sslvpn 4.0.x issue

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

sslvpn 4.0.x issue

L6 Presenter

Hi,

When configuring sslvpn we tried to use an Adsl modem which makes its public 1.1.1.1 NAT 443 to a local ip 172.16.2.1

this ip is PaloAlto's L3 interface.Default gateway of PaloAlto is 172.16.2.2 which is modem.

People can access to internet from PaloAlto with modem's public ip (NAT enabled on modem)

When we access to public ip of modem with https://1.1.1.1 no sslvpn page comes !

When we look to monitor I see traffic from my ip to 172.16.2.1 as ssl  allow

but no portal page comes what can this be ?

panos 4.0.10

4 REPLIES 4

Not applicable

Hi bulent

do you see https enabled in the management profile? when you do >show ssl-vpn flow    do you see your Portal name listed and the interface, tunnel it's associated to?

let me check and write back

thanks for help.good to see someone for 4.0.x Smiley Happy

portal.png

I did not enable https on interface because the document is telling do not

Hi,

No need activate https on interface. Please, first thing, confirm that if you are connected directly on same subnet as you PA's outside interface, portal is OK, if not, should be a SSL issue (maybe comming from cetifiat error depending of the error message). Next step, if it's work, doing the same from outside, work => OK, doesn't, routing issue.

rgds

V.

  • 2210 Views
  • 4 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!