Enhanced Security Measures in Place:   To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.

EVE-NG Setup & VMWare installation for Palo Alto & Multi vendor devices

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

EVE-NG Setup & VMWare installation for Palo Alto & Multi vendor devices

L1 Bithead

VMWare installation & EVE NG Setup step by step for Multi Vendors Devices

 

As for every IP Network Engineer readiness of the simulator especially the multi-vendors environment, EVE-NG is a big headache. But honestly, this is very simple and only needs a few minutes to focus. Highly request that Please follow the exact steps that I will do below. With the one-time setup & you will enjoy lab simulations always.

 

First of all, prepare & download the below-mentioned software, click on downloading link if you don’t have already it, simply search on Google or comment your email below I will share it with you.

 

 

  • VMWare Workstation version 16. x (search on Google, free trial available)
  • Download EVE-NG
  • FTP, file transfer software, WinSCP, or FileZilla
  • Download the Image you need like Cisco, Huawei, Palo Alto, Fortinet, or any other vendors (if you don’t have click on contact us I will share it with you).

 

 

I have downloaded below software’s VMware 16.1.0, EVE-NG 5.0.1-13 & Palo Alto firewall & Cisco Routers image

 

ReadTech_2-1687639601866.png

 

 

 

Now let’s do the Installation Part

 

Step-1:

·       VMWare installation is very easy to double click & next-next… –Finish

 

Step-2:

Open VMware go-to File then open – upload EVE NG open virtualization format file then import, Wait for a few minutes it will take time. 

 

ReadTech_0-1687639211695.png

 

 

ReadTech_1-1687639345038.png

 

 

in have explained  complete setup A to Z till cli access ,below link for reference

 

https://www.readteknology.com/2023/06/EVE-NG-Setup-and-VMWare-installation.htm

 

 

if still you have any confusion send me email or give any disk I will support you remotely. Thanks

Implement IP Network & Security knowledge in Cloud.

https://www.readteknology.com/
12 REPLIES 12

Community Team Member

Thanks for sharing @ReadTech . EVE-NG is very useful for labs. Anyone else in the community use EVE? 

LIVEcommunity team member
Stay Secure,
Jay
Don't forget to Like items if a post is helpful to you!

Please help out other users and “Accept as Solution” if a post helps solve your problem !

Read more about how and why to accept solutions.

Yes. But without a license, most of the features unable to test.

@Kevin_Ncs  you are right, But EVE-NG is good to build fundamental concepts on multi-vendor & some advanced topics as well. Thank you for reading the post & comment.

Implement IP Network & Security knowledge in Cloud.

https://www.readteknology.com/

L0 Member

Hello, I'm looking for a Palo Alto image for doing lab practice. I really appreciate to get one. 

Community Team Member

Hi @DISSAI ,

 

You can get images through your Palo Support Portal. If you would like licensing, it's best to purchase a Lab license through your partner or Palo account team. 

LIVEcommunity team member
Stay Secure,
Jay
Don't forget to Like items if a post is helpful to you!

Please help out other users and “Accept as Solution” if a post helps solve your problem !

Read more about how and why to accept solutions.

@DISSAI Sure.

Implement IP Network & Security knowledge in Cloud.

https://www.readteknology.com/

L1 Bithead

Hello Guy's ,

 

Now from  Palo Alto , I'm able to get internet internet traffic, the challenge bit it to get internet from the server(INSIDE) from OUTSIDE(Palo Alto Leg).  See below configuration and network diagram. I can initiate ping from server to Palo Alto vise versa.

I want to be able to browsers from my server.

 

 

DANIISSAI_1-1695298002995.png

 

set rulebase security rules LAN-2-OUTSIDE to OUTSIDE_ZONE
 set rulebase security rules LAN-2-OUTSIDE from INSIDE_ZONE
 set rulebase security rules LAN-2-OUTSIDE source 192.168.10.0/24
 set rulebase security rules LAN-2-OUTSIDE destination any
 set rulebase security rules LAN-2-OUTSIDE application [ web-browsing ssl ping dns ]
 set rulebase security rules LAN-2-OUTSIDE service any
 set rulebase security rules LAN-2-OUTSIDE action allow
 set rulebase security rules LAN-2-OUTSIDE log-end yes

 set rulebase nat rules MY-NAT from INSIDE_ZONE
 set rulebase nat rules MY-NAT to OUTSIDE_ZONE
 set rulebase nat rules MY-NAT source 192.168.10.0/24
 set rulebase nat rules MY-NAT destination any
 set rulebase nat rules MY-NAT to-interface ethernet1/3
 set rulebase nat rules MY-NAT service any
 set rulebase nat rules MY-NAT source-translation dynamic-ip-and-port interface-address interface ethernet1/3 ip 192.168.71.254/24

 
 

 

 

 

 

 

DANIISSAI_0-1695297686914.png

In Addition that when I ping from server I getting below and the IP is the leg for Palo Alto OUTSIDE.

 

Reply from 192.168.71.254: TTL expired in transit.
Reply from 192.168.71.254: TTL expired in transit.
Reply from 192.168.71.254: TTL expired in transit.
Reply from 192.168.71.254: TTL expired in transit.
Reply from 192.168.71.254: TTL expired in transit.
Reply from 192.168.71.254: TTL expired in transit.
Reply from 192.168.71.254: TTL expired in transit.
Reply from 192.168.71.254: TTL expired in transit.
Reply from 192.168.71.254: TTL expired in transit.
Reply from 192.168.71.254: TTL expired in transit.

@DISSAI is still not pingable from the server? the ping issue was resolved during the meeting in morning.

Implement IP Network & Security knowledge in Cloud.

https://www.readteknology.com/

@ReadTech  The problem is to get internet traffic to the INSIDE from OUTSIDE.

 

L0 Member

Can I get the downloaded link?

 

L0 Member

Hi,

 

Please share the download link.

 

Best Regards

  • 13104 Views
  • 12 replies
  • 4 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!