After migration to Palo, seeing Exchange ActiveSync event ID 1040

Showing results for 
Show  only  | Search instead for 
Did you mean: 
Please sign in to see details of an important advisory in our Customer Advisories area.

After migration to Palo, seeing Exchange ActiveSync event ID 1040

L3 Networker

We migrated from a Cisco ASA platform this weekend to PA-3220 Active/Standby pair on Panos 10.0.8-h8.


We worked through minor issues during the process but had the network fully operational in about 3 hours.



One thing I notice since the conversion is MSExchange ActiveSync Event ID 1040 pretty consistent.  We have a fair number of employees with email on phones, and we still have Exchange on premise (we’ll move later in the year to the cloud).  

Here is the error (though I see ZERO issues on iPhone mail app to exchange)…. And I followed the traffic flow from my home IP (iPhone on WiFi) to Exchange and it’s detected as ssl, and inside that says web-based-email.


The average of the most recent heartbeat intervals [540] for request [Ping] used by clients is less than or equal to [540].
Make sure that your firewall configuration is set to work correctly with Exchange ActiveSync and direct push technology. Specifically, make sure that your firewall is configured so that requests to Exchange ActiveSync do not expire before they have the opportunity to be processed.

  • 0 replies
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!