<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Panroma using public ip in Panorama Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/panorama-discussions/panroma-using-public-ip/m-p/1237408#M2975</link>
    <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Yes, it is possible. There are a few ways to go about this from an architectural standpoint, but in general you need to ensure the following:&lt;BR /&gt;&lt;BR /&gt;&lt;EM&gt;NGFW&lt;/EM&gt;&amp;nbsp;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Public IP of Panorama added under Device --&amp;gt; Setup --&amp;gt; Panorama Settings&amp;nbsp;&lt;/LI&gt;
&lt;LI&gt;Routing, NAT policy rule(s) and security policy rule(s) in place to allow communication to the public IP addressed used by Panorama.&amp;nbsp;
&lt;UL&gt;
&lt;LI&gt;&lt;EM&gt;panorama app-id must be allowed&lt;/EM&gt; (port 3978 by default).&amp;nbsp;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="nohash4u_0-1757089199119.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/69122iE58421C6A4CA6023/image-size/medium?v=v2&amp;amp;px=400" role="button" title="nohash4u_0-1757089199119.png" alt="nohash4u_0-1757089199119.png" /&gt;&lt;/span&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;&lt;EM&gt;ssl app-id must be allowed&lt;/EM&gt;&amp;nbsp;&lt;/LI&gt;
&lt;/UL&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;EM&gt;Panorama&amp;nbsp;&lt;/EM&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Panorama can be configured to use a public IP under Panorama --&amp;gt; Setup --&amp;gt; Interfaces --&amp;gt; Management&amp;nbsp;&lt;/LI&gt;
&lt;LI&gt;Traffic from each NGFW over the public internet needs to be permitted to Panorama in terms of functionality (NAT and routing) and security (security policy rules on the device that sits in front of Panorama).&amp;nbsp; Keep in mind that the public IPs of the NGFWs will be used, or the public IPs of routers which they connect to (again, depending on the setup).&amp;nbsp;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To reiterate: &lt;EM&gt;there may be numerous configurational steps that are required depending on your setup.&amp;nbsp;&lt;/EM&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers&lt;/P&gt;</description>
    <pubDate>Fri, 05 Sep 2025 16:35:00 GMT</pubDate>
    <dc:creator>nohash4u</dc:creator>
    <dc:date>2025-09-05T16:35:00Z</dc:date>
    <item>
      <title>Panroma using public ip</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/panroma-using-public-ip/m-p/1237390#M2972</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;we are using multiple paloalto firewall .To manage centrally we are using panorma .But current configuration working through site to site vpn .&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can we established the connectivity through internet .It will help us even if the site to site vpn is disconnected.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is it possible in Panorma ?&lt;/P&gt;</description>
      <pubDate>Fri, 05 Sep 2025 10:29:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/panroma-using-public-ip/m-p/1237390#M2972</guid>
      <dc:creator>Dheeraj_singh</dc:creator>
      <dc:date>2025-09-05T10:29:51Z</dc:date>
    </item>
    <item>
      <title>Re: Panroma using public ip</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/panroma-using-public-ip/m-p/1237408#M2975</link>
      <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Yes, it is possible. There are a few ways to go about this from an architectural standpoint, but in general you need to ensure the following:&lt;BR /&gt;&lt;BR /&gt;&lt;EM&gt;NGFW&lt;/EM&gt;&amp;nbsp;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Public IP of Panorama added under Device --&amp;gt; Setup --&amp;gt; Panorama Settings&amp;nbsp;&lt;/LI&gt;
&lt;LI&gt;Routing, NAT policy rule(s) and security policy rule(s) in place to allow communication to the public IP addressed used by Panorama.&amp;nbsp;
&lt;UL&gt;
&lt;LI&gt;&lt;EM&gt;panorama app-id must be allowed&lt;/EM&gt; (port 3978 by default).&amp;nbsp;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="nohash4u_0-1757089199119.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/69122iE58421C6A4CA6023/image-size/medium?v=v2&amp;amp;px=400" role="button" title="nohash4u_0-1757089199119.png" alt="nohash4u_0-1757089199119.png" /&gt;&lt;/span&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;&lt;EM&gt;ssl app-id must be allowed&lt;/EM&gt;&amp;nbsp;&lt;/LI&gt;
&lt;/UL&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;EM&gt;Panorama&amp;nbsp;&lt;/EM&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Panorama can be configured to use a public IP under Panorama --&amp;gt; Setup --&amp;gt; Interfaces --&amp;gt; Management&amp;nbsp;&lt;/LI&gt;
&lt;LI&gt;Traffic from each NGFW over the public internet needs to be permitted to Panorama in terms of functionality (NAT and routing) and security (security policy rules on the device that sits in front of Panorama).&amp;nbsp; Keep in mind that the public IPs of the NGFWs will be used, or the public IPs of routers which they connect to (again, depending on the setup).&amp;nbsp;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To reiterate: &lt;EM&gt;there may be numerous configurational steps that are required depending on your setup.&amp;nbsp;&lt;/EM&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers&lt;/P&gt;</description>
      <pubDate>Fri, 05 Sep 2025 16:35:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/panroma-using-public-ip/m-p/1237408#M2975</guid>
      <dc:creator>nohash4u</dc:creator>
      <dc:date>2025-09-05T16:35:00Z</dc:date>
    </item>
    <item>
      <title>Re: Panroma using public ip</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/panroma-using-public-ip/m-p/1237534#M2976</link>
      <description>&lt;P&gt;Hi Nohash4u,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for the reply.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have to enable the public interface in all NGFWs and also enable NAT for Panorama.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please correct me if am wrong.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;can we have any documentation for that&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2025 07:19:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/panroma-using-public-ip/m-p/1237534#M2976</guid>
      <dc:creator>Dheeraj_singh</dc:creator>
      <dc:date>2025-09-09T07:19:27Z</dc:date>
    </item>
  </channel>
</rss>

