cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Who Me Too'd this topic

Palo Alto troubleshooting tool for IPsec

L1 Bithead

Hello

 

I established an Ipsec tunnel (policy based) between palo Alto and Cisco FW.

phase 1 & phase 2 are up and running but trying to transfer data, fail.

Capture packet (merge recieved and transmit) shown

Source : SYN

Dest : SYN ACK

And then Dest :  retransmit SYN ACK.

 

If this capture is within transmit pcap, this mean the re transmission packet have been forwarded  into the IPSEC Tunnel (egress interface) ?

transmit.png

 

Previoulsy, I was working with Checkpoint and able to use command line FW MONITOR to know if my packet was forward/encrypted to the tunnel. (this mean problem is located on FW itself or after the FW.

Is it a tool that permitting to know if this SYN ACK packet is forwarded into Interface tunnel or not ?

 

Regards

 

 

 

Who Me Too'd this topic