<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Zero trust in AWS issue with ALB in VM-Series in the Public Cloud</title>
    <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/zero-trust-in-aws-issue-with-alb/m-p/472389#M1511</link>
    <description>&lt;P&gt;Bumping this up, can't believe nobody else has this issue?&lt;/P&gt;</description>
    <pubDate>Fri, 11 Mar 2022 16:15:36 GMT</pubDate>
    <dc:creator>nelsonc0</dc:creator>
    <dc:date>2022-03-11T16:15:36Z</dc:date>
    <item>
      <title>Zero trust in AWS issue with ALB</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/zero-trust-in-aws-issue-with-alb/m-p/471991#M1510</link>
      <description>&lt;P&gt;We are trying to implement a zero trust environment inside our AWS cloud. We are using a transit gateway deployment, and have all traffic going through a secuirty vpc which houses a pair of PA-VM's. These firewalls are reached by the other VPC's through GWLB's. Because of this architecture when we are allowing inbound web traffic to our ALB's we actually create a rule using the private ip addresses of the ALB's. The issue is the dynamic nature of the ALB these internal IP's change periodically, which in turn invalidates our inbound rules. I have seen some workarounds using NLB, or through Global Accelerator. Neither of these however will keep the private ip of the ALB from changing. I was hoping to use the dynamic group function, but it seems to only be able to pull in EC2's, and not LB's. With zero trust being all the rage how is this not supported? What am I missing.&lt;/P&gt;</description>
      <pubDate>Thu, 10 Mar 2022 14:41:52 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/zero-trust-in-aws-issue-with-alb/m-p/471991#M1510</guid>
      <dc:creator>nelsonc0</dc:creator>
      <dc:date>2022-03-10T14:41:52Z</dc:date>
    </item>
    <item>
      <title>Re: Zero trust in AWS issue with ALB</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/zero-trust-in-aws-issue-with-alb/m-p/472389#M1511</link>
      <description>&lt;P&gt;Bumping this up, can't believe nobody else has this issue?&lt;/P&gt;</description>
      <pubDate>Fri, 11 Mar 2022 16:15:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/zero-trust-in-aws-issue-with-alb/m-p/472389#M1511</guid>
      <dc:creator>nelsonc0</dc:creator>
      <dc:date>2022-03-11T16:15:36Z</dc:date>
    </item>
    <item>
      <title>Re: Zero trust in AWS issue with ALB</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/zero-trust-in-aws-issue-with-alb/m-p/504169#M1588</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/184469"&gt;@nelsonc0&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;Hope you have managed to solve your problem if not, please check which version of AWS plugin for Panorama are you using.&lt;/P&gt;
&lt;P&gt;According to the documentations version 3.0.0 have introduced the support for ALB, NLB and ENI monitoring - &lt;A href="https://docs.paloaltonetworks.com/plugins/vm-series-and-panorama-plugins-release-notes/panorama-plugin-for-aws/aws-plugin-300/whats-new-in-panorama-plugin-for-aws-300#id3986df9a-770d-4c6a-9b91-40f747b6b2e8_id2df12a35-527c-4402-a56a-f4b4b224a6bf" target="_blank"&gt;https://docs.paloaltonetworks.com/plugins/vm-series-and-panorama-plugins-release-notes/panorama-plugin-for-aws/aws-plugin-300/whats-new-in-panorama-plugin-for-aws-300#id3986df9a-770d-4c6a-9b91-40f747b6b2e8_id2df12a35-527c-4402-a56a-f4b4b224a6bf&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Jun 2022 11:55:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/zero-trust-in-aws-issue-with-alb/m-p/504169#M1588</guid>
      <dc:creator>aleksandar.astardzhiev</dc:creator>
      <dc:date>2022-06-16T11:55:22Z</dc:date>
    </item>
  </channel>
</rss>

