How to configure Site to site VPN beteween AWS and Palo Alto Firewall

There are many ways to create Site to site VPN beteween AWS and Palo Alto Firewall. You can copy and paste the downloaded configuration from CLI; you can use use GUI. In this article we will show you how to copy an existing Site to site VPN configuration using GUI. In our situation, the client has two Internet Providers, AT&T and Comcast. They have configured AT&T VPN and it works. They also test Comcast VPN on different Palo Alto Firewall VPN to AWS meaning the AWS VPN configuration is ready.

  1. Configure IKE Gateways: Navigate to Network>Network profiles. Copy the AT&T Profile, for example ike-vpn-a52639b7-0. and Past and modify it. Please enter the Pre-shared Key.

2. Configure IPSec Crypto: do the same at IPSec Crypto as shown the screenshots.

3. Configure IKE Cryto: do the same as shown screenshot.

4. IPSec Tunnels: Navigate to Network>IPSec Tunnels. Copy the AT&T settings and past it as Comcast settings. Modify the Tunnel Interface, IKE Gateway, and IPSec Cryto Profile.

5. Now, test it.

Learning objectives of Administer containers in Azure in Exam AZ-103

  • Create and manage your containers
  • Describes the benefits of using Docker containers
  • Use or not use Docker containers
  • Deploy an Azure container registry
  • Run Docker containers with Azure Container Instances
  • Run a containerized web app with Azure App Service
  • Understand Azure Kubernetes Service
Microsoft Certified: Azure Administrator Associate – Exam AZ-103 Part 13
Microsoft Certified: Azure Administrator Associate – Exam AZ-103 Part 14
Microsoft Certified: Azure Administrator Associate – Exam AZ-103 Part 15
Microsoft Certified: Azure Administrator Associate – Exam AZ-103 Part 16
Microsoft Certified: Azure Administrator Associate – Exam AZ-103 Part 17
Microsoft Certified: Azure Administrator Associate – Exam AZ-103 Part 18
Microsoft Certified: Azure Administrator Associate – Exam AZ-103 Part 19