VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
About VM-Series in the Public Cloud

Welcome to the VM-Series in the Public Cloud discussion forum! This community exists as a resource for you to discuss VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud and Alibaba. We encourage you to engage in this rapidly growing community to share ideas, pose questions, and propose real-world solutions to any challenges that may arise.

Disclaimer:
This forum is provided for Live Community members to discuss and share information pertaining to the VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform Oracle Cloud and Alibaba. Please use the information from this forum at your own risk and make sure to test and verify proposed solutions presented here. For information on contacting Palo Alto Networks support, click here.

Discussions

Welcome to the VM-Series in the Public Cloud Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 3502 Views
  • 0 replies
  • 0 Likes

VM Series in AWS not reading boot config from bucket

Hello,I followed the instructions here: https://docs.paloaltonetworks.com/vm-series/8-1/vm-series-deployment/bootstrap-the-vm-series-firewall/bootstrap-the-vm-series-firewall-in-awsI only have config/bootstrap.xml, config/init-cfg.txt and the other three empty foldersI have set vmseries-bootstrap-aws-s3bucket=bucket_name in user_configThe instan...

Muttley by L1 Bithead
  • 4518 Views
  • 2 replies
  • 0 Likes

Basic AWS Setup

So I'm having troubles with a deployment ... seems like it should be super straightforward, but I'm just not getting any traffic through the Palo.I've got 3 subnet, private, public, mgmtI swapped the mgmt and eth1/1 interface so the EIP is applied to the public facing interface. I'm able to reach both the EIP and over VPN I'm able to access the ...

Panorama VM Series Cloud Plugin UserID

Hi Community, I ran over this piece of information "The plugin enables publishing custom metrics to cloud monitoring services (such as AWS CloudWatch), bootstrapping, configuring user credential provisioning information from public cloud environments, and seamless updates for cloud libraries or agents on PAN-OS."https://docs.paloaltonetworks.com...

Chacko42 by L4 Transporter
  • 3411 Views
  • 1 replies
  • 0 Likes

double vs single NATing in gcp for outbound internet gateway

We're attempting to deploy a VM series in GCP to act as an outbound internet gateway. All documentation we've been able to find shows the Palos NATing the original source IP to another private IP in a 'public dmz' subnet. GCP will then NAT this new private IP to a public IP to traverse the internet. Has anyone had any success with a deployment ...

Resolved! VM-Series in GCP - Panorama Plugin for GCP

Is there plans to add the VM-Monitoring feature to the Panorama Plugin so that Panorama can connect to the GCP environment to get attributes from the VM instances? From what i see now, the only method is to log onto each GCP firewall and configure the 'VM Information Sources'. It looks like the Panorama Plugin for AWS and Azure have this capabil...

Azure-2-Firewalls-Public-Load-Balancer

I used the Azure-2-Firewalls-Public-Load-Balancer 1.0 template to deploy two vm-series firewalls and a public load balancer. From there I spun up windows 2008 server for testing and added RDP to the load balancer rule but cannot get it to work. I have the NAT from outside > outside > destination untrust interface and then the translation...

Setting up an IPSEC VPN Tunnel on AWS.. Connects but no traffic..

Hello everyone. I am having an issue setting up a VPN from my Palo to my AWS Palo and was hoping someone can help. I did look at other AWS VPN issue but all i saw was issues with aws. This is something else. I have the tunnel up and established but traffic is not working. I see traffic leaving my palo over the correct tunnel interface but it get...

Planning to implement Panorama on VMware nsx

Team, i am not planning to implement panorama on vmware based soultion. i likely to know configuration and resources on vmware ( cpu sizse and ram ...etc..) we have to include maximum 50 palo alto devices into panorama. Panorama should be on both logger and configuration mode. where i can get trail image to upload on VMware.

MUmanath by L1 Bithead
  • 2326 Views
  • 0 replies
  • 0 Likes

PaloAlto transit VPC

Hi, We are planning to deploy transit VPC using pair PaloAlto VM series firewall in the AWS environment.And I am planning to follow deployment guide available here, https://github.com/PaloAltoNetworks/aws-transit-vpc/blob/master/documentation/AWS_Transit_VPC_deployment_guide.pdf my question is does the script always uses lambda to trigger confi...

How can i Create more than 4 security zones on VM-100 on Azure?

We have deplyed a VM-100 FW on Azure on A D3_v2 VM. The VM support maxium of 4 vNICs to be attached to the firewall and i used them as (mgmt, trust, untrust, dmz). now i need to create more 2 DMZz with a diffewrent Subnets and Security zone, which is not supported ? Do you have any ideas on how to solve this Case ??? i must have two other isolat...

Ammar by L2 Linker
  • 3616 Views
  • 1 replies
  • 0 Likes

Resolved! AWS HA Setup

Tried to work through the horribly fragmented documentation, but I have a quick question on setting up HA in AWS: Is it still suggested to swap the mangement interface when deploying the HA model? From the HA documentation section, it sounds like eth0 needs to be the management interface which is in contradiction to the other documentation in t...

  • 704 Posts
  • 107 Subscriptions
Top Liked Authors
Labels