<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IPSec from Palo Alto firewall to Harmony Connect in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/IPSec-from-Palo-Alto-firewall-to-Harmony-Connect/m-p/180576#M566</link>
    <description>&lt;P&gt;Message clearly indicated phase 1 IKE failure. Did you confirm all settings match? What guide did you follow?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Wed, 10 May 2023 23:47:36 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2023-05-10T23:47:36Z</dc:date>
    <item>
      <title>IPSec from Palo Alto firewall to Harmony Connect</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/IPSec-from-Palo-Alto-firewall-to-Harmony-Connect/m-p/180575#M565</link>
      <description>&lt;P&gt;Is there a guide to connect Palo Alto device as branch to Harmony Connect?&lt;/P&gt;&lt;P&gt;I got one configured yet it won't connect despite following the instructions provided by Harmony Connect&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;STRONG&gt;Blade:&amp;nbsp;&lt;SPAN&gt;VPN&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;STRONG&gt;Action:&amp;nbsp;&lt;SPAN&gt;Reject&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;STRONG&gt;More&amp;nbsp;&lt;SPAN&gt;Status:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV&gt;&lt;STRONG&gt;Main Mode Failed to match proposal: Transform: AES-256, SHA1, Pre-shared secret, Group 2 (1024 bit); Reason: Wrong value for: Key Length&lt;/STRONG&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;STRONG&gt;Reject Category:&lt;/STRONG&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV&gt;&lt;STRONG&gt;IKE failure&lt;/STRONG&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;On Palo end it fails with&amp;nbsp;&lt;BR /&gt;&lt;STRONG&gt;'IKE phase-1 negotiation is failed as initiator, main mode. Failed SA: x.x.x.x[500]-x.x.x.x[500] cookie:7850fef71849de60:0000000000000000. Due to timeout.&lt;/STRONG&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 10 May 2023 23:09:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/IPSec-from-Palo-Alto-firewall-to-Harmony-Connect/m-p/180575#M565</guid>
      <dc:creator>jdoe1979</dc:creator>
      <dc:date>2023-05-10T23:09:23Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec from Palo Alto firewall to Harmony Connect</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/IPSec-from-Palo-Alto-firewall-to-Harmony-Connect/m-p/180576#M566</link>
      <description>&lt;P&gt;Message clearly indicated phase 1 IKE failure. Did you confirm all settings match? What guide did you follow?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 10 May 2023 23:47:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/IPSec-from-Palo-Alto-firewall-to-Harmony-Connect/m-p/180576#M566</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-05-10T23:47:36Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec from Palo Alto firewall to Harmony Connect</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/IPSec-from-Palo-Alto-firewall-to-Harmony-Connect/m-p/180676#M568</link>
      <description>&lt;P&gt;There's no guide from Harmony Connect for Palo Alto NGFW. I used the parameters from UI to configure ike/ipsec options.&lt;/P&gt;</description>
      <pubDate>Thu, 11 May 2023 20:29:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/IPSec-from-Palo-Alto-firewall-to-Harmony-Connect/m-p/180676#M568</guid>
      <dc:creator>jdoe1979</dc:creator>
      <dc:date>2023-05-11T20:29:27Z</dc:date>
    </item>
  </channel>
</rss>

