205671#M60376</link>
      <description>&lt;P&gt;The problem the Nest is having (or at least mine was having), is that it is trying to use the dropcam app on a non-default port (tcp-9543). if you're using policies&amp;nbsp;that use&amp;nbsp;application-default to allow your nest traffic out, it won't work.&lt;/P&gt;&lt;P&gt;Add a rule that allows dropcam (&amp;amp; web-browsing) outbound using tcp-9543 (along with your regular app-default outbound rules) and you should be golden.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 15 Mar 2018 15:09:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/205671#M60376</guid>
      <dc:creator>Rob_Notman</dc:creator>
      <dc:date>2018-03-15T15:09:08Z</dc:date>
    </item>
    <item>
      <title>Re: Nest Thermostat</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/226616#M65230</link>
      <description>&lt;P&gt;I just noticed our Nest thermostats are using tcp/9543 and are being ID'd as dropcam as well. Seems like a bad app-ID.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Aug 2018 16:08:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/226616#M65230</guid>
      <dc:creator>willsimon</dc:creator>
      <dc:date>2018-08-09T16:08:44Z</dc:date>
    </item>
    <item>
      <title>Re: Nest Thermostat</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/345103#M86290</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Its 2020 and i also had the same issues of all 8 of my nest protects and 2 cameras disconnect from the nest services. They were still on my wifi networks, i could see the dns requests hitting the firewall and a single http request, but that http request never got a response from the nest cloud. I figured out that my firewall had a bad entry in its dns cache for the nest cloud. Once i disabled the dns cache option on the firewall everything came back to life. Just&amp;nbsp; thought i would post the solution here. Thanks, michael&lt;/P&gt;</description>
      <pubDate>Sun, 23 Aug 2020 16:11:43 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/nest-thermostat/m-p/345103#M86290</guid>
      <dc:creator>mikep97</dc:creator>
      <dc:date>2020-08-23T16:11:43Z</dc:date>
    </item>
  </channel>
</rss>

