<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Packet drop in the Firewall in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/packet-drop-in-the-firewall/m-p/350492#M86969</link>
    <description>&lt;P&gt;Recently, we did a Migration activity, From the Juniper SRX to Palo Alto.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;After successful Migration, we can notice that one drop over the PA firewall.&lt;/P&gt;&lt;P&gt;We did troubleshooting from our end and in the global counter can see below error with drops&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;flow_fpga_ingress_exception_err&amp;nbsp; 1865&amp;nbsp; 19 drop&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; flow&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; offload&amp;nbsp;&amp;nbsp; Packets dropped: receive ingress exception error from offload processor&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Tried to packet capture but don’t see any packet capture for this traffic.&lt;/P&gt;&lt;P&gt;&amp;nbsp;what is this error and why Paloalto is dropping this flow?&lt;/P&gt;</description>
    <pubDate>Fri, 18 Sep 2020 19:11:54 GMT</pubDate>
    <dc:creator>Mohammed_Yasin</dc:creator>
    <dc:date>2020-09-18T19:11:54Z</dc:date>
    <item>
      <title>Packet drop in the Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/packet-drop-in-the-firewall/m-p/350492#M86969</link>
      <description>&lt;P&gt;Recently, we did a Migration activity, From the Juniper SRX to Palo Alto.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;After successful Migration, we can notice that one drop over the PA firewall.&lt;/P&gt;&lt;P&gt;We did troubleshooting from our end and in the global counter can see below error with drops&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;flow_fpga_ingress_exception_err&amp;nbsp; 1865&amp;nbsp; 19 drop&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; flow&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; offload&amp;nbsp;&amp;nbsp; Packets dropped: receive ingress exception error from offload processor&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Tried to packet capture but don’t see any packet capture for this traffic.&lt;/P&gt;&lt;P&gt;&amp;nbsp;what is this error and why Paloalto is dropping this flow?&lt;/P&gt;</description>
      <pubDate>Fri, 18 Sep 2020 19:11:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/packet-drop-in-the-firewall/m-p/350492#M86969</guid>
      <dc:creator>Mohammed_Yasin</dc:creator>
      <dc:date>2020-09-18T19:11:54Z</dc:date>
    </item>
    <item>
      <title>Re: Packet drop in the Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/packet-drop-in-the-firewall/m-p/350598#M86975</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;when packets are being offloaded they never do reach the dataplane. Because of this you won't be able to capture any packets. Offloading basically happens when all findings on AppID and ContentID have been made. Please make yourself familiar with offloading. When done you can try to disable it globally on the firewall. Be aware that depending on your traffic the CPU utilization might raise. Packets will then show up in captures. A good start would be this article.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClWFCA0" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClWFCA0&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 19 Sep 2020 10:56:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/packet-drop-in-the-firewall/m-p/350598#M86975</guid>
      <dc:creator>Rene_Boehme</dc:creator>
      <dc:date>2020-09-19T10:56:51Z</dc:date>
    </item>
    <item>
      <title>Re: Packet drop in the Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/packet-drop-in-the-firewall/m-p/546765#M111731</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/131110"&gt;@Mohammed_Yasin&lt;/a&gt;&amp;nbsp;, did you find what's causing the packet drops between Juniper and paloalto ?&lt;BR /&gt;We are running in similar situation, any inputs are much appreciated. Thanks !&lt;/P&gt;</description>
      <pubDate>Wed, 21 Jun 2023 19:36:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/packet-drop-in-the-firewall/m-p/546765#M111731</guid>
      <dc:creator>Shiva-HCL</dc:creator>
      <dc:date>2023-06-21T19:36:19Z</dc:date>
    </item>
  </channel>
</rss>

