Terraform - Automate and Secure Cloud Applications with Palo Alto Networks Next-Gen Firewall

About Terraform

Terraform is a powerful open source tool that is used to build and deploy infrastructure safely and efficiently. The advantage of Terraform is that it is cloud platform agnostic (unlike AWS CFT’s or Azure ARM templates), provides for the definition of infrastructure as code, and produces immutable infrastructure deployments. The Palo Alto Networks Terraform automation project offers Terraform templates to assist in deploying agile infrastructures based on the Palo Alto Networks next generation firewalls in the cloud.

Note: This is a community supported project. Please do not contact the Palo Alto Networks support team, as they will only direct you here for assistance. We encourage you to post your topics and questions in the discussion forums. Thank you!

Terraform Blogs

Terraform Provider Version 1.6.0 Released

post time: 08-30-2019

The 1.6.0 release contains support for aggregate interfaces, subinterfaces, VLANs, policy based forwarding rules, multiple profile types, and the Google Cloud Platform (GCP) Panorama plugin.

Terraform Provider Version 1.5.0 Released

post time: 02-04-2019

The 1.5.0 release contains support for BGP, BFD profiles, an enhanced NAT rule resource, and various user requested enhancements.

Terraform Provider Version 1.4.0 Released

post time: 08-27-2018

The 1.4.0 release includes expanded support for Panorama (such as ethernet interfaces, templates, and template variables), IPSec tunnels, IKE gateways, firewall licensing, and much more.

Terraform Provider Version 1.2.0 Released

post time: 06-19-2018

The 1.2.0 release includes support for security policy groups, PAN-OS 8.1's FQDN destination address translations, and telemetry sharing with Palo Alto Networks.

Terraform Provider Version 1.1.0 Released

post time: 05-01-2018

The 1.1.0 release includes Panorama support, an alternative method for specifying device credentials, and many new resources.



Have questions about how to utilize Terraform to automate your Palo Alto Networks deployments? Join the Live Community to post your questions and get answers.
Author Topic Views Replies
posted: Thursday updated: Thursday

How to run post-connect script on each network flapp?

I have a script that is run after successful connection to my VPN network. This script sets up my routing accordingly. Unfortunately if I lock my scre...

109 0
posted: a week ago updated: Thursday

Unable to get output of 'show rule-hit-count...' via panxapi.py or xapi.py

Hi All, Wondering if anyone has been able to successfully get the output of the following command via either the panxapi.py wrapper or via their ...

144 2
posted: a week ago updated: a week ago

OS Upgrade Script

Hiya! Does anybody have a script that automates PAN OS Upgrade on firewall pairs? If so, can you share one with me? I need to be able to run a sc...

137 1
posted: a week ago updated: a week ago

Use Ansible to backup config


is there a simple way to backup config using Ansible ?



152 1
posted: 2 weeks ago updated: 2 weeks ago

Use ansible or XML to create Securities profiles actions

Hello guys, does anybody know how to use ansible or other Palo alto automation tool to create a security profile?  eg. a new URL filtering where ...

182 1