<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Applying QOS bandwidth restriction in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242959#M125629</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/15603"&gt;@Raido_Rattameister&lt;/a&gt;, Thanks for your reply.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Assigning the profile on the internal interface would not be proper traffic flow right? see below image flow.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;DIV id="tinyMceEditor_963f2d76affb4fAhmed_94_0" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ahmed_94_1-1764664065573.png" style="width: 789px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/69989i5DBD7471DAC3E523/image-dimensions/789x257?v=v2" width="789" height="257" role="button" title="Ahmed_94_1-1764664065573.png" alt="Ahmed_94_1-1764664065573.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In our case, the egress interface would be the other way around, it would be eth1/1 egressing to outside because we want to limit the outbound bandwidth to 10Mbps, hope that my understanding is correct?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 02 Dec 2025 08:31:21 GMT</pubDate>
    <dc:creator>Ahmed_94</dc:creator>
    <dc:date>2025-12-02T08:31:21Z</dc:date>
    <item>
      <title>Applying QOS bandwidth restriction</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242802#M125601</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would like to understand if my FW is capable of the below using QOS:&lt;/P&gt;
&lt;P&gt;- I am using PA-1410 in HA pair&lt;/P&gt;
&lt;P&gt;- I have 1 ISP internet link with 50Mbps bandwidth connected to eth1/1&lt;/P&gt;
&lt;P&gt;- I have a requirement to create a guest network using the same ISP link and assign 10Mbps out of 50Mbps.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So. using the same outside interface (eth1/1) I want to reserve 10Mbps only for a sub-interface dedicated to guest network. Is that doable with Qos?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Many thanks&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 30 Nov 2025 07:07:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242802#M125601</guid>
      <dc:creator>Ahmed_94</dc:creator>
      <dc:date>2025-11-30T07:07:03Z</dc:date>
    </item>
    <item>
      <title>Re: Applying QOS bandwidth restriction</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242820#M125605</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/361881891"&gt;@Ahmed_94&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You won’t be able to apply QoS directly on a subinterface on the PA-1410, but you can classify the guest VLAN traffic on the physical interface (eth1/1) and put it into a lower-priority or max-bandwidth QoS class. This won’t guarantee a strict 10 Mbps slice, but it will prevent the guest VLAN from saturating your 50 Mbps link.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 30 Nov 2025 21:46:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242820#M125605</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2025-11-30T21:46:03Z</dc:date>
    </item>
    <item>
      <title>Re: Applying QOS bandwidth restriction</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242830#M125607</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/361881891"&gt;@Ahmed_94&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;only to add to what Jay mentioned, this KB:&amp;nbsp;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000POH9CAO&amp;amp;lang=en_US%E2%80%A9&amp;amp;refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail" target="_self"&gt;Why is QoS Setting Not Available Under subinterface?&lt;/A&gt;&amp;nbsp;explains what Firewall models are supporting QoS in sub-interface.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind Regards&lt;/P&gt;
&lt;P&gt;Pavel&lt;/P&gt;</description>
      <pubDate>Mon, 01 Dec 2025 04:32:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242830#M125607</guid>
      <dc:creator>PavelK</dc:creator>
      <dc:date>2025-12-01T04:32:57Z</dc:date>
    </item>
    <item>
      <title>Re: Applying QOS bandwidth restriction</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242833#M125608</link>
      <description>&lt;P&gt;Hi Jay, thank you for your response.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Just want to clarify what you meant by "&lt;SPAN&gt;put it into a lower-priority or max-bandwidth QoS class", so in the default profile I assign a low-priority class like 6 and also assign the max bandwidth allowed as 10Mbps, as below. is that what you meant?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;And then in the policy I put the guest vlan into class 6 and the profile assigned to interface eth1/1.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ahmed_94_0-1764564444823.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/69978iE03A3CC0826446E8/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Ahmed_94_0-1764564444823.png" alt="Ahmed_94_0-1764564444823.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 01 Dec 2025 04:52:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242833#M125608</guid>
      <dc:creator>Ahmed_94</dc:creator>
      <dc:date>2025-12-01T04:52:44Z</dc:date>
    </item>
    <item>
      <title>Re: Applying QOS bandwidth restriction</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242887#M125618</link>
      <description>&lt;P&gt;QoS profile needs to be applied to egress interface.&lt;/P&gt;
&lt;P&gt;If you apply it to&amp;nbsp;&lt;SPAN&gt;eth1/1 then you effectively throttle/prioritize upload bandwidth and not download.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Assign profile to internal interface.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;With policy assign guest traffic to a specific class.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;In QoS profile give this class 10Mbit/s.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 01 Dec 2025 15:14:52 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242887#M125618</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2025-12-01T15:14:52Z</dc:date>
    </item>
    <item>
      <title>Re: Applying QOS bandwidth restriction</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242959#M125629</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/15603"&gt;@Raido_Rattameister&lt;/a&gt;, Thanks for your reply.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Assigning the profile on the internal interface would not be proper traffic flow right? see below image flow.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;DIV id="tinyMceEditor_963f2d76affb4fAhmed_94_0" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ahmed_94_1-1764664065573.png" style="width: 789px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/69989i5DBD7471DAC3E523/image-dimensions/789x257?v=v2" width="789" height="257" role="button" title="Ahmed_94_1-1764664065573.png" alt="Ahmed_94_1-1764664065573.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In our case, the egress interface would be the other way around, it would be eth1/1 egressing to outside because we want to limit the outbound bandwidth to 10Mbps, hope that my understanding is correct?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Dec 2025 08:31:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/applying-qos-bandwidth-restriction/m-p/1242959#M125629</guid>
      <dc:creator>Ahmed_94</dc:creator>
      <dc:date>2025-12-02T08:31:21Z</dc:date>
    </item>
  </channel>
</rss>

