Palo Alto ping response is slow from Cisco

Reply
L2 Linker

Palo Alto ping response is slow from Cisco

A directly connected Cisco 4500 Switch Ping's to different office goes through the PA cause nearly 700-1000msec, whereas PA pinging the Server to same site has only 20msec. I understand the Ping ( and Extended ping with TOS 184) is not the exact way to work on the Issue.

We have OSPF running between PA and Cisco.

But I  was informed that PA will not catch up to Cisco in Ping responses, which means Data Plane is uneffected.

Is there any options to address this issue.  Please suggest!

 

Thanks

 

 

Community Manager

Re: Palo Alto ping response is slow from Cisco

Hi Sandeep

 

in regards to not gtting the same ping response time when pinging through a cisco compares to pinging through a PANW firewall, the firewall will inspect the ping packet like any other packet so there will be a liitle (milliseconds) delay compared to a switch/router that simply forwards

700-1000 ms however would merrit a deeper look into an underlying issue. what is the current load on the dataplane, is there high packetrate, did you make sure interface settings are identical between firewall and switch (auto/auto/ 100/full-duplex,...) are you certain the cable quality is ok etc.


Help the community: Like helpful comments and mark solutions
Reaper out
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!