- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
07-14-2021 04:06 PM
Good afternoon, first of all, thank you very much for your support.
I have the following scenario, and I ask for your support so you can help me to validate if its configuration is feasible:
- Palo Alto ---Interface on Palo Alto WAN type PPPoE ( with Dynamic Public IP ) ----------Generate IPSEC VPN Tunnel------------ with Palo Alto with WAN Interface with Static Public IP.
Detail/Summary:
- VPN tunnel between a Palo Alto with a WAN interface configured as PPPoE ( with Dynamic Public IP ) against a Palo Alto device with a static Public IP.
Please your support to confirm if it is technically feasible and the details to consider when making the configurations.
I remain attentive, thank you, best regards.
07-15-2021 04:56 AM
this is perfectly possible
set the dynamic peer to dynamic, remote to static and enter a 'local ID'
on the static peer, configure the static IP and set the peer to dynamic, then set the 'remote ID' to the same value you set in the dynamic host. also set the static peer to 'passive'
and that's it 🙂
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!