Terraform - Automate and Secure Cloud Applications with Palo Alto Networks Next-Gen Firewall

About Terraform

Terraform is a powerful open source tool that is used to build and deploy infrastructure safely and efficiently. The advantage of Terraform is that it is cloud platform agnostic (unlike AWS CFT’s or Azure ARM templates), provides for the definition of infrastructure as code, and produces immutable infrastructure deployments. The Palo Alto Networks Terraform automation project offers Terraform templates to assist in deploying agile infrastructures based on the Palo Alto Networks next generation firewalls in the cloud.

Note: This is a community supported project. Please do not contact the Palo Alto Networks support team, as they will only direct you here for assistance. We encourage you to post your topics and questions in the discussion forums. Thank you!

Terraform Blogs

Terraform Provider Version 1.6.0 Released

post time: 08-30-2019

The 1.6.0 release contains support for aggregate interfaces, subinterfaces, VLANs, policy based forwarding rules, multiple profile types, and the Google Cloud Platform (GCP) Panorama plugin.

Terraform Provider Version 1.5.0 Released

post time: 02-04-2019

The 1.5.0 release contains support for BGP, BFD profiles, an enhanced NAT rule resource, and various user requested enhancements.

Terraform Provider Version 1.4.0 Released

post time: 08-27-2018

The 1.4.0 release includes expanded support for Panorama (such as ethernet interfaces, templates, and template variables), IPSec tunnels, IKE gateways, firewall licensing, and much more.

Terraform Provider Version 1.2.0 Released

post time: 06-19-2018

The 1.2.0 release includes support for security policy groups, PAN-OS 8.1's FQDN destination address translations, and telemetry sharing with Palo Alto Networks.

Terraform Provider Version 1.1.0 Released

post time: 05-01-2018

The 1.1.0 release includes Panorama support, an alternative method for specifying device credentials, and many new resources.



Have questions about how to utilize Terraform to automate your Palo Alto Networks deployments? Join the Live Community to post your questions and get answers.
Author Topic Views Replies
posted: Friday updated: Friday

Destination zone shows as ****

The API command "/api/?key={KEY}&type=config&action=get&xpath=/config/panorama&target={SERIAL}" generates an XML dump of the firewall'...

94 0
posted: a week ago updated: yesterday

Ansible - Failure when processing no_log parameters. Module invocation will be hidden.

I am getting starting with Ansible automation tool against our panorama and firewall devices, i have downloaded the PA roles and trying to check the c...

154 1
posted: a week ago updated: a week ago

Creation of address using REST API

Hi All , I am trying to create new address using REST API and entering details POSTMAN.  However while running query getting " 400 cann...

120 0
posted: 2 weeks ago updated: a week ago

panos_nat_rule- dynamic destination

Is there a way to used the panos_nat_rule ansible module to create a dynamic destination translation? It looks like there is the options for sour...

158 1
posted: 2 weeks ago updated: 2 weeks ago

When I use the API to pull the device-state - am I getting the latest device state?

In another article here, from 2014 (precambrian issues) - they broke down some of the insides of the device state config backup.One of the commands li...

135 0