Palo Alto BGP advertise (not connected public ip Blocks direct to PA ) Public IP Block
Good afternoon, I have the following doubt about how to complete this configuration, I have seen this with cisco ASA, but I don't know how to apply it in Palo Alto, please help me.
-Block Public IPs
-ISP router connect to BGP Palo Alto
-Palo Alto connect to BGP Router ISP
How can I do so that the range of public IPs, which is not directly connected to Palo Alto, can operate correctly, for example for the Global Protect configurations and above all for the Nat-port forwarding configurations.
I mean we have the block of public IPs, which are not directly connected to the PA, but they should be attached to the PA so that they can be used in NATs for example.
Is it possible to configure this in the PA ? can it be configured at the BGP level ? and that the ISP router continues to publish this network, but that makes the public IPs can be used by the PA, for example for NATs.
Please your support and collaboration, thank you very much greetings and attentive to your comments