Hi Team,
we are trying to establish route based vpn with palo alto firewall as requirement is to have automatic tunnel and traffic failover from pa side as they are using 2 isp.
on palo alto side, they configured static route with path monitoring to track the ip so incase that ip is unreachable, it failover to secondary tunnel.
i want to know is this can be achieved through static routes. On palo alto side, failover happen but when traffic comes to checkpoint it still sending reply traffic through primary tunnel. Is there any way we can configure something like path monitoring that is in pa to monitor there tunnel interface ip?
Thanks