<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Multiple global protect portals and gateway in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/multiple-global-protect-portals-and-gateway/m-p/331196#M83888</link>
    <description>&lt;P&gt;Just pass the traffic from one vr to the other.&amp;nbsp; IE Subnet x.x.x.x/xx is on VR1.&amp;nbsp; You just have to be sure to pass the traffic back to the other VR for the return.&lt;/P&gt;</description>
    <pubDate>Tue, 02 Jun 2020 20:21:45 GMT</pubDate>
    <dc:creator>PaulStein</dc:creator>
    <dc:date>2020-06-02T20:21:45Z</dc:date>
    <item>
      <title>Multiple global protect portals and gateway</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/multiple-global-protect-portals-and-gateway/m-p/316861#M81457</link>
      <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;&lt;P&gt;we have 2 palo 850 with 2 isp:&lt;/P&gt;&lt;P&gt;primary 1.1.1.1/28&amp;nbsp;&lt;/P&gt;&lt;P&gt;backup&amp;nbsp; 2.2.2.2/28&lt;/P&gt;&lt;P&gt;most of the zones navigate with the primary and&amp;nbsp;few with the backup&lt;/P&gt;&lt;P&gt;We have a failover to the backup in case the primary isp goes down.&lt;/P&gt;&lt;P&gt;We have globalprotect portal and gateway with a loopback interface all on the primary (1.1.1.5/32)&amp;nbsp; vpn.domain.it&lt;/P&gt;&lt;P&gt;This days we are all smartworking because of the global pandemie ,conected via the global protect client .&lt;/P&gt;&lt;P&gt;Our concern is that if the primary isp goes down we have to suspend our smartworking because we can not connect anymore .I read the discussions and documentation on multiple isp globalprotect configuration faillover and all talk about configuring 2 VR and i must say that they are too complicated for my level of knowledge and i don't want to mess up the actual working configuration.&amp;nbsp;&lt;/P&gt;&lt;P&gt;In order to solve the problem i tryed to clone the portal gateway and loopback on the backup isp(2.2.2.5/32)vpn2.domain.it, but it doesn't work. I see the requests in allow but aged-out. Where am i wrong? Is it possible to have a seccond globalprotect vpn gateway?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 22 Mar 2020 22:03:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/multiple-global-protect-portals-and-gateway/m-p/316861#M81457</guid>
      <dc:creator>Matteo</dc:creator>
      <dc:date>2020-03-22T22:03:02Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple global protect portals and gateway</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/multiple-global-protect-portals-and-gateway/m-p/317181#M81530</link>
      <description>&lt;P&gt;So after hours &amp;nbsp;of tests i ended up with this problem. I configured and test The solution of using 2 virtual router( i can connect with Globalprotect client) but i have The problem that alll routes are on The first VR so i cant &amp;nbsp;reach my lan. I backend up and restore The configurații with one router but în this case it has 2 0.0.0.0/0 routes for each ISP controlled by metric so i think it only works when The primary ISP goes down. I Reed somethig about dynamic routing and ospf but i cant understand how to make it work.&lt;/P&gt;</description>
      <pubDate>Thu, 19 Mar 2020 01:13:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/multiple-global-protect-portals-and-gateway/m-p/317181#M81530</guid>
      <dc:creator>Matteo</dc:creator>
      <dc:date>2020-03-19T01:13:06Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple global protect portals and gateway</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/multiple-global-protect-portals-and-gateway/m-p/331196#M83888</link>
      <description>&lt;P&gt;Just pass the traffic from one vr to the other.&amp;nbsp; IE Subnet x.x.x.x/xx is on VR1.&amp;nbsp; You just have to be sure to pass the traffic back to the other VR for the return.&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jun 2020 20:21:45 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/multiple-global-protect-portals-and-gateway/m-p/331196#M83888</guid>
      <dc:creator>PaulStein</dc:creator>
      <dc:date>2020-06-02T20:21:45Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple global protect portals and gateway</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/multiple-global-protect-portals-and-gateway/m-p/389225#M90606</link>
      <description>&lt;P&gt;Just to let everyone know that a Blog has been written about this subject here:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/blogs/multiple-globalprotect-portals-and-gateways/ba-p/360452" target="_blank" rel="noopener"&gt;https://live.paloaltonetworks.com/t5/blogs/multiple-globalprotect-portals-and-gateways/ba-p/360452&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please be sure to check it out.&lt;/P&gt;</description>
      <pubDate>Thu, 04 Mar 2021 21:42:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/multiple-global-protect-portals-and-gateway/m-p/389225#M90606</guid>
      <dc:creator>jdelio</dc:creator>
      <dc:date>2021-03-04T21:42:54Z</dc:date>
    </item>
  </channel>
</rss>

