VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
About VM-Series in the Public Cloud

Welcome to the VM-Series in the Public Cloud discussion forum! This community exists as a resource for you to discuss VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud and Alibaba. We encourage you to engage in this rapidly growing community to share ideas, pose questions, and propose real-world solutions to any challenges that may arise.

Disclaimer:
This forum is provided for Live Community members to discuss and share information pertaining to the VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform Oracle Cloud and Alibaba. Please use the information from this forum at your own risk and make sure to test and verify proposed solutions presented here. For information on contacting Palo Alto Networks support, click here.

Discussions

DMZ setup on Transit VPC (AWS)

I'm just wondering if anyone setup a DMZ on Transit firewalls in Transit VPC on AWS? Basically we need to have outbound to inbound NAT rule with a elastic ip address. Came across this link but not sure if this is the proper way of doing it. We would

...

DPDK mode in AWS

I see that we have SR-IOV and DPDK modes supported for Palo Alto in AWS and understand that DPDK is proffered mode which provides fast processing, so are there any specific situation where SR-IOV mode is preferred over DPDK?

 

Azure Application for HA

Hi all,

 

We are looking to set up a HA pair of 9.0 PAs in Azure as per guide below

 

https://docs.paloaltonetworks.com/vm-series/9-0/vm-series-deployment/set-up-the-vm-series-firewall-on-azure/configure-activepassive-ha-for-vm-series-firewall-on-azure.h

...

Internet reachability

Hi ,

Due my self training on Palo Alto VM , I have face some issue where I'm not able to ping internet , but able to ping next host on same subset ( my pc ).

Network connective :

VMnet1: inside interface

VMnet2 : DMZ interface

Bridged : outside interface

V

...

aljohani1409_2-1576242276344.png
aljohani1409_0-1576241780214.png
aljohani1409_1-1576241983497.png

No metrics in cloudwatch

Hello,

I followed this guide https://docs.paloaltonetworks.com/vm-series/9-0/vm-series-deployment/set-up-the-vm-series-firewall-on-aws/deploy-the-vm-series-firewall-on-aws/enable-cloudwatch-monitoring-on-the-vm-series-firewall.html

for enabling the vm-

...

Muttley by L1 Bithead
  • 3336 Views
  • 1 replies
  • 0 Likes

PA with ELB and ILB in Azure

We have the below setup:

 

internet->ELB(public ip)->VM Series(2)-> ILB->Web Servers

 

Where the 2 VM series Firewall in backend pool of both ELB and ILB, the issue here is the Health probe IP for both ELB and ILB is 168.63.129.16 so health probes always

...

Ansh.mi by L1 Bithead
  • 9045 Views
  • 6 replies
  • 0 Likes

Unable to get ssh key to work

Trying to spin up a firewall in the GCP environment but unable to get ssh key to work.  Tried different keys including puttygen generated key.    Also tried project metadata and instance metadata

Ex:

resource "google_compute_instance" "fw-region" {
coun

...

PaulPink by L0 Member
  • 3175 Views
  • 0 replies
  • 0 Likes
  • 632 Posts
  • 85 Subscriptions
This widget could not be displayed.
Top Liked Authors
Labels