How to setup VM-Series behind Azure Public Load Balancer using Loopback

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

How to setup VM-Series behind Azure Public Load Balancer using Loopback

L0 Member

I'm trying to set up two firewalls behind an azure public load balancer. I found a set up on Git Hub that basically says you can do it if you use active/standby and floating IP and you essentially map the front side of the load balancers IP to the firewall on a loop back. The health checks keep the secondary box down because it's in standby mode and allegedly the tunnels should be able to be terminated on the loop back interface. I am trying to also be able to initiate outbound traffic through the tunnel as well. What I have found us far is that if I initiate traffic from on premise, I can actually bring up the tunnel, but no traffic is seeing going into the tunnel from an encapsulation perspective. However, once the tunnel comes up, I can send traffic from inside of azure through the firewall, I see it hit my on premise device, but it never gets back into azure through that firewall. 

 

I thus far have not figured this out, seems doable but I have never tried this before and it's not wokring.. Any help would be appreciated . Here's the link to the git hub repo..  https://github.com/PaloAltoNetworks/azure-terraform-vmseries-fast-ha-failover

Thanks in advance

0 REPLIES 0
  • 594 Views
  • 0 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!