When I edit my IPSec VPN IKE gateways I cannot see any IKEv2 column on the page and I cannot add one.
When looking at the IKE gateway configuration I can see IKE2 settings and my correct settings are there.
When I export the configuration and import into Panorama all of the IPSec tunnels are missing.
I can see the IPSec configurations in the exported configuration XML file.
Could this be a bug with Expedition or is IKEv2 not yet supported?
This is a Panorama to Panorama migration.
I will suggest you manage the VPN configuration directly in the Panorama instead of using Expedition. There are attributes, pre-shared keys for instance that will not work as well as new PANOS versions are not allowing to import them in plain text.
Also if you are migrating from one Panorama to another Panorama the PANOS export and import options should work for you without requiring importing and exporting the configuration in Expedition.
Once you have your configuration pushed to your Panorama you can download it to Expedition and do some optimization like removing duplicates and merging similar policies among other features Expedition can help with.
Hope this helps,
Thanks for the response. I've been thinking I may have to do the VPN manually. It seems the same may apply to the Globalprotect configurations as well.
We are actually migrating from one firewall platform to another and need to remap interfaces, etc. Expedition helps remove any errors in that regard. It's unfortunate the manual copy of VPN info will come with that human error factor.
I recommend contacting Expedition support or the vendor for assistance. It might be a bug or a compatibility issue. Ensure you're using the latest version and inquire about IKEv2 support for a smooth Panorama to Panorama migration.
you are correct, the same is applying to GP. Please configure this at your panorama as well as describey by @dpuigdomenec. As also mentioned you can import the config then to Expedition and do the optimisation from here.
Please let us know if you have any further questions.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!