<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Management interface dropping packets in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/management-interface-dropping-packets/m-p/524748#M108554</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;My monitoring system is detecting packet loss on my panorama device. When pinging the DG there is no packet loss. When checked the interface stats on the cli I can see the below.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;admin@MANPANORAMA01(primary-active)&amp;gt; show interface management&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;-------------------------------------------------------------------------------&lt;BR /&gt;Name: Management Interface&lt;BR /&gt;Link status:&lt;BR /&gt;Runtime link speed/duplex/state: 100/full/up&lt;BR /&gt;Configured link speed/duplex/state: auto/auto/auto&lt;BR /&gt;MAC address:&lt;BR /&gt;Port MAC address 3c:ec:ef:55:38:46&lt;/P&gt;
&lt;P&gt;Ip address: 192.168.20.21&lt;BR /&gt;Netmask: 255.255.254.0&lt;BR /&gt;Default gateway: 192.168.20.1&lt;BR /&gt;Ipv6 address: unknown&lt;BR /&gt;Ipv6 link local address: fe80::3eec:efff:fe55:3846/64&lt;BR /&gt;Ipv6 default gateway:&lt;BR /&gt;-------------------------------------------------------------------------------&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;-------------------------------------------------------------------------------&lt;BR /&gt;Logical interface counters:&lt;BR /&gt;-------------------------------------------------------------------------------&lt;BR /&gt;bytes received 19514555673572&lt;BR /&gt;bytes transmitted 13800146722446&lt;BR /&gt;packets received 17142368823&lt;BR /&gt;packets transmitted 15211441301&lt;BR /&gt;receive errors 0&lt;BR /&gt;transmit errors 0&lt;BR /&gt;receive packets dropped 821&lt;BR /&gt;transmit packets dropped 0&lt;BR /&gt;multicast packets received 5&lt;BR /&gt;-------------------------------------------------------------------------------&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What could be causing packet loss on this interface?&lt;/P&gt;</description>
    <pubDate>Wed, 21 Dec 2022 11:41:21 GMT</pubDate>
    <dc:creator>LimaSupport</dc:creator>
    <dc:date>2022-12-21T11:41:21Z</dc:date>
    <item>
      <title>Management interface dropping packets</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/management-interface-dropping-packets/m-p/524748#M108554</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;My monitoring system is detecting packet loss on my panorama device. When pinging the DG there is no packet loss. When checked the interface stats on the cli I can see the below.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;admin@MANPANORAMA01(primary-active)&amp;gt; show interface management&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;-------------------------------------------------------------------------------&lt;BR /&gt;Name: Management Interface&lt;BR /&gt;Link status:&lt;BR /&gt;Runtime link speed/duplex/state: 100/full/up&lt;BR /&gt;Configured link speed/duplex/state: auto/auto/auto&lt;BR /&gt;MAC address:&lt;BR /&gt;Port MAC address 3c:ec:ef:55:38:46&lt;/P&gt;
&lt;P&gt;Ip address: 192.168.20.21&lt;BR /&gt;Netmask: 255.255.254.0&lt;BR /&gt;Default gateway: 192.168.20.1&lt;BR /&gt;Ipv6 address: unknown&lt;BR /&gt;Ipv6 link local address: fe80::3eec:efff:fe55:3846/64&lt;BR /&gt;Ipv6 default gateway:&lt;BR /&gt;-------------------------------------------------------------------------------&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;-------------------------------------------------------------------------------&lt;BR /&gt;Logical interface counters:&lt;BR /&gt;-------------------------------------------------------------------------------&lt;BR /&gt;bytes received 19514555673572&lt;BR /&gt;bytes transmitted 13800146722446&lt;BR /&gt;packets received 17142368823&lt;BR /&gt;packets transmitted 15211441301&lt;BR /&gt;receive errors 0&lt;BR /&gt;transmit errors 0&lt;BR /&gt;receive packets dropped 821&lt;BR /&gt;transmit packets dropped 0&lt;BR /&gt;multicast packets received 5&lt;BR /&gt;-------------------------------------------------------------------------------&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What could be causing packet loss on this interface?&lt;/P&gt;</description>
      <pubDate>Wed, 21 Dec 2022 11:41:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/management-interface-dropping-packets/m-p/524748#M108554</guid>
      <dc:creator>LimaSupport</dc:creator>
      <dc:date>2022-12-21T11:41:21Z</dc:date>
    </item>
    <item>
      <title>Re: Management interface dropping packets</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/management-interface-dropping-packets/m-p/524756#M108555</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/154359"&gt;@LimaSupport&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;That is a tough one.&amp;nbsp; Most traffic dropped on the management interface is supposed to be dropped.&amp;nbsp; For example, a Cisco switch could be sending CDP packets.&amp;nbsp; Other layer 2 protocols could also be dropped.&amp;nbsp; I see that you have IPv6 configured.&amp;nbsp; So, it is probably not IPv6.&amp;nbsp; You could have your Permitted IP Addresses &lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClovCAC" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClovCAC&lt;/A&gt; configured and these packets do not come from an allowed source.&amp;nbsp; I think the only way to know for sure is to (at the same time) do a packet capture of transmitted packets on the next hop device and received packets on the management interface &lt;A href="https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/monitoring/take-packet-captures/take-a-packet-capture-on-the-management-interface" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/monitoring/take-packet-captures/take-a-packet-capture-on-the-management-interface&lt;/A&gt; and compare to see which packets are missing from the Panorama capture.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The drops are most likely benign and not causing negative impact.&amp;nbsp; If you really want to know, you can do the packet captures.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Wed, 21 Dec 2022 13:27:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/management-interface-dropping-packets/m-p/524756#M108555</guid>
      <dc:creator>TomYoung</dc:creator>
      <dc:date>2022-12-21T13:27:33Z</dc:date>
    </item>
  </channel>
</rss>

