VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
About VM-Series in the Public Cloud

Welcome to the VM-Series in the Public Cloud discussion forum! This community exists as a resource for you to discuss VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud and Alibaba. We encourage you to engage in this rapidly growing community to share ideas, pose questions, and propose real-world solutions to any challenges that may arise.

Disclaimer:
This forum is provided for Live Community members to discuss and share information pertaining to the VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform Oracle Cloud and Alibaba. Please use the information from this forum at your own risk and make sure to test and verify proposed solutions presented here. For information on contacting Palo Alto Networks support, click here.

Discussions

Welcome to the VM-Series in the Public Cloud Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 3502 Views
  • 0 replies
  • 0 Likes

Vulnerability on VM Series

Hi Guys,I have a few vulnerabilities on my vm-series firewall, which is hosted in AWS, which I'm mentioning below. 1. Palo Alto Networks (PAN-OS) Cleartext Exposure of External System Secrets Vulnerability (PAN-231823) CVE-2024-5916 2. Palo Alto Networks (PAN-OS) Improper Input Validation Vulnerability (CVE-2024-5913) CVE-2024-5913 I've chec...

KishorTP by L1 Bithead
  • 1535 Views
  • 1 replies
  • 0 Likes

Firewall deployed on Azure is showing MP constantly high

Hi Team,Please be informed that we have Palo Alto firewall deployed on Azure platform with below details.family: vmmodel: PA-VMvm-license: VM-SERIES-4vm-cap-tier: T2-14GBvm-cpu-count: 4vm-memory: 14351728vm-mode: Microsoft Azurecloud-mode: cloudsw-version: 10.2.9-h1Based on above details, I checked and found out this document which explains maxi...

MSharma415844_0-1725803280789.png
MSharma415844_1-1725803477810.png
MSharma415844_2-1725803565599.png

Azure VPN Connection issues

Hi All, Appreciate any help with an Azure VPN connection. I have a couple that works but this one is problematic. I have configured to match the Azure configuration so my end: IKE: AES-256-CBC, SHA256, Group 14 and Key 8Hrs IPSEC: AES-256-CBC, SHA256, No-PFS and key 27000secs. Gateway: Their Peer IP, My Peer IP, PSK, IKEv2 mode, Passive...

a.jones by L3 Networker
  • 1598 Views
  • 0 replies
  • 0 Likes

Design recommendation for PAN NGFW in AWS

Hi, We are moving our SaaS app to AWS which will periodically query remote endpoints sitting at 20+ of our customer's locations via IPsec. We are looking to keep the AWS architecture simple with a single VPC for the app. What would be an ideal configuration on the PAN that would allow us to segment/isolate each of the customer's traffic so the...

sdip009 by L0 Member
  • 1576 Views
  • 1 replies
  • 0 Likes

Palo Alto VM series Firewall in Azure, Interface error causing slowness

We have Palo Alto VM series deployed in Azure. Observation is once Interface error increases Firewall become slow and would need reboot. Post reboot all works fine no Interface error and firewall is fast. We are using PAN OS: 10.1.12 Accelerate Networking on Trust and Untrust Interface. Anyone saw similar issue and found the cause of this Pro...

birojitn by L1 Bithead
  • 1445 Views
  • 1 replies
  • 0 Likes

PA-VM-ESX-8.1.10.ova .

Dear Palo Alto Team, I am new to this product and need to do some lab practical for that i need PA-VM-ESX-8.1.10.ova . Please ping me if some one have this image or the url from where i can download it

show "cfg.general.need-acknowledgement-to-login' no_matches" after PA-HDF login"

I use VM-series trial 30 days and take ova file to create vm on esxi after complete installation. and i use default admin/admin but i found it can not work and found error "cfg.general.need-acknowledgement-to-login' no_matches" after PA-HDF login" after PA-HDF login Has anyone encountered this issue after using the VM-Series 30-day trial.We...

scmnitipong_0-1693064921967.png

Azure Windows Defender alerted to Phonzy.A!ml

Getting an alert from Azure defender and unable to find any reference regarding the alert in the community sections. pps_parport.ko /usr/lib/modules/4.18.0-80.11.2.10.pan.x86_64/kernel/drivers/pps/clients 'Phonzy' malware was detected (Agentless) Trojan:Script/Phonzy.B!ml Trojan pps_parport.ko has anyone seen this and is this a...

Keough by L0 Member
  • 2721 Views
  • 1 replies
  • 0 Likes

Palo Alto deployment in Azure VMware Solution

Do you have routing and other configuration details for these topologies mentioned in the link provided. For eg: creating transient/management segments and isolated tier 1 gateways etc. https://techcommunity.microsoft.com/t5/azure-migration-and/firewall-integration-in-azure-vmware-solution/ba-p/2254961 However, into the NSX-T environment of ...

Azure Transit Build with VNG/LNG

Hi, I have build the configuration in Azure called the "Transit Vnet Build" with Azure Front LB, 2 Palo Alto VM, Azure Back LB. It works well. I used 3 NIC (management, untrust, trust). I want to connect this transit vnet to my local infrastructure. It seems that the best way to do that is using Azure VNG/LNG. So I build the tunnel and the confi...

Mellanox Drivers Support for PAN OS on VM series in Public Cloud

Do we have compatibility matrix for drivers for PAN OS version. Below is what I found but not sure if this applies to Public Cloud. What version of PAN OS Support both Mellanox 4 and 5 drivers. As per below support is only for 4. https://docs.paloaltonetworks.com/compatibility-matrix/vm-series-firewalls/sr-iov-and-dpdk-drivers

birojitn by L1 Bithead
  • 1483 Views
  • 2 replies
  • 0 Likes
  • 704 Posts
  • 107 Subscriptions
Top Liked Authors
Labels