Monday, May 3, 2021

Problems with an IPSEC tunnel coming up but not passing traffic.

Hi all,

So I have a Palo Alto firewall in which I've configured an IPSEC tunnel that goes to a cellular modem.

The IPSEC tunnel doesn't have any problem coming up, but it cannot pass traffic.

Each end of the tunnel is on a static WAN IP.

I get no ESP traffic on tcpdumps on either side.

There are no firewall rules on either side which could be causing this.

Not that it really matters, but the routing tables can't be the issue.

Is there any reason why this could be happening given my setup? Mind you, I have this exact same config on an identical set of devices that is running smoothly.

Network A LAN; 10.10.21.1/24

LAN Clients;

10.10.21.44

Network A (Tunnel Configuration)

Local Network: 10.10.21.44/24

Remote Network(s): 192.168.0.0/8, 0.0.0.0/8, 10.220.0.0/8

--------------------------

Network B LAN; 192.168.0.0/8

Network B (Tunnel Configuration)

Remote Network(s): 10.10.21.44/32



No comments:

Post a Comment