Situation: The client configures Pola Alto Firewall failover. Now, they have a problem to access the AWS site to site VPN. They would like to know the reason.
2. Search for date and time which lost the connection, and Suntype eq VPN.
3. We do see critical under Severity on Tunnel 3 and 4, which indicates there is a connectivity issue.
4. We also see Severity low showing IKE phase-1 SA is down determined by DPD, which means PA firewall works fine and keeps sending traffics to other side.
.
Conclusion:: PA Firewall works fine and it is other part issue.