Hi Reaper, First of all, I would like to give you credit of guru as I have learned a lot from your posts and articles! Second, the secanrio is that my netscreen firewall can have an IP SLA in many flavors implemented on the interfaces. Example: I have interfaces which do something like link and path monitoring. hence, they will go down in case conditions are met (ping to internet etc). In Palo Alto only way I see them happening is using PBR and routing or using HA. There is no way I could find that Interfaces themselfs can monitor if cable is disconnected or Internet is not reachable and shut themselfs down and disable routes. Hence, to be sure that my search was correct. Can you confirm.
... View more