IKEv1 Site-to-Site tunnel between Cisco ASA and Palo Alto NGFW — Part 2
Mar 20, 2022
A step by step guide in configuring site-to-site tunnel between two firewalls (ASA and Palo Alto).
Part 2 — Configuring Palo Alto NGFW
- Configure zones for the trusted, untrusted and VPN zone.
2. Configure virtual route and default route.
3. Configure local and remote addresses.
4. Configure IKE Crypto Policy (Profile) and Crypto Gateway
4. Configure IPsec Crypto Profile
5. Configure IPsec tunnel
6. Configure Security Policy that will allow the traffic bi-directional.
7. Verification