06-25-2021 05:49 AM
Hi Guys,
Just would like to ask for your advice about the issue I have.
We have a remote offices in the UK with IT Deskside guys onsite. These IT Deskside guys when inside the office network tries to remote a user who is working from home - connected via AnyConnect VPN, the IT Deskside guys can connect to the remote user via the TeamViewer, but when they are start navigating the IT Deskside cannot see what is happening. Though the remote user can see the actions navigated by the IT Deskside guys.
Here are my isolation did to test:
06-25-2021 06:03 AM
First place to start capture logs where the VPN termniated, to see how this is behaving Accepted or denied ? how is the routing ?
06-25-2021 06:44 AM
hi @balaji.bandi thank you for your response to start the capture logs. I checked the logs on Palo Alto for the rule it is hitting, I can see it is allowed. Though it has a Session End Reason "unknown" this is to port 59310. The other traffic is to 55055 on the same rule hit with Session End Reason "aged-out"
I don't see much information when I explore the logs.
06-25-2021 07:56 AM
If the GUI not givng enough ifnormation you need to command level capture whole picture of the transaction to idea what is wrong.
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClTJCA0
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide