VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
About VM-Series in the Public Cloud

Welcome to the VM-Series in the Public Cloud discussion forum! This community exists as a resource for you to discuss VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud and Alibaba. We encourage you to engage in this rapidly growing community to share ideas, pose questions, and propose real-world solutions to any challenges that may arise.

Disclaimer:
This forum is provided for Live Community members to discuss and share information pertaining to the VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform Oracle Cloud and Alibaba. Please use the information from this forum at your own risk and make sure to test and verify proposed solutions presented here. For information on contacting Palo Alto Networks support, click here.

Discussions

DPDK mode in AWS

I see that we have SR-IOV and DPDK modes supported for Palo Alto in AWS and understand that DPDK is proffered mode which provides fast processing, so are there any specific situation where SR-IOV mode is preferred over DPDK?

 

Azure Application for HA

Hi all,

 

We are looking to set up a HA pair of 9.0 PAs in Azure as per guide below

 

https://docs.paloaltonetworks.com/vm-series/9-0/vm-series-deployment/set-up-the-vm-series-firewall-on-azure/configure-activepassive-ha-for-vm-series-firewall-on-azure.h

...

Internet reachability

Hi ,

Due my self training on Palo Alto VM , I have face some issue where I'm not able to ping internet , but able to ping next host on same subset ( my pc ).

Network connective :

VMnet1: inside interface

VMnet2 : DMZ interface

Bridged : outside interface

V

...

aljohani1409_2-1576242276344.png
aljohani1409_0-1576241780214.png
aljohani1409_1-1576241983497.png

No metrics in cloudwatch

Hello,

I followed this guide https://docs.paloaltonetworks.com/vm-series/9-0/vm-series-deployment/set-up-the-vm-series-firewall-on-aws/deploy-the-vm-series-firewall-on-aws/enable-cloudwatch-monitoring-on-the-vm-series-firewall.html

for enabling the vm-

...

Muttley by L1 Bithead
  • 3419 Views
  • 1 replies
  • 0 Likes

PA with ELB and ILB in Azure

We have the below setup:

 

internet->ELB(public ip)->VM Series(2)-> ILB->Web Servers

 

Where the 2 VM series Firewall in backend pool of both ELB and ILB, the issue here is the Health probe IP for both ELB and ILB is 168.63.129.16 so health probes always

...

Ansh.mi by L1 Bithead
  • 9391 Views
  • 6 replies
  • 0 Likes

Unable to get ssh key to work

Trying to spin up a firewall in the GCP environment but unable to get ssh key to work.  Tried different keys including puttygen generated key.    Also tried project metadata and instance metadata

Ex:

resource "google_compute_instance" "fw-region" {
coun

...

PaulPink by L0 Member
  • 3243 Views
  • 0 replies
  • 0 Likes

Resolved! AWS Availability Zones

For background, here is the scenario:

 

Initially we were looking at a high availability setup with 2 VM appliances, however, there is a restriction to a single AZ in that approach because of how the “floating IP / ENI” works.

 

However, this environment

...

nrobison by L1 Bithead
  • 7703 Views
  • 3 replies
  • 0 Likes
  • 645 Posts
  • 88 Subscriptions
Top Liked Authors
Labels