<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Internal Gateway Tunnel Mode in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/internal-gateway-tunnel-mode/m-p/252147#M71688</link>
    <description>&lt;P&gt;What are the implications of using Internal gateways in Tunnel mode? I have 3 Palos on-prem at my datacenters. I have 7 total locations connected via MPLS.&amp;nbsp; I am thinking about using the Internal Gateways in Tunnel mode to prevent cross talk within subnets and force all communications to go through the firewalls.&amp;nbsp; Thoughts?&lt;/P&gt;</description>
    <pubDate>Mon, 04 Mar 2019 14:04:39 GMT</pubDate>
    <dc:creator>ebrookman</dc:creator>
    <dc:date>2019-03-04T14:04:39Z</dc:date>
    <item>
      <title>Internal Gateway Tunnel Mode</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-gateway-tunnel-mode/m-p/252147#M71688</link>
      <description>&lt;P&gt;What are the implications of using Internal gateways in Tunnel mode? I have 3 Palos on-prem at my datacenters. I have 7 total locations connected via MPLS.&amp;nbsp; I am thinking about using the Internal Gateways in Tunnel mode to prevent cross talk within subnets and force all communications to go through the firewalls.&amp;nbsp; Thoughts?&lt;/P&gt;</description>
      <pubDate>Mon, 04 Mar 2019 14:04:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-gateway-tunnel-mode/m-p/252147#M71688</guid>
      <dc:creator>ebrookman</dc:creator>
      <dc:date>2019-03-04T14:04:39Z</dc:date>
    </item>
    <item>
      <title>Re: Internal Gateway Tunnel Mode</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/internal-gateway-tunnel-mode/m-p/252184#M71699</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Besides the additional traffic this may cause and additional CPU/Memory on the PAN, I dont see why you couldnt perform this. Sounds like you are trying to follow the Zero Trust model. I fully agree with this model, just make sure your PAN's are speced for the sessions and bandwidth.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Mon, 04 Mar 2019 17:23:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/internal-gateway-tunnel-mode/m-p/252184#M71699</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2019-03-04T17:23:39Z</dc:date>
    </item>
  </channel>
</rss>

