<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PA to Cisco ASA Site to Site IPSEC with source as user id  instead of IP address in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/pa-to-cisco-asa-site-to-site-ipsec-with-source-as-user-id/m-p/248555#M70692</link>
    <description>&lt;P&gt;yes VPN has two zones one for user traffic coming from our side then tunnel zone going to vendor.&lt;/P&gt;&lt;P&gt;I need to apply on our zone user id not the source subnets as they are many.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 01 Feb 2019 23:25:06 GMT</pubDate>
    <dc:creator>MP18</dc:creator>
    <dc:date>2019-02-01T23:25:06Z</dc:date>
    <item>
      <title>PA to Cisco ASA Site to Site IPSEC with source as user id  instead of IP address</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa-to-cisco-asa-site-to-site-ipsec-with-source-as-user-id/m-p/248399#M70648</link>
      <description>&lt;P&gt;Need to know&amp;nbsp; is it possible to use Site to Site IPSEC with Cisco ASA and use USer id&amp;nbsp; instead of source address in the Palo Alto?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What we want is instead of source IP address we can config the user id.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 01 Feb 2019 04:51:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa-to-cisco-asa-site-to-site-ipsec-with-source-as-user-id/m-p/248399#M70648</guid>
      <dc:creator>MP18</dc:creator>
      <dc:date>2019-02-01T04:51:55Z</dc:date>
    </item>
    <item>
      <title>Re: PA to Cisco ASA Site to Site IPSEC with source as user id  instead of IP address</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa-to-cisco-asa-site-to-site-ipsec-with-source-as-user-id/m-p/248536#M70683</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Can you expand you your question? If you mean what traffic can pass, then yes. Just make the other side of the VPN a different zone then apply the policies based on zone of VPN and end users, etc.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;</description>
      <pubDate>Fri, 01 Feb 2019 21:46:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa-to-cisco-asa-site-to-site-ipsec-with-source-as-user-id/m-p/248536#M70683</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2019-02-01T21:46:25Z</dc:date>
    </item>
    <item>
      <title>Re: PA to Cisco ASA Site to Site IPSEC with source as user id  instead of IP address</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa-to-cisco-asa-site-to-site-ipsec-with-source-as-user-id/m-p/248555#M70692</link>
      <description>&lt;P&gt;yes VPN has two zones one for user traffic coming from our side then tunnel zone going to vendor.&lt;/P&gt;&lt;P&gt;I need to apply on our zone user id not the source subnets as they are many.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 01 Feb 2019 23:25:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa-to-cisco-asa-site-to-site-ipsec-with-source-as-user-id/m-p/248555#M70692</guid>
      <dc:creator>MP18</dc:creator>
      <dc:date>2019-02-01T23:25:06Z</dc:date>
    </item>
    <item>
      <title>Re: PA to Cisco ASA Site to Site IPSEC with source as user id  instead of IP address</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa-to-cisco-asa-site-to-site-ipsec-with-source-as-user-id/m-p/248569#M70696</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/75039"&gt;@MP18&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;You'll actually have to spend more time detailing what exactly you want here; because I've now read this a few times and I frankly still have no idea.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you want user-id for an entire zone, you simply enable user-id on the zone configuration and leave the default 'Included Networks' set to any.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 02 Feb 2019 04:02:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa-to-cisco-asa-site-to-site-ipsec-with-source-as-user-id/m-p/248569#M70696</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2019-02-02T04:02:31Z</dc:date>
    </item>
    <item>
      <title>Re: PA to Cisco ASA Site to Site IPSEC with source as user id  instead of IP address</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa-to-cisco-asa-site-to-site-ipsec-with-source-as-user-id/m-p/248572#M70699</link>
      <description>&lt;P&gt;You got it what i want was user names under user in the security policy.&lt;/P&gt;</description>
      <pubDate>Sat, 02 Feb 2019 04:06:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa-to-cisco-asa-site-to-site-ipsec-with-source-as-user-id/m-p/248572#M70699</guid>
      <dc:creator>MP18</dc:creator>
      <dc:date>2019-02-02T04:06:20Z</dc:date>
    </item>
  </channel>
</rss>

