<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 'unknown ikev2 peer - Azure in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/unknown-ikev2-peer-azure/m-p/309539#M80211</link>
    <description>&lt;P&gt;We've already figured out the problem. We have in Azure a GW configured as active/active with 2 IPs. In our part we have 2 APs configured in active/passive but with 2 public IPs from 2 different operators.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Operator 1 -tunnel - IP1 Azure&lt;BR /&gt;Operator 2 -tunnel - IP2 Azure.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It turns out that Azure tries to connect IP2 with Operator1 and IP1 with Operator2. This is the normal operation of Azure.&lt;/P&gt;&lt;P&gt;Because I only have a virtual routing I can not perform these tunnels.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 05 Feb 2020 09:30:55 GMT</pubDate>
    <dc:creator>Sistemas_SanLucar</dc:creator>
    <dc:date>2020-02-05T09:30:55Z</dc:date>
    <item>
      <title>'unknown ikev2 peer - Azure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/unknown-ikev2-peer-azure/m-p/306126#M79548</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have several Azure sites with an active-active gateway and 2 different ip.&lt;BR /&gt;I have a Palo Alto pa-820 with 8.1.12 firmware, 2 interfaces with 2 different communication providers and different public ip.&lt;BR /&gt;What makes a tunnel ikev2, bgp and peers.&lt;/P&gt;&lt;P&gt;Scheme:&lt;/P&gt;&lt;P&gt;pa-820-Supplier1-IP1---- IP1-AzureGW1&lt;BR /&gt;pa-820-Supplier2-IP2----IP2-AzureGW1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In Azure I have configured a vnet (x.x.0.0/16) and in this vnet I have 2 subnets (gateway x.x.255.224/27 and servers x.x.60.0/24)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I create in the tunnel the corresponding proxy-id:&lt;/P&gt;&lt;P&gt;subnet_local1_x.x.255.224/27&lt;BR /&gt;subnet_local2 x.x.255.224/27&lt;BR /&gt;...&lt;BR /&gt;subnet_local1 x.x.60.0/24&lt;BR /&gt;subnet_local2 x.x.60.0/24&lt;BR /&gt;...&lt;/P&gt;&lt;P&gt;This error appears repeatedly in the system log:&lt;/P&gt;&lt;P&gt;eventid:&amp;nbsp; ike-generic-event&lt;/P&gt;&lt;P&gt;description:&amp;nbsp; 'unknown ikev2 peer'&lt;/P&gt;&lt;P&gt;subtype:&amp;nbsp; vpn&lt;/P&gt;&lt;P&gt;severity: informational&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If I execute command "&lt;SPAN&gt;tail follow yes mp-log ikemgr.log&lt;/SPAN&gt;" its shows:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;020-01-09 14:13:07.113 +0100 [PWRN]: x.x.x.x[500] - z.z.z.z[500]:0x10343ab0 unknown ikev2 peer&lt;BR /&gt;2020-01-09 14:13:08.099 +0100 [PWRN]: x.x.x.x[500] - t.t.t.t[500]:0x10345950 unknown ikev2 peer&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The tunnel's working. But I don't know why it indicates this error.&lt;/P&gt;&lt;P&gt;Can you help me?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jan 2020 13:27:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/unknown-ikev2-peer-azure/m-p/306126#M79548</guid>
      <dc:creator>Sistemas_SanLucar</dc:creator>
      <dc:date>2020-01-09T13:27:50Z</dc:date>
    </item>
    <item>
      <title>Re: 'unknown ikev2 peer - Azure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/unknown-ikev2-peer-azure/m-p/306140#M79550</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="photo2.png" style="width: 594px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23383iF1471195F0289461/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="photo2.png" alt="photo2.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="photo3.png" style="width: 318px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23380i9FEFD61069B4A7B7/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="photo3.png" alt="photo3.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="photo4.png" style="width: 647px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23382i97FA2238F253FDE4/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="photo4.png" alt="photo4.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="photo5.png" style="width: 616px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23381i4E19934415282607/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="photo5.png" alt="photo5.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="photo6.png" style="width: 282px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23384i147895470C506AB9/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="photo6.png" alt="photo6.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="photo7.png" style="width: 589px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23385iC4077E8F14B3CAFD/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="photo7.png" alt="photo7.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="photo8.png" style="width: 999px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23386i934CBC53A76EFE89/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="photo8.png" alt="photo8.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jan 2020 13:39:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/unknown-ikev2-peer-azure/m-p/306140#M79550</guid>
      <dc:creator>Sistemas_SanLucar</dc:creator>
      <dc:date>2020-01-09T13:39:38Z</dc:date>
    </item>
    <item>
      <title>Re: 'unknown ikev2 peer - Azure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/unknown-ikev2-peer-azure/m-p/306570#M79635</link>
      <description>&lt;P&gt;i have the same issue here where IKE is connected but IPSEC is not when connecting to Azure. received a lot of error with " unknwon ikev2 peer"&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jan 2020 01:58:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/unknown-ikev2-peer-azure/m-p/306570#M79635</guid>
      <dc:creator>Herwan</dc:creator>
      <dc:date>2020-01-14T01:58:24Z</dc:date>
    </item>
    <item>
      <title>Re: 'unknown ikev2 peer - Azure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/unknown-ikev2-peer-azure/m-p/309539#M80211</link>
      <description>&lt;P&gt;We've already figured out the problem. We have in Azure a GW configured as active/active with 2 IPs. In our part we have 2 APs configured in active/passive but with 2 public IPs from 2 different operators.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Operator 1 -tunnel - IP1 Azure&lt;BR /&gt;Operator 2 -tunnel - IP2 Azure.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It turns out that Azure tries to connect IP2 with Operator1 and IP1 with Operator2. This is the normal operation of Azure.&lt;/P&gt;&lt;P&gt;Because I only have a virtual routing I can not perform these tunnels.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 05 Feb 2020 09:30:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/unknown-ikev2-peer-azure/m-p/309539#M80211</guid>
      <dc:creator>Sistemas_SanLucar</dc:creator>
      <dc:date>2020-02-05T09:30:55Z</dc:date>
    </item>
  </channel>
</rss>

