Express route bandwidth halved when using VM300 firewall

Showing results for 
Show  only  | Search instead for 
Did you mean: 

Express route bandwidth halved when using VM300 firewall

L1 Bithead

Hi All, we currently have a vm300 firewall acting as our security perimeter device in azure.

I have setup the high availability using a standard microsoft internal load balancer for HA, but im finding that my bandwidth is halved when accessing azure VMs through the firewall.

when i remove the firewalls from the environment, i get above 500Mbps when testing with iperf, but when i reintroduce the firewalls and test using iperf, im finding i get less than 250Mbps.

Is there some additional feature in the palo altos that is slowing things down? i have purchased the bundle 1 PAYG option within azure meaning we dont have URL filtering or global protect, and the firewall is configured with only basic policies, so cant see why it would be causing this slowdown.


Any assistance is greatly appreciated.


thanks guys,




L5 Sessionator

What Azure Machine size are you using?

What version of PAN-OS are you using?

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!