Paloalto to Firebox

Reply
Highlighted
L1 Bithead

Paloalto to Firebox

Any know issues with an ipsec VPN connection between a PA-500 to a Watchguard Firebox?


Accepted Solutions
Highlighted
L3 Networker

Hello, there is no known issues with setting up Watchgaurd with the PaloAlto device.  You should be able to set it up with the PAN device.

Regards,

Oliver

View solution in original post


All Replies
Highlighted
L4 Transporter

I know this isn't a direct and particularly useful answer, but I've recently setup a VPN with both a McAfee/Secure Computing Sidewinder, and with a Juniper SSG ScreenOS device, and on the PAN side of things I simply followed their guide and to my surprise (as someone who hasn't played with VPN's much) it pretty much worked fine first time - so unless the Firebrick does something weird I don't see you should have any problem.

Highlighted
L3 Networker

Hello, there is no known issues with setting up Watchgaurd with the PaloAlto device.  You should be able to set it up with the PAN device.

Regards,

Oliver

View solution in original post

Highlighted
Not applicable

I recently encountered issue connecting to firebox as well, and from the system log in PA, it show no proposal chosen.  We then disabled PFS and the tunnel came up with no issue. Hope this helps.

Highlighted
L6 Presenter

I documented the IPSec configuration between Palo Alto F/W and Watchguard's while running version PAN-OS 2.0.  The configuration should work with later OS release.  Please use this as a reference.

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!