- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
06-08-2020 02:10 AM - edited 06-08-2020 02:11 AM
Hi Team!
I have simple topology ( pls see at the picture).
I configured eth 1/1 ( for PC2) as L2 interface, but without Security Zone.
I want to ping from PC2 - default Gateway (AE1.121) and PC1.
Is it possible to set up Palo Alto like this?
Pls, give me details, I can't find any use cases with the similar configuration.
Thank you in advance.
06-11-2020 01:54 PM
I don't think the L2 port will be able to communicate with an L3 interface.
When you have an L2 subnet and you want communication in/out, you'll need a vlan interface, not an L3 interface.
Why are you connecting a PC directly to the firewall?
06-15-2020 02:54 PM
Hello,
You will need a zone and policies that allow that traffic. Check the logs to see why the traffic is not making it.
Regards,
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!