- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
07-02-2019 08:41 AM
I'm trying to create an internal gateway to be able to capture User ID fully and start creating User ID based rules. I created the dns records and put the gateway on a loopback interface on the firewall that is in the internal trusted zone. I have done the cert work and confirmed that the name resolution is working.
When looking at the logs it says "Failed to ssl connect to 'ip address' .
When looking at the connection tab on the global protect client it is showing both the internal and external gateways but it's not showing authenticated on either. When I connected to an external network the external gateway connects and authenticates so I believe at least the Portal is working.
07-02-2019 12:26 PM
Hello,
Check the traffic logs and see if you are getting blocked somewhere.
Regards,
07-02-2019 03:21 PM
here are some hyperlinks to articles about internal gateway
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClH1CAK
This one is for mixing internal and external
review both and see if they fill in the blanks with anything.
We are here to assist you. Thanks.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!