IPSec VPN from PA to Edge gateway

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

IPSec VPN from PA to Edge gateway

L4 Transporter

Is it possible to an IPSec VPN connection from a PA 5050 to t Edge gateway appliance and if so how is it done

5 REPLIES 5

Cyber Elite
Cyber Elite

hi @jdprovine

 

The description is a little vague, what is the edge gateway appliance exactly? (is it a router or a modem, does it support ipsec,..?)

 

Assuming it is a (mainstream) router it would be set up in pretty much the same way you'd set up a VPN tunnel to a remote peer

 

-ike properties and crypto map

-ipsec properties and crypto map

-proxyIDs if the peer uses policy based vpn configuration

Tom Piens
PANgurus - Strata specialist; config reviews, policy optimization

@reaper

 

I just found out about it in our vendors documentation and I think its this

 

https://www.youtube.com/watch?reload=9&v=eZo3eVGD5Wc

At 4:05 he mentions they support ipsec VPN, so that's great 😄

he does note that the vpn needs to be from the ESG to the firewall, but that doesn't matter much in the bigger picture (this is actually a good thing for troubleshooting)

 

here's a little video they created on how to set up VPN on their end, our end will look the same as any other remote-peer vpn: https://youtu.be/v8BDczWuPsc 

 

It looks like theyre defining local subnets, so you'll probably need to reproduce that on your firewall by setting proxyIDs

Tom Piens
PANgurus - Strata specialist; config reviews, policy optimization

@reaper

I will check out your video and I was thinking we would need proxy ID's, We are trying to set up access for Virtual desktops cloud services via VPN

@reaper

good video but a little hard to see with my old eyes

  • 2163 Views
  • 5 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!