SSL-VPN gateway problem on PPPoE enabled interface

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

SSL-VPN gateway problem on PPPoE enabled interface

L0 Member

Hi,

I have a PAN behind the ADSL modem. ADSL modem is configured in bridge mode.

I configured ethernet1/6 interface to get IP address via PPPoE with a static IP address specification.

But I see the IP address of this interface as dynamic (PPPoE).

When I want to configure SSL-VPN, I can't select etherne1/6 as a gateway interface

How can I solve this problem? Why does PAN consider IP address as dynamic (PPPoE) with a static IP configuration?

Thanks.

4 REPLIES 4

L3 Networker

in the advance settings there should be an area to set up static ip address for pppoe, if this is configured and you still see the palo alto device showing dynamic please call into support to further investigate.

Hi,

I opened a ticket about this issue.

I will keep the pan community updated.

Thanks.

Hi again,

I made a workaround by configuring an interface1/2 in trust zone as a gateway of SSL-VPN.

And I create a destination NAT for port 8443 on untrust ethernet1 to ethernet1/2 port 443

and create a source NAT for trust zone.

Then I can able to access my internal network. But i think this is not a good solution. I should be able to create a ssl-vpn directly on untrust interface.

Thanks.

L0 Member

I created a ticket about this issue.

Engineering said that SSL-VPN on PPPoE interface is not supported.

Just, I wanted to inform the community.

Thanks.

  • 3876 Views
  • 4 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!