<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: any suggestion to replace current PA3020? in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/any-suggestion-to-replace-current-pa3020/m-p/531822#M929</link>
    <description>&lt;P&gt;hi&amp;nbsp;&amp;nbsp;&lt;SPAN&gt;Thank you for your suggestion. If I were to choose from the 1400 series, I would prefer the PA-1420 because it has 8 Ethernet interfaces with 2.5/5G capabilities, compared to the PA-1410 which only has 4 interfaces.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have setup budget for PA3410 &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;do you know how is the difference between PA 3400 series and PA1400 series.&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Also, I found out that the PA-1420 can support only up to 1500 security rules.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;this is the current usage of PA3020&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class=""&gt;- we don't use SSL decryption&lt;/P&gt;
&lt;P class=""&gt;- data plane status is Max 50 - 60%&lt;/P&gt;
&lt;P class=""&gt;- Max session is around 65000/250000&lt;/P&gt;
&lt;P class=""&gt;- security rules - 500 - 700/2500&lt;/P&gt;
&lt;P class=""&gt;- virtual router 6/10 with segmentation&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/77347"&gt;@TomYoung&lt;/a&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 21 Feb 2023 07:13:58 GMT</pubDate>
    <dc:creator>zinkt101</dc:creator>
    <dc:date>2023-02-21T07:13:58Z</dc:date>
    <item>
      <title>any suggestion to replace current PA3020?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/any-suggestion-to-replace-current-pa3020/m-p/531707#M923</link>
      <description>&lt;P&gt;Hi.&lt;/P&gt;
&lt;P&gt;we are planning to replace/upgrade current PA3020 to a newer PA model.&lt;/P&gt;
&lt;P&gt;could you please suggest which model is the best suitable with my requirement below?&lt;/P&gt;
&lt;P&gt;thank you.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Current PA3020 Setup Info&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;- using 5 virtual routers&lt;/P&gt;
&lt;P&gt;- using aggregate interfaces&lt;/P&gt;
&lt;P&gt;- as Internet Gateway&lt;/P&gt;
&lt;P&gt;- as small Data Center Gateway (AD, some storages and a few apps)&lt;/P&gt;
&lt;P&gt;- around 500 users&amp;nbsp;&lt;/P&gt;
&lt;P&gt;- the firewall interfaces will be connected to 2.5G or 10G interfaces at switch.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 20 Feb 2023 07:43:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/any-suggestion-to-replace-current-pa3020/m-p/531707#M923</guid>
      <dc:creator>zinkt101</dc:creator>
      <dc:date>2023-02-20T07:43:46Z</dc:date>
    </item>
    <item>
      <title>Re: any suggestion to replace current PA3020?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/any-suggestion-to-replace-current-pa3020/m-p/531752#M928</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/274799"&gt;@zinkt101&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The PA-1410 is a great replacement NGFW for the PA-3020.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;10 virtual routers&lt;/LI&gt;
&lt;LI&gt;LACP&lt;/LI&gt;
&lt;LI&gt;3x threat prevention throughput of 3.2 Gbps&lt;/LI&gt;
&lt;LI&gt;almost 1M max sessions&lt;/LI&gt;
&lt;LI&gt;2.5G and 10G interfaces&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;The PA-400 Series do not have 10G interfaces.&amp;nbsp; I would not purchase an older model.&amp;nbsp; The PA-1410 will have a longer life span.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Mon, 20 Feb 2023 13:42:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/any-suggestion-to-replace-current-pa3020/m-p/531752#M928</guid>
      <dc:creator>TomYoung</dc:creator>
      <dc:date>2023-02-20T13:42:11Z</dc:date>
    </item>
    <item>
      <title>Re: any suggestion to replace current PA3020?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/any-suggestion-to-replace-current-pa3020/m-p/531822#M929</link>
      <description>&lt;P&gt;hi&amp;nbsp;&amp;nbsp;&lt;SPAN&gt;Thank you for your suggestion. If I were to choose from the 1400 series, I would prefer the PA-1420 because it has 8 Ethernet interfaces with 2.5/5G capabilities, compared to the PA-1410 which only has 4 interfaces.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have setup budget for PA3410 &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;do you know how is the difference between PA 3400 series and PA1400 series.&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Also, I found out that the PA-1420 can support only up to 1500 security rules.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;this is the current usage of PA3020&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class=""&gt;- we don't use SSL decryption&lt;/P&gt;
&lt;P class=""&gt;- data plane status is Max 50 - 60%&lt;/P&gt;
&lt;P class=""&gt;- Max session is around 65000/250000&lt;/P&gt;
&lt;P class=""&gt;- security rules - 500 - 700/2500&lt;/P&gt;
&lt;P class=""&gt;- virtual router 6/10 with segmentation&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/77347"&gt;@TomYoung&lt;/a&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Feb 2023 07:13:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/any-suggestion-to-replace-current-pa3020/m-p/531822#M929</guid>
      <dc:creator>zinkt101</dc:creator>
      <dc:date>2023-02-21T07:13:58Z</dc:date>
    </item>
    <item>
      <title>Re: any suggestion to replace current PA3020?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/any-suggestion-to-replace-current-pa3020/m-p/531834#M930</link>
      <description>&lt;P&gt;thank you for your suggestions&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If I were chosen PA1400 series, I would choose PA1420 because it has eight 2.5/5 Gigabit ethernet interfaces compared to PA1410 which has only 4 interfaces.&lt;/P&gt;
&lt;P&gt;I also found that PA1420 support only 1500 security policy rules which is too less compared to PA3410.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have budget set for PA3410 &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;do you know what is the big difference between PA1400 series and PA3400 series.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the current PA3020 utilization is as below.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class=""&gt;- we don't use SSL decryption&lt;/P&gt;
&lt;P class=""&gt;- data plane status is Max 50 - 60%&lt;/P&gt;
&lt;P class=""&gt;- Max session is around 65000/250000&lt;/P&gt;
&lt;P class=""&gt;- security rules - 500 - 700/2500&lt;/P&gt;
&lt;P class=""&gt;- virtual router 6/10 with segmentation&lt;/P&gt;
&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/77347"&gt;@TomYoung&lt;/a&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Feb 2023 09:13:09 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/any-suggestion-to-replace-current-pa3020/m-p/531834#M930</guid>
      <dc:creator>zinkt101</dc:creator>
      <dc:date>2023-02-21T09:13:09Z</dc:date>
    </item>
    <item>
      <title>Re: any suggestion to replace current PA3020?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/any-suggestion-to-replace-current-pa3020/m-p/531870#M931</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/274799"&gt;@zinkt101&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The Product Selection tool is a great way to compare NGFWs -&amp;gt; &lt;A href="https://www.paloaltonetworks.com/products/product-comparison?chosen=pa-3410,pa-1420,pa-3420" target="_blank"&gt;https://www.paloaltonetworks.com/products/product-comparison?chosen=pa-3410,pa-1420,pa-3420&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It should highlight the main differences.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Tue, 21 Feb 2023 15:39:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/any-suggestion-to-replace-current-pa3020/m-p/531870#M931</guid>
      <dc:creator>TomYoung</dc:creator>
      <dc:date>2023-02-21T15:39:21Z</dc:date>
    </item>
  </channel>
</rss>

