Does Palo Alto Firewall support preserving the TTL of Multicast traffic?

Does Palo Alto Firewall support preserving the TTL of Multicast traffic?

11110
Created On 01/24/21 02:12 AM - Last Modified 09/16/21 02:28 AM


Question


Does Palo Alto Firewall support preserving the TTL of Multicast traffic?

Environment


  • PAN-OS 8.1 and above.
  • Palo Alto Firewall.
  • Multicast Routed environment.


Answer


Palo Alto firewall  does not support preserving the TTL of the Multicast packets. The traffic is forwarded by reducing the TTL by 1 as per the RFC as it passes through each routed hop.

Additional Information


This feature of disabling or enabling  "change of TTL" is used  when some of the multicast application like pager generates the multicast traffic with TTL=1. There is no option for increasing the TTL on the application side. Preserving the TTL  allows the multicast application to be forwarded to the next-hop instead of dropping due to TTL expiry.


 


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000HCZTCA4&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language