Troubleshooting Pola Alto Firewall connectivity issue

Situation: The client configures Pola Alto Firewall failover. Now, they have a problem to access the AWS site to site VPN. They would like to know the reason.

Troubleshooting: 1. Go to Monitor>Logs>System.

2. Search for date and time which lost the connection, and Suntype eq VPN.

3. We do see critical under Severity on Tunnel 3 and 4, which indicates there is a connectivity issue.

4. We also see Severity low showing IKE phase-1 SA is down determined by DPD, which means PA firewall works fine and keeps sending traffics to other side.

.

5. After the a few minutes, it shows Tunnel 3 and 4 is up.

Conclusion:: PA Firewall works fine and it is other part issue.

Published by

Bob Lin

Bob Lin, Chicagotech-MVP, MCSE & CNE Data recovery, Windows OS Recovery, Networking, and Computer Troubleshooting on http://www.ChicagoTech.net How to Install and Configure Windows, VMware, Virtualization and Cisco on http://www.HowToNetworking.com

Leave a Reply