Update routing table based on PING results

cancel
Showing results for 
Search instead for 
Did you mean: 

Update routing table based on PING results

L0 Member

Does anyone know if the PA supports dynamically updating the routing table on a PA FW based on PING results?  Some vendors refer to this as IP SLA.

thanks

Daniel

3 REPLIES 3

Cyber Elite
Cyber Elite

Hi Daniel

You could set up policy based forwarding with monitoring but this would simply be a yes/no routing decision based on ping reply or timeout

Tom Piens
PANgurus

L7 Applicator

Palo Alto calls the IP SLA feature "Path Monitoring".  This can be used with a variety of features like virtual routers, Policy Based Routing, VPN or High Availability to control failover scenarios.

Here are two sample configurations.

Dual ISP Branch Office Configuration

How to Configure Dual VPNs with Dual ISPs from a Single PAN to a Remote Site

Steve Puluka BSEET - IP Architect - DQE Communications (Metro Ethernet/ISP)
ACE PanOS 6; ACE PanOS 7; ASE 3.0; PSE 7.0 Foundations & Associate in Platform; Cyber Security; Data Center

L6 Presenter

Hi Dwharam,

Its possible through PBF. In PBF you can configure route failover upon ping response.

Refer following document for PBF configuration, Page 5 has information on Path Monitor which triggers failover of route based on ping.

Policy Based Forwarding

Regards,

Hardik shah

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!