ECMP, interface, zone and security policy question
Hi guys I am quite new to Palo Alto NGFW. We have on-prem PA-32xx on 11.0.3. I am having trouble with static route ECMP for redundant IPSEC tunnels to AWS. Previous guy configure both tunnel in different zone (lets say AWS1 zone and AWS2 zone) and then configure bunch of PBFs. Then when the return path is changed, traffic will get dropped and I ...




