Palo Alto QOS - WRED drops

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Palo Alto QOS - WRED drops

L2 Linker

In Palo Alto firewall,  we observed WRED drops on QOS (150Mbps)  applied egress interface eth 1/11 – due to which DB sync/mirroring is randomly getting failed/dropped between DC & DR. Please let me know for any configuration changes/workarounds to avoid this WRED drops. 

1 REPLY 1

Cyber Elite
Cyber Elite

@preetpk,

Why are you classifying SQL traffic as low priority traffic? In the vast majority of environments you would be giving SQL a higher priority over other traffic, not setting it as low priority traffic. With how you have things configured, your QoS is performing exactly what you are telling it to. Traffic starts queuing, WRED kicks in and will start dropping packets from lower priority queues to preserve high priority traffic. 

You need to look at how you've actually configured QoS and what your organizations actual goal is with this traffic. From the look of things and how you have it configured at the moment, it appears like you want to treat SQL traffic as low priority. If that's the case and it meets your business use-case that's all fine and well, but you will run into DB replication issues. 

  • 3012 Views
  • 1 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!