VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
About VM-Series in the Public Cloud

Welcome to the VM-Series in the Public Cloud discussion forum! This community exists as a resource for you to discuss VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud and Alibaba. We encourage you to engage in this rapidly growing community to share ideas, pose questions, and propose real-world solutions to any challenges that may arise.

Disclaimer:
This forum is provided for Live Community members to discuss and share information pertaining to the VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform Oracle Cloud and Alibaba. Please use the information from this forum at your own risk and make sure to test and verify proposed solutions presented here. For information on contacting Palo Alto Networks support, click here.

Discussions

Welcome to the VM-Series in the Public Cloud Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 3527 Views
  • 0 replies
  • 0 Likes

PaloAlto transit VPC

Hi, We are planning to deploy transit VPC using pair PaloAlto VM series firewall in the AWS environment.And I am planning to follow deployment guide available here, https://github.com/PaloAltoNetworks/aws-transit-vpc/blob/master/documentation/AWS_Transit_VPC_deployment_guide.pdf my question is does the script always uses lambda to trigger confi...

How can i Create more than 4 security zones on VM-100 on Azure?

We have deplyed a VM-100 FW on Azure on A D3_v2 VM. The VM support maxium of 4 vNICs to be attached to the firewall and i used them as (mgmt, trust, untrust, dmz). now i need to create more 2 DMZz with a diffewrent Subnets and Security zone, which is not supported ? Do you have any ideas on how to solve this Case ??? i must have two other isolat...

Ammar by L2 Linker
  • 3635 Views
  • 1 replies
  • 0 Likes

Resolved! AWS HA Setup

Tried to work through the horribly fragmented documentation, but I have a quick question on setting up HA in AWS: Is it still suggested to swap the mangement interface when deploying the HA model? From the HA documentation section, it sounds like eth0 needs to be the management interface which is in contradiction to the other documentation in t...

Resolved! Auto Scale Group - VM Series

For my EC2 instances (App Server), I just created Launch Template/ASG. Can I do the same thing with the VM-Series FWs? Capture an AMI, create a Launch Template and ASG? Here is my situation, I have two firewalls that I manually built under an NLB. I would like to replace those with an ASG. Any advice would be super appreciated. Thank you,

AWS - Availability Zones - Palo Alto Location

Hi, I am looking at deploying the VM-Series into AWS to replace an existing deployment of Sophos UTMs. But can someone help tell me if I am going mad, or have found a limiation. The VM-Series would be used for egress traffic only, and we dont have tight SLA's so ideally a single VM FW will sort us out. If I deploy a single VM-Series into say Ava...

Resolved! Autoscale (manually created VM-SERIES) on AWS

two firewalls behind an NLB. what approach would you take to spin up additional firewalls if a certain threshold is hit (what threshold would you trigger on)? i've looked at the templates provided by palo alto but this would be adding additional firewalls in already established VPCs. also use panorama

Resolved! VM-Series to TG for ECMP VPN on AWS

I'm looking at taking advantage of ECMP VPN to attach VM-SERIES to the Transit Gateway. I would like to use tunnel interfaces for this and would like egress/ingress traffic to go through the VM-SERIES appliances. Can somone that has implemented this design provide some feedback, steps and things to keep in mind? Thank you,

Resolved! Ansible -Setup

Hello, I am struggling with the basic setup.I can use curl to verify I have a user and password that works, but curl can ignore the certificate.Is there a way for ansible-pan to ignore it as well? Thanks for your help!

Configure Global protect

I have setup Auto Scale VM-Series Firewalls with the Amazon ELB Service and backend server. I need to configure global protect from palo alto web viewI follow this docs and also I have AWS Elastic IP but I am confused with how I can configure AWS EIP.Could any one help me to configure global protect VPN

Service Route Configuration - DNS resolution seems to fail

Hi, I'm currently staging a PAN-VM (8.1.3 KVM) and have hit an issue. The setup: I've configured the interfaces, zones, routing (static default route) etc. correctly.I've modified the service router configuration to use the Internet facing dataplane interface IP (i.e. customized and not use management interface). That is I allow DNS, NTP, Palo ...

Trust interface on vm not coming up in AWS

Im doing some testing in AWS with a DEV server on the inside of my vm 100.. I have E1/2 configured as gateway interface with a ENI private IP address we created in AWS. However, after troubleshooting almost the entire day I cant get it to come up. Im using 9.0.1 so this could be a bug but Im not sure. Has anybody every encountered this?

  • 709 Posts
  • 107 Subscriptions
Top Solution Authors
Top Liked Authors
Labels