Automation and Orchestration Tools and Technologies

When configuring and managing the Palo Alto Networks Next-Generation firewall for scale and agility, it’s nice to have a collection of tools to automate activities and events. Our Automation and Orchestration tools and technologies provide a collection of open, extensible projects that help you take the next step. Learn about these tools with detailed documents and join in the discussions with other users to get the most from these resources.

Automation Projects

Available Automation Tools


Automation for Everyone. Ansible is designed around the way people work and the way people work together. Learn more

Device Framework Device Framework

Device Framework enables non-programmers to create sophisticated automations that leverage the PAN-OS API. Learn more

Terraform Terraform

Terraform enables teams to automate deployment and adapt to the changing needs of cloud infrastructures. Learn more

Automation Blog

Terraform Templates for Cloud-Deployed Palo Alto Network Next Generation Firewalls

post time: Aug 7, 2017 1:21:31 PM

Templates for Terraform provide the ability to quickly and easily deploy and secure critical applications on the Palo Alto Networks Next Generation firewall for public cloud environments such as AWS and Azure. The Palo Alto Networks Live Community provides a central place to learn how to utilize this technology, get help from others using it, and more.

Using Ansible For Firewall SEC Policy Change Management Process

post time: Jul 24, 2017 11:29:13 AM

Manage security policy changes using the power of the Palo Alto Networks custom Ansible modules and Ansible ‘pull’ feature.



Using Ansible to Automate & Accelerate AWS Deployments

post time: Jul 24, 2017 11:20:15 AM

This video shows how to use Ansible to automate and accelerate AWS deployments.


Palo Alto Networks Device Framework

post time: Jun 8, 2017 2:03:55 PM

The Palo Alto Networks Device Framework is a powerful tool, offered as a python library, to create automations and interactions with PAN-OS devices including Next-generation Firewalls and Panorama.

Ansible and Palo Alto Networks Firewall

post time: Apr 3, 2017 2:38:27 PM

The combination of Ansible and Palo Alto Networks modules address the most common applications of automation and orchestration of the Palo Alto Networks VM-Series NGFW (Next Generation Firewall) for both public and private cloud deployments.


Have questions about automation APIs? Join the Live Community to post your questions and get answers.
Author Topic Views Replies
posted: 3 hours ago updated: 3 hours ago

Get a list of files downloaded by User-ID

I'm working on some IR automation and am trying to find a way to get a list of files downloaded by a user from my PA. I was thinking of triggering a c...

5 1
posted: a week ago updated: a week ago

API key after configuration migration

Hello,We have old PA-4060 with 4.1.12 version of software which is operated using XML API. Sometime in the past we have generated API k...

14 2
posted: 3 weeks ago updated: 3 weeks ago

Alert when user goes online

Ladies and gentlemen,  I have a use-case where some sales people etc, don't show up online for a long time and it's hard for me do remote ma...

57 3
posted: 3 weeks ago updated: 3 weeks ago

Configuration to Export Address and Address Objects

I would like to review the addresses and address groups on our PA. I was trying to use the article “How to Export Address and Address-group Objects Us...

34 1
posted: Aug 10, 2017 2:13:47 AM updated: Aug 10, 2017 11:42:46 PM

API: add a managed device into panorama

Hi,I'm looking for the correct syntax to add a new managed device (serial number) into panorama, using API.I tried lots of stuffs, but without success...

53 9