Azure IPSec Gateway not establishing connect with Palo Alto FW

Freddy Calderon 20 Reputation points
2023-08-24T19:19:00.0033333+00:00

Hello! I created the whole 9-yard network, such as Local Network Gateway, Virtual Network, Virtual Network Gateway, Public IP address, and connection (all in the same location), and I configured each resource. I went to my Palo Alto at the corp. office and I cannot establish a S2S IPSec connection with Palo Alto FW.

Any ideas why it can't?

Note: We already have an Azure S2S IPSec with our company Azure tenant and the connection is good there.

Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,788 questions
{count} votes

Accepted answer
  1. KapilAnanth-MSFT 49,536 Reputation points Microsoft Employee Moderator
    2023-08-29T13:32:32.0866667+00:00

    @Freddy Calderon

    Welcome to the Microsoft Q&A Platform. Thank you for reaching out & I hope you are doing well.

    I understand that you are not able to establish a VPN Connection with Azure VPN Gateway and your OnPrem device.

    First, please make sure the OnPrem device is validated:

    You can also download the OnPrem Device Configuration file from the VPN Gateway

    After the above steps, if the issue still persists, you must check the Azure VPN Gateway logs and OnPrem device Logs.

    • Check the error message you are receiving in the OnPrem device
    • Is the OnPrem device receiving packet from Azure Gateway?
    • Or is the OnPrem device able to send traffic to the Gateway?
      • If yes, what was the response?
    • Please check the Phase1 logs and see if there are any issues.

    For VPN Gateway side logs

    Should there be any follow-up questions or concerns, please let us know and we shall try to address them.

    Cheers,

    Kapil


    Please Accept an answer if correct. Original posters help the community find answers faster by identifying the correct answer.

    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.