<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Link and traffic priority on palo alto in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/link-and-traffic-priority-on-palo-alto/m-p/1240915#M6417</link>
    <description>&lt;P&gt;Hey Vishal,&lt;BR /&gt;&lt;BR /&gt;Just to confirm, you want the new ISP to be the primary link for internet and for the India VPN, and if it goes down, all traffic should switch to the secondary ISP, right? That can definitely work, but make sure the VPN is configured to use both ISPs, either by defining two IKE gateways or by setting up a proper failover. Otherwise, the tunnel won’t re-establish automatically through the backup link when the primary goes down.&lt;/P&gt;</description>
    <pubDate>Wed, 29 Oct 2025 18:53:04 GMT</pubDate>
    <dc:creator>Elwin3</dc:creator>
    <dc:date>2025-10-29T18:53:04Z</dc:date>
    <item>
      <title>Link and traffic priority on palo alto</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/link-and-traffic-priority-on-palo-alto/m-p/1239994#M6394</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are using one isp link for internet browsing and 2 site to site tunnel. Now we have procure another isp link and want to configure it as a primary for internet traffic and one location (India) site to site vpn.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Below my approach to achieve this&lt;/P&gt;&lt;P&gt;1. Configure new isp link with lesser priority for interent traffic and one location (India) site to site and if its fails traffic divert to secondary isp. Will my secondary tunnel works with secondary isp, as im not creating with primary isp.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2. Create pbf rule to route internet traffic from primary isp and above create no pbf rule for site to site vpn, so vpn traffic will follow via normal static route and security policies.&lt;/P&gt;</description>
      <pubDate>Tue, 14 Oct 2025 11:07:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/link-and-traffic-priority-on-palo-alto/m-p/1239994#M6394</guid>
      <dc:creator>vishalrsshah</dc:creator>
      <dc:date>2025-10-14T11:07:24Z</dc:date>
    </item>
    <item>
      <title>Re: Link and traffic priority on palo alto</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/link-and-traffic-priority-on-palo-alto/m-p/1240039#M6397</link>
      <description>&lt;P&gt;pls help&lt;/P&gt;</description>
      <pubDate>Wed, 15 Oct 2025 08:01:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/link-and-traffic-priority-on-palo-alto/m-p/1240039#M6397</guid>
      <dc:creator>vishalrsshah</dc:creator>
      <dc:date>2025-10-15T08:01:21Z</dc:date>
    </item>
    <item>
      <title>Re: Link and traffic priority on palo alto</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/link-and-traffic-priority-on-palo-alto/m-p/1240139#M6401</link>
      <description>&lt;P&gt;pls help&lt;/P&gt;</description>
      <pubDate>Thu, 16 Oct 2025 09:21:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/link-and-traffic-priority-on-palo-alto/m-p/1240139#M6401</guid>
      <dc:creator>vishalrsshah</dc:creator>
      <dc:date>2025-10-16T09:21:23Z</dc:date>
    </item>
    <item>
      <title>Re: Link and traffic priority on palo alto</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/link-and-traffic-priority-on-palo-alto/m-p/1240915#M6417</link>
      <description>&lt;P&gt;Hey Vishal,&lt;BR /&gt;&lt;BR /&gt;Just to confirm, you want the new ISP to be the primary link for internet and for the India VPN, and if it goes down, all traffic should switch to the secondary ISP, right? That can definitely work, but make sure the VPN is configured to use both ISPs, either by defining two IKE gateways or by setting up a proper failover. Otherwise, the tunnel won’t re-establish automatically through the backup link when the primary goes down.&lt;/P&gt;</description>
      <pubDate>Wed, 29 Oct 2025 18:53:04 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/link-and-traffic-priority-on-palo-alto/m-p/1240915#M6417</guid>
      <dc:creator>Elwin3</dc:creator>
      <dc:date>2025-10-29T18:53:04Z</dc:date>
    </item>
  </channel>
</rss>

