IPsec Site to Site VPN between Palo Alto On-premises and AWS over BGP

Поделиться
HTML-код
  • Опубликовано: 6 фев 2025
  • Configure IPsec VPN over BGP between Palo Alto and AWS.
    Testing with Palo Alto on eve-ng and ubuntu server instance in AWS

Комментарии • 21

  • @reginrnair9176
    @reginrnair9176 Год назад +1

    great work, well explained . Thank you

  • @stevengutierrez605
    @stevengutierrez605 Год назад

    This was great men thank you

  • @Bormanb23
    @Bormanb23 Год назад

    Awesome video

  • @Bormanb23
    @Bormanb23 Год назад

    Would you know how to give one tunnel priority over the other? (active/standby) in Palo? I see you configured the tunnel monitor

    • @techfrapi
      @techfrapi  Год назад

      AWS does asymmetric routing and is the recommended way of doing it, but you should be able to achieve it over the BGP to preferer one tunnel over the other

  • @ihsanfavy9265
    @ihsanfavy9265 9 месяцев назад

    why we need additional rule like ike and ipsec, because while we configure the normal site2site , those rule doesn't need it

    • @techfrapi
      @techfrapi  9 месяцев назад

      Which additional rules exactly

  • @rouellmamaril2436
    @rouellmamaril2436 Год назад

    how did you connect that aws-lan to eve-ng?

    • @techfrapi
      @techfrapi  Год назад +1

      It's not directly connected to EVE-ng, I did it this way to represent my topology.
      If you want to use it with eve-ng you need to do port forwarding on you router on port 500 and 4500 coming from the aws IPs

    • @vishnuk9523
      @vishnuk9523 7 месяцев назад

      @@techfrapi I'm using same setup to build ipsec tunnel to aws from fortigate firewall using eve-ng lab but tunnel not coming up. I'm using private ip as wan1 in fortigate to form ipsec with aws. How to achive can you help me ?

  • @AlanMartinez-do9jh
    @AlanMartinez-do9jh 8 месяцев назад

    Can you do any example between Azure & Palo Alto, with 2 VPN's IPSec Active/Active with Gateway BGP? Please

    • @techfrapi
      @techfrapi  4 месяца назад +1

      will try to make one, once i have a bit of free time

  • @jerseyjeeper1575
    @jerseyjeeper1575 Год назад

    Excellent thanks!

  • @atiyousefiattaei4103
    @atiyousefiattaei4103 Год назад

    Thank you very much!

  • @fabriciotorres
    @fabriciotorres Год назад

    Thank you so much!