Dynamic IP Pool utilization - 10.2.9-h1

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Dynamic IP Pool utilization - 10.2.9-h1

L3 Networker

Hi Team

 

We have an issue where we use Dynamic IP pool for outbound NAT but 'show running ippool' does not reflect the accurate NAT xlate pool usage.

 

For example, we see 9k Available IPs but on checking the global counter we can see the NAT Utilization errors:

 

UtkarshKumar_1-1726519436193.png

 

show running nat-rule-ippool <rule> also shows the same number stating 9k available IPs.

Why can't we see the actual number of utilized and Free IPs?

Is there a more specific command or way to check this on the firewall?

I see this but not sure if it also applies to Dynamic IP type NAT rule:
Packet drop due to source NAT IP/port allocation failed - Knowledge Base - Palo Alto Networks

 

 

 

0 REPLIES 0
  • 150 Views
  • 0 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!