What is the default session distribution policy in the PA-7000 Series?
(
PA-7000 Series firewalls only
) New sessions are assigned to a DP on the same NPC on which the first packet of the session arrived. The selection of the DP is based on the session-load algorithm but, in this case, sessions are limited to the DPs on the ingress NPC.
Depending on the traffic and network topology, this policy generally decreases the odds that traffic will need to traverse the switch fabric.
Use this policy to reduce latency if both ingress and egress are on the same NPC. If the firewall has a mix of NPCs (PA-7000 20G and PA-7000 20GXM for example), this policy can isolate the increased capacity to the corresponding NPCs and help to isolate the impact of NPC failures.
Margurite
3 days agoShannon
9 days agoMillie
14 days agoSelma
19 days agoHui
24 days agoMerilyn
29 days agoJaney
2 months agoRory
2 months agoSage
2 months agoPhil
2 months agoAlida
2 months agoDenise
2 months agoCarmela
3 months agoKirby
3 months agoDenny
3 months agoAlethea
3 months agoLindsay
3 months agoDana
3 months agoMozelle
4 months agoDarci
4 months agoErick
4 months agoTamekia
4 months agoAllene
4 months agoJarvis
5 months agoCandida
5 months ago