Does Palo Alto Firewall support preserving the TTL of Multicast traffic?
11110
Created On 01/24/21 02:12 AM - Last Modified 09/16/21 02:28 AM
Question
Does Palo Alto Firewall support preserving the TTL of Multicast traffic?
Environment
- PAN-OS 8.1 and above.
- Palo Alto Firewall.
- Multicast Routed environment.
Answer
Palo Alto firewall does not support preserving the TTL of the Multicast packets. The traffic is forwarded by reducing the TTL by 1 as per the RFC as it passes through each routed hop.
Additional Information
This feature of disabling or enabling "change of TTL" is used when some of the multicast application like pager generates the multicast traffic with TTL=1. There is no option for increasing the TTL on the application side. Preserving the TTL allows the multicast application to be forwarded to the next-hop instead of dropping due to TTL expiry.