- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
11-16-2020 07:28 AM
Hi,
we have a site on an already trusted zone, we require to allow GRE traffic through the FW to enable our wireless access points communciate back to the wireless controller (aruba). I have created a custom security policy to allow this gre and papi (aruba protocol), however the GRE traffic is being dropped/denied by a default interzone policy.
Any help is greatly appreciated.
11-17-2020 05:22 AM
Hi @DForde ,
I'm guessing that the traffic isn't exactly matching the security policy you've configured.
I'd verify the denied sessions and confirm if it exactly matches the security policy you've configured (zones, apps, etc).
Cheers,
-Kiwi.
06-09-2021 11:04 PM
We currently have similar situation in VM series, PAN OS 9.0.11. some GRE gets thru, some gets dropped. have case about it, but takes time to get an engineer allocated.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!