SSL-VPN gateway problem on PPPoE enabled interface

Reply
L0 Member

SSL-VPN gateway problem on PPPoE enabled interface

Hi,

I have a PAN behind the ADSL modem. ADSL modem is configured in bridge mode.

I configured ethernet1/6 interface to get IP address via PPPoE with a static IP address specification.

But I see the IP address of this interface as dynamic (PPPoE).

When I want to configure SSL-VPN, I can't select etherne1/6 as a gateway interface

How can I solve this problem? Why does PAN consider IP address as dynamic (PPPoE) with a static IP configuration?

Thanks.

Tags (2)
Highlighted
L3 Networker

Re: SSL-VPN gateway problem on PPPoE enabled interface

in the advance settings there should be an area to set up static ip address for pppoe, if this is configured and you still see the palo alto device showing dynamic please call into support to further investigate.

L0 Member

Re: SSL-VPN gateway problem on PPPoE enabled interface

Hi,

I opened a ticket about this issue.

I will keep the pan community updated.

Thanks.

L0 Member

Re: SSL-VPN gateway problem on PPPoE enabled interface

Hi again,

I made a workaround by configuring an interface1/2 in trust zone as a gateway of SSL-VPN.

And I create a destination NAT for port 8443 on untrust ethernet1 to ethernet1/2 port 443

and create a source NAT for trust zone.

Then I can able to access my internal network. But i think this is not a good solution. I should be able to create a ssl-vpn directly on untrust interface.

Thanks.

L0 Member

Re: SSL-VPN gateway problem on PPPoE enabled interface

I created a ticket about this issue.

Engineering said that SSL-VPN on PPPoE interface is not supported.

Just, I wanted to inform the community.

Thanks.

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!