Panorama managed Cloud NGFW (AWS) - Internal FQDNs

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Panorama managed Cloud NGFW (AWS) - Internal FQDNs

L1 Bithead

I'm currently planning on setting up and testing Cloud NGFW in AWS and have a question about using Panorama for management. Specifically, is it possible to use internal FQDNs with NGFW instances? Can these instances resolve internal FQDNs using our own DNS servers or even AWS-provided DNS servers? I know this is possible with Prisma Access, but I haven't found clear information in the documentation about Cloud NGFW. Any insights or experiences would be greatly appreciated!

3 REPLIES 3

Cyber Elite
Cyber Elite

if you're able to build a tunnel between the NGFW and your datacenter (or set up internal routing if your DNS servers are also in AWS) that will be perfectly possible

Tom Piens
PANgurus - Strata specialist; config reviews, policy optimization

Thank you. Ideally, I want to use the default VPC DNS server (.2 address). Do you happen to know which DNS server the instances will use by default? If they could use the .2 address that would be great.

Cyber Elite
Cyber Elite

the default NGFW configuration does not have DNS servers configured, you need to fill those in yourself. you can use the .2's of the mgmt subnet

Tom Piens
PANgurus - Strata specialist; config reviews, policy optimization
  • 813 Views
  • 3 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!