<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic leaf and spine   and security in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/leaf-and-spine-and-security/m-p/238146#M68215</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;In a spine and leaf ( vpc ) ,where we should place the firewall&amp;nbsp; to protect the data center ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;If&amp;nbsp; we use layer 3 firewall&amp;nbsp; all routing&amp;nbsp; process will be shifted to the fw,&amp;nbsp;spending huge amount on spine won't be beneficial ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Layer 3 or layer 2&amp;nbsp; recommended ?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Thu, 01 Nov 2018 03:04:01 GMT</pubDate>
    <dc:creator>sib2017</dc:creator>
    <dc:date>2018-11-01T03:04:01Z</dc:date>
    <item>
      <title>leaf and spine   and security</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/leaf-and-spine-and-security/m-p/238146#M68215</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;In a spine and leaf ( vpc ) ,where we should place the firewall&amp;nbsp; to protect the data center ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;If&amp;nbsp; we use layer 3 firewall&amp;nbsp; all routing&amp;nbsp; process will be shifted to the fw,&amp;nbsp;spending huge amount on spine won't be beneficial ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Layer 3 or layer 2&amp;nbsp; recommended ?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Thu, 01 Nov 2018 03:04:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/leaf-and-spine-and-security/m-p/238146#M68215</guid>
      <dc:creator>sib2017</dc:creator>
      <dc:date>2018-11-01T03:04:01Z</dc:date>
    </item>
    <item>
      <title>Re: leaf and spine   and security</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/leaf-and-spine-and-security/m-p/238238#M68240</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Here is where zero trust comes into play. In the past it was frowned upon to have the firewall be the center of the network. With zero trust, you are essntially doing just that. Now based upon your question, i assume you are using Cisco Nexus. If you plan on using ACI then you are stuck with the 9K series. If you are just using swtiches for switches, then the 3K's would work and the firewall would need to be speced to handle all the routing traffic.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.paloaltonetworks.com/cyberpedia/what-is-a-zero-trust-architecture" target="_blank"&gt;https://www.paloaltonetworks.com/cyberpedia/what-is-a-zero-trust-architecture&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;</description>
      <pubDate>Thu, 01 Nov 2018 18:45:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/leaf-and-spine-and-security/m-p/238238#M68240</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2018-11-01T18:45:35Z</dc:date>
    </item>
  </channel>
</rss>

