What is the Fully Qualified Domain Name (FQDN) Object Limit?

What is the Fully Qualified Domain Name (FQDN) Object Limit?

77300
Created On 09/25/18 19:20 PM - Last Modified 05/06/23 02:05 AM


Symptom


The article lists the FQDN Object limit for different platforms.

Environment


  • Palo Alto Firewalls.
  • PAN-OS 9.1 and above.
  • FQDN object configuration.


Resolution


  1. The current maximum limit on FQDN objects is 2000 for the smaller platforms and all VM-series.
  2. It is  2048 for the PA-3200 series, and 6144 for all the large platforms.
  3. The table provides the maximum limit of FQDN. The data can also be found in the Product Comparison page.
  4. To view the FQDN objects one can use "show dns-proxy fqdn all" CLI command.
 
PA-54506,144
PA-7080 (legacy SMC)6,144
PA-7050 (legacy SMC )6,144
PA-7080-B    6,144
PA-7050-B6,144
PA-52806,144
PA-5260    6,144
PA-5250       6,144
PA-5220                   6,144
PA-3260      2,048
PA-32502,048
PA-3220    2,048
PA-8502000
PA-8202000
PA-4602000
PA-4502000
PA-4402000
PA-410    2000
PA-220 / PA-220R2000
VM-50 Lite2000
VM-502000
VM-100/ VM-2002000
VM-300 / VM-1000-HV    2000
VM-500    2000
VM-7002000


Additional Information


External Dynamic Lists.

Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClVqCAK&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language