Site-To-Site VPN with payed VPN Providers

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Site-To-Site VPN with payed VPN Providers

L1 Bithead

I would like to test this hypothetical scenario it is possible :

* I have an account with 3 vpn providers (i.e. NordVpn, PIA, Boleh)

* I would like to create 3 (or more) vpn tunnels (at least one tunnel with each vpn provider)

* I will route different traffics (route by source) to each vpn tunnel

 

Is it possible with Palo Alto?

Does anybody have I blog or document describing how to set up VPN Site-to-Site with VPN Companies like the ones I have listed above?

 

Thank you.

1 accepted solution

Accepted Solutions

Cyber Elite
Cyber Elite

@LeonardoMachado,

 

Yes it is possible. As you want to route traffic over different tunnels based on the source, you can use Policy Based Forwarding rule to do so. You just need to select desired tunnel interface as a Egress interface under Forwarding and next hop would be none.

 

Below few articles will help you to get details on VPN tunnel creation and PBF.

 

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClGkCAK

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClRzCAK

 

Hope it helps!

Mayur

M

View solution in original post

2 REPLIES 2

Cyber Elite
Cyber Elite

@LeonardoMachado,

 

Yes it is possible. As you want to route traffic over different tunnels based on the source, you can use Policy Based Forwarding rule to do so. You just need to select desired tunnel interface as a Egress interface under Forwarding and next hop would be none.

 

Below few articles will help you to get details on VPN tunnel creation and PBF.

 

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClGkCAK

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClRzCAK

 

Hope it helps!

Mayur

M

L0 Member

Hi, I'm trying to do this but can't get the PANs connection to Nord working for a site to site, did you get this working?

 

Cheers

  • 1 accepted solution
  • 2429 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!