05-09-2019 07:22 AM
We are moving to a new data center and i need to set up an Expressroute to Azure. The data center provides an L2 transit. This means i need an outer VLAN and and inner VLAN to setup the BGP connection. has anyone connected to Azure through a data center provider that only has L2? i can find Cisco docs for connections like this but nothing from Palo Alto. Any links would be appreciated.
06-16-2020 02:52 PM
Per PaloAlto Support: Currently Palo Alto Firewall do not support terminating 802.1Q-in-Q (type 0x8100) tag packets. It can process the packets using the outer VLAN tag as a match to create sessions.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!