- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
04-10-2019 01:26 AM - edited 04-10-2019 01:47 AM
here there,
little question: any known plan's to support PPPoE on a subinterface?
reason:
since fiber to the building (FTTB) isn't something usual over here, we are stuck with xDSL (FTTC) for the years to come.
and this is where we have a problem with our pa2x0 installations right now, because pan-os doesn't support PPPoE on a subinterface (a common thing with VDSL).
right now there are 4 possible solutions for this missing feature (as far as i know)
1) waste a few interfaces (http://www.limvuihan.com/2018/06/palo-alto-pppoe-with-vlan-tag-its.html)
2) let a switch do the tagging (kinda like 1)
3) get a xdsl modem that is able to do the tagging
4) get a router that does all the internet connection stuff (downside: public ip is on the routers side and one more nat router-> pa)
all those workarounds are kinda meeee... with 3 being the most common one, but this also includes the need to configure the vlan tag on the modems side (different vlan tags depending on the isp)
thanks in advance,
andy
04-10-2019 05:44 AM
hi @ADK999 (Andy)
there's a feature request for this: FR ID: 3183
if you reach out to your sales team, you can have them add your vote and then they can keep you posted on any news regarding this
04-10-2019 05:44 AM
hi @ADK999 (Andy)
there's a feature request for this: FR ID: 3183
if you reach out to your sales team, you can have them add your vote and then they can keep you posted on any news regarding this
09-27-2019 10:09 AM - edited 09-27-2019 10:15 AM
I voted for this feature request: FR ID: 3183 with my sales manager 2 or 3 years ago. I would really like to use a Palo Alto for my use case but I couldn't wait. It seems like a simple enough request for a common issue. If Network Engineers have to use a different solution when configuring VDSL they may find that other solution acceptable for their other use cases as well. I see potential in not addresses this request leading to lost business.
Scenario:
A business with branch offices in areas where the only option is VDSL have to use a firewall at that branch that isn't a PA. The business makes a decision to standardize on one platform. At this point PA is out of the running. To standardize all the firewalls would be a vendor other than PAN.
03-20-2020 02:40 PM
Hi,
is still the same situation? I am also facing this issue and all soloutions so far are not really satisfying. Thanks.
03-22-2020 04:41 AM
hey holger,
nothing changed. it's one of the things where pan is a bit out of touch with reality, also ipv6 dhcp client on a interface is to new...
i migrated the small office branches partial to sophos and if not possible to paloalto and a draytek vigor 165 vdsl modem.
servus,
andy
07-18-2022 05:47 AM
3 years later, still no vlan tagging + PPPoE possible on a Palo Alto. 😞
10-21-2022 07:19 PM - edited 10-24-2022 07:25 AM
Disappointing for sure, most of Bell Canada fiber to the premise is PPPoE over VLAN35, Bell Multicast over VLAN36... Basically unable to use a brand new PA-460.
Edit: potential work around? Will give this a try...
04-03-2023 07:49 PM
I'll post an update here as it's the first search result, but it looks like this feature is available from PAN-OS 11.0.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!