<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Starlink DHCP Route Injection dropping if DHCP expires briefly in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/starlink-dhcp-route-injection-dropping-if-dhcp-expires-briefly/m-p/1261732#M126872</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/111984935"&gt;@M.Vietorisz&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="PDq2pG_selectionAnchorContainer" data-end="1707" data-start="1496"&gt;One thing I’d like to understand more closely is the DHCP lease expiration itself. Since the firewall is acting as the DHCP client, PAN-OS should normally attempt to renew the lease before it reaches expiration at least a couple of times. That is standard behavior.&amp;nbsp;&lt;/P&gt;
&lt;P class="PDq2pG_selectionAnchorContainer" data-end="1707" data-start="1496"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-end="1919" data-start="1712"&gt;When the issue occurs, do the system logs show that the PA-510 is attempting DHCP renewal but not receiving a response from Starlink, or does it appear that the firewall is not initiating the renewal at all?&lt;/P&gt;
&lt;P data-end="1919" data-start="1712"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-end="2193" data-start="1924"&gt;The next time this happens, could you capture the DHCP-related system logs around the expiration event before rebooting? I’m particularly interested in whether there are renewal retries, NAKs, or messages indicating that the request retries were exhausted.&amp;nbsp;You can try something like ( subtype eq 'dhcp' ).&amp;nbsp;&lt;/P&gt;
&lt;P data-end="2193" data-start="1924"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-end="2368" data-start="2198"&gt;That will help determine whether we’re looking at Starlink not responding to DHCP renewal requests versus the firewall DHCP client not attempting the renewal as expected.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 13 Aug 2026 15:25:07 GMT</pubDate>
    <dc:creator>JayGolf</dc:creator>
    <dc:date>2026-08-13T15:25:07Z</dc:date>
    <item>
      <title>Starlink DHCP Route Injection dropping if DHCP expires briefly</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/starlink-dhcp-route-injection-dropping-if-dhcp-expires-briefly/m-p/1261486#M126861</link>
      <description>&lt;P&gt;This is a remote location with a Starlink connected directly into a Palo Alto 510. We have another backup satellite connection provider which should be used for emergency / comms only when Starlink goes offline.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Starlink renews its DHCP lease every 5 minutes. Normally, this works fine, and gets renewed successfully without interruption.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Once in a while, the lease expires seconds before Palo Alto renews it. When this happens, the backup satellite connection kicks in and takes over (with metric 100).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Moments later, Starlink gets its lease renewed, but it does not take over routing of traffic again, even though it has a metric of 10.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Both connections are in the same virtual router, dedicated interfaces, same DHCP client settings, with Starlink metric 10, other provider metric 100. Both are set to '&lt;SPAN&gt;Automatically create default route pointing to default gateway provided by server'.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Getting someone to physically reboot the Palo Alto at the site when this occurs is the only recourse to get it back up with proper routing.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;I simply dont get why Palo wouldn't properly inject and use the lower metric route when the DHCP gets renewed. What am I missing here?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Aug 2026 13:10:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/starlink-dhcp-route-injection-dropping-if-dhcp-expires-briefly/m-p/1261486#M126861</guid>
      <dc:creator>M.Vietorisz</dc:creator>
      <dc:date>2026-08-11T13:10:57Z</dc:date>
    </item>
    <item>
      <title>Re: Starlink DHCP Route Injection dropping if DHCP expires briefly</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/starlink-dhcp-route-injection-dropping-if-dhcp-expires-briefly/m-p/1261732#M126872</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/111984935"&gt;@M.Vietorisz&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="PDq2pG_selectionAnchorContainer" data-end="1707" data-start="1496"&gt;One thing I’d like to understand more closely is the DHCP lease expiration itself. Since the firewall is acting as the DHCP client, PAN-OS should normally attempt to renew the lease before it reaches expiration at least a couple of times. That is standard behavior.&amp;nbsp;&lt;/P&gt;
&lt;P class="PDq2pG_selectionAnchorContainer" data-end="1707" data-start="1496"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-end="1919" data-start="1712"&gt;When the issue occurs, do the system logs show that the PA-510 is attempting DHCP renewal but not receiving a response from Starlink, or does it appear that the firewall is not initiating the renewal at all?&lt;/P&gt;
&lt;P data-end="1919" data-start="1712"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-end="2193" data-start="1924"&gt;The next time this happens, could you capture the DHCP-related system logs around the expiration event before rebooting? I’m particularly interested in whether there are renewal retries, NAKs, or messages indicating that the request retries were exhausted.&amp;nbsp;You can try something like ( subtype eq 'dhcp' ).&amp;nbsp;&lt;/P&gt;
&lt;P data-end="2193" data-start="1924"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-end="2368" data-start="2198"&gt;That will help determine whether we’re looking at Starlink not responding to DHCP renewal requests versus the firewall DHCP client not attempting the renewal as expected.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Aug 2026 15:25:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/starlink-dhcp-route-injection-dropping-if-dhcp-expires-briefly/m-p/1261732#M126872</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2026-08-13T15:25:07Z</dc:date>
    </item>
    <item>
      <title>Re: Starlink DHCP Route Injection dropping if DHCP expires briefly</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/starlink-dhcp-route-injection-dropping-if-dhcp-expires-briefly/m-p/1261759#M126873</link>
      <description>&lt;P&gt;Hi JayGolf here are the system logs from one of the occurrences.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;22:03:39 dhcp client IP assigned (renewed successfully)&lt;/P&gt;
&lt;P&gt;22:06:11 dhcp client IP assigned (renewed successfully)&lt;/P&gt;
&lt;P&gt;22:11:11 dhcp lease expires causing backup emergency link/route to take-over&lt;/P&gt;
&lt;P&gt;22:11:14 dhcp lease renews 3 seconds later, but the route does NOT take over in the routing table leaving all traffic on the back-up emergency connection (which we block almost everything since it's very low bandwidth/costly)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So two issues really; #1 why did DHCP not renew before expiry? and #2 why, after it does get renewed seconds later, does the automatic route injection not take-over from the backup link, until we physically reboot it?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="MVietorisz_0-1786640152984.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/72253iC61835E66F468AE9/image-size/medium?v=v2&amp;amp;px=400" role="button" title="MVietorisz_0-1786640152984.png" alt="MVietorisz_0-1786640152984.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Aug 2026 17:01:16 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/starlink-dhcp-route-injection-dropping-if-dhcp-expires-briefly/m-p/1261759#M126873</guid>
      <dc:creator>M.Vietorisz</dc:creator>
      <dc:date>2026-08-13T17:01:16Z</dc:date>
    </item>
  </channel>
</rss>

