Egress/Ingress difference for QoS

L2 Linker

Egress/Ingress difference for QoS

Hi Everyone,


My internal network (trust zone) operates at 1Gb speeds and the connectivity with ISP (untrust) is at 100Mb. I am in the process of setting up SIP QoS but am a little confused as to how I should manage the inconsistences between the ISP and internal network speeds and the "Maximum Egress" field for the "QoS Profile" section.

Should I create a seperate profiles for my Egress and Ingress interfaces with the "Maximum Egress" field set to 100 and 1000 respectively or should I just create one QoS profile with a "Maximum Egress" of 100 ?


I am running PAN-OS-7.0.3



L5 Sessionator

Re: Egress/Ingress difference for QoS

In the screenshot I have highlighted the area if you are taking about those Egress max, Egress Guranateed you can leave it as zero. The firewall will autuomatically take the bandwidth configured on the interface.





QOS Apply.png


Hope this help.

L7 Applicator

Re: Egress/Ingress difference for QoS



You can also set different profiles depending on the source interface, that way any traffic passing from one internal network to another internal network, can be set to use QoS values appropriate for a 1gbps network, and anything incoming/outgoing to the internet can be throttled to an appropriate bandwidth for your ISP uplink speed







Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!