<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Whether configuring Vsys will make firewall more secure or not in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/whether-configuring-vsys-will-make-firewall-more-secure-or-not/m-p/520410#M544</link>
    <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/197203"&gt;@perumalj&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Good evening, it all depends on the use.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Example if you have a firewall or a HA of a pair of PA 52XX series, you have the possibility to use virtual systems. That allows you virtual system, to be able to segment a Firewall in several, example:&lt;/P&gt;
&lt;P&gt;Thinking about a company, an enterprise, or a Holding company and you want each of the companies to have its own virtual firewall inside a physical hardware, is where in this use case ( there are more ) can make sense:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Example:&lt;/P&gt;
&lt;P&gt;Company 1: Will have the VSYS1 and will occupy the first 4 interfaces of the Dataplante.&lt;BR /&gt;Company 2: Will have VSYS2 and occupy 2 interfaces (smaller network).&lt;BR /&gt;Company 3: Will have VSYS3 and will occupy other 4 interfaces.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;And so, you can segment the administration, changes, policies, among others.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here are some docs with details and use cases:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/virtual-systems/virtual-systems-overview/benefits-of-virtual-systems" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/virtual-systems/virtual-systems-overview/benefits-of-virtual-systems&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/virtual-systems/virtual-systems-overview/use-cases-for-virtual-systems" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/virtual-systems/virtual-systems-overview/use-cases-for-virtual-systems&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/virtual-systems/virtual-systems-overview/virtual-system-components-and-segmentation" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/virtual-systems/virtual-systems-overview/virtual-system-components-and-segmentation&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Support Platform Firewalls:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/virtual-systems/virtual-systems-overview/platform-support-and-licensing-for-virtual-systems" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/virtual-systems/virtual-systems-overview/platform-support-and-licensing-for-virtual-systems&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Best regards&lt;/P&gt;</description>
    <pubDate>Sat, 05 Nov 2022 06:01:15 GMT</pubDate>
    <dc:creator>Metgatz</dc:creator>
    <dc:date>2022-11-05T06:01:15Z</dc:date>
    <item>
      <title>Whether configuring Vsys will make firewall more secure or not</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/whether-configuring-vsys-will-make-firewall-more-secure-or-not/m-p/520403#M539</link>
      <description>&lt;P&gt;I would like to know advantage and disadvantage of implementing Vsys.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;in an environment , we are able to configure our firewalls with vsys or without vsys.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Would also like to know whether configuring vsys will make firewall more secure or not ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 05 Nov 2022 04:50:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/whether-configuring-vsys-will-make-firewall-more-secure-or-not/m-p/520403#M539</guid>
      <dc:creator>perumalj</dc:creator>
      <dc:date>2022-11-05T04:50:06Z</dc:date>
    </item>
    <item>
      <title>Re: Whether configuring Vsys will make firewall more secure or not</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/whether-configuring-vsys-will-make-firewall-more-secure-or-not/m-p/520410#M544</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/197203"&gt;@perumalj&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Good evening, it all depends on the use.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Example if you have a firewall or a HA of a pair of PA 52XX series, you have the possibility to use virtual systems. That allows you virtual system, to be able to segment a Firewall in several, example:&lt;/P&gt;
&lt;P&gt;Thinking about a company, an enterprise, or a Holding company and you want each of the companies to have its own virtual firewall inside a physical hardware, is where in this use case ( there are more ) can make sense:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Example:&lt;/P&gt;
&lt;P&gt;Company 1: Will have the VSYS1 and will occupy the first 4 interfaces of the Dataplante.&lt;BR /&gt;Company 2: Will have VSYS2 and occupy 2 interfaces (smaller network).&lt;BR /&gt;Company 3: Will have VSYS3 and will occupy other 4 interfaces.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;And so, you can segment the administration, changes, policies, among others.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here are some docs with details and use cases:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/virtual-systems/virtual-systems-overview/benefits-of-virtual-systems" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/virtual-systems/virtual-systems-overview/benefits-of-virtual-systems&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/virtual-systems/virtual-systems-overview/use-cases-for-virtual-systems" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/virtual-systems/virtual-systems-overview/use-cases-for-virtual-systems&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/virtual-systems/virtual-systems-overview/virtual-system-components-and-segmentation" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/virtual-systems/virtual-systems-overview/virtual-system-components-and-segmentation&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Support Platform Firewalls:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/virtual-systems/virtual-systems-overview/platform-support-and-licensing-for-virtual-systems" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/virtual-systems/virtual-systems-overview/platform-support-and-licensing-for-virtual-systems&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Best regards&lt;/P&gt;</description>
      <pubDate>Sat, 05 Nov 2022 06:01:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/whether-configuring-vsys-will-make-firewall-more-secure-or-not/m-p/520410#M544</guid>
      <dc:creator>Metgatz</dc:creator>
      <dc:date>2022-11-05T06:01:15Z</dc:date>
    </item>
  </channel>
</rss>

