Internet issues

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Internet issues

L1 Bithead
Dear all, 
I connect ISP directly to the Cisco switch and from the same Cisco switch I connect the outer ISP interface and connect To Firewall , the Firewall LAN interface again passes through the Cisco switch to the internal network.  Are there any compatibility issues between palo alto and Cisco switch?  which means i used cisco switch as media converter,  but after completing all configuration in PA460, still i didn't get any internet.
 
i need your help pls
 
what type configuration is required in cisco switch side?
is there any completability issue between cisco  switch and palo alto firewall? Not that just i only used Cisco switch for media converter purpose.
 
the interface in cisco side also showing up  but no internet in Network 
 
 the topology's is attached below 
 
Zola12_0-1746209698627.png

 

 
 
1 REPLY 1

L2 Linker

Hello @Zola12 ,

 

The quickest way is to check at the traffic logs: Monitor>Logs>Traffic. Do you see any traffic at all? Look at the "Detailed Log View" and see what is going on

 

You could also follow the following methodology: (bear in mind that you need to configure the FW interfaces, the zones (trust, untrust), the virtual router, the NAT policy and a security policy)

 

1. Document the vlan numbers, the IP subnets of your topology, the zones in your FW,  for better visibility and easier troubleshooting 

2. from the FW CLI,  ping the ISP Public IP and the internal Network. Does it work?

3. Check the routing table from the GUI: Network>Virtual Routers>default>More Runtime Stats. Is your default route configured? 

4. Check the Source NAT configuration. Policies>NAT. Did you configure Source NAT?

5. Check the Security Policies. Policies>Security. Did you configure a security policy? 

 

Regards

  • 335 Views
  • 1 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!