VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
About VM-Series in the Public Cloud

Welcome to the VM-Series in the Public Cloud discussion forum! This community exists as a resource for you to discuss VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud and Alibaba. We encourage you to engage in this rapidly growing community to share ideas, pose questions, and propose real-world solutions to any challenges that may arise.

Disclaimer:
This forum is provided for Live Community members to discuss and share information pertaining to the VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform Oracle Cloud and Alibaba. Please use the information from this forum at your own risk and make sure to test and verify proposed solutions presented here. For information on contacting Palo Alto Networks support, click here.

Discussions

Welcome to the VM-Series in the Public Cloud Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 3525 Views
  • 0 replies
  • 0 Likes

Palo VM - The system is shutting down due to masterd initiated

I have a VM series Palo running 10.1.11-h4 and the system log is showing that the device has a system shutdown with a description of the following: The system is shutting down due to masterd initiated. I have not had much luck researching this error or why the Palo VM keeps shutting down due to this error. It was sporadic in nature but has bec...

VM-Series from Azure Marketplace: Unable to select existing VNet

I am trying to deploy the VM-Series Next-Generation Firewall from the Azure Marketplace. I want to deploy it on my existing "hub" VNet. If I select the "Single VM" plan, the Networking tab in the deployment wizard allows me to select my existing VNet. But if I select the "High resiliency with Load Balancers" option, I can only proceed if I sele...

Public ENI not showing up on VM Palo Alto Firewall

I have a vmseries firewall deployed on an ec2 instance. I have and private ip assigned to the internal and external interfaces via dhcp. I have attached a EIP to the external facing ENI. Once I assigned that EIP to the external ENI I rebooted the firewall several times and the public address is not showing up at all. I tried building a Dynamic N...

Route internal EC2 with public and private address through private PA to the web

I have an EC2 instance in a private vpc that I'm trying to route through a security VPC hosting a palo alto firewall. My issue at the moment is getting the traffic to pass through firewall to th IGW on the security VPC. I have been able see traffic trying to get through but is timing out. the Untrusted Interface on the firewall does not have an ...

Vulnerability on VM Series

Hi Guys,I have a few vulnerabilities on my vm-series firewall, which is hosted in AWS, which I'm mentioning below. 1. Palo Alto Networks (PAN-OS) Cleartext Exposure of External System Secrets Vulnerability (PAN-231823) CVE-2024-5916 2. Palo Alto Networks (PAN-OS) Improper Input Validation Vulnerability (CVE-2024-5913) CVE-2024-5913 I've chec...

KishorTP by L1 Bithead
  • 1567 Views
  • 1 replies
  • 0 Likes

Firewall deployed on Azure is showing MP constantly high

Hi Team,Please be informed that we have Palo Alto firewall deployed on Azure platform with below details.family: vmmodel: PA-VMvm-license: VM-SERIES-4vm-cap-tier: T2-14GBvm-cpu-count: 4vm-memory: 14351728vm-mode: Microsoft Azurecloud-mode: cloudsw-version: 10.2.9-h1Based on above details, I checked and found out this document which explains maxi...

MSharma415844_0-1725803280789.png
MSharma415844_1-1725803477810.png
MSharma415844_2-1725803565599.png

Azure VPN Connection issues

Hi All, Appreciate any help with an Azure VPN connection. I have a couple that works but this one is problematic. I have configured to match the Azure configuration so my end: IKE: AES-256-CBC, SHA256, Group 14 and Key 8Hrs IPSEC: AES-256-CBC, SHA256, No-PFS and key 27000secs. Gateway: Their Peer IP, My Peer IP, PSK, IKEv2 mode, Passive...

a.jones by L3 Networker
  • 1624 Views
  • 0 replies
  • 0 Likes

Design recommendation for PAN NGFW in AWS

Hi, We are moving our SaaS app to AWS which will periodically query remote endpoints sitting at 20+ of our customer's locations via IPsec. We are looking to keep the AWS architecture simple with a single VPC for the app. What would be an ideal configuration on the PAN that would allow us to segment/isolate each of the customer's traffic so the...

sdip009 by L0 Member
  • 1602 Views
  • 1 replies
  • 0 Likes

Palo Alto VM series Firewall in Azure, Interface error causing slowness

We have Palo Alto VM series deployed in Azure. Observation is once Interface error increases Firewall become slow and would need reboot. Post reboot all works fine no Interface error and firewall is fast. We are using PAN OS: 10.1.12 Accelerate Networking on Trust and Untrust Interface. Anyone saw similar issue and found the cause of this Pro...

birojitn by L1 Bithead
  • 1468 Views
  • 1 replies
  • 0 Likes

PA-VM-ESX-8.1.10.ova .

Dear Palo Alto Team, I am new to this product and need to do some lab practical for that i need PA-VM-ESX-8.1.10.ova . Please ping me if some one have this image or the url from where i can download it

show "cfg.general.need-acknowledgement-to-login' no_matches" after PA-HDF login"

I use VM-series trial 30 days and take ova file to create vm on esxi after complete installation. and i use default admin/admin but i found it can not work and found error "cfg.general.need-acknowledgement-to-login' no_matches" after PA-HDF login" after PA-HDF login Has anyone encountered this issue after using the VM-Series 30-day trial.We...

scmnitipong_0-1693064921967.png

Azure Windows Defender alerted to Phonzy.A!ml

Getting an alert from Azure defender and unable to find any reference regarding the alert in the community sections. pps_parport.ko /usr/lib/modules/4.18.0-80.11.2.10.pan.x86_64/kernel/drivers/pps/clients 'Phonzy' malware was detected (Agentless) Trojan:Script/Phonzy.B!ml Trojan pps_parport.ko has anyone seen this and is this a...

Keough by L0 Member
  • 2773 Views
  • 1 replies
  • 0 Likes

Palo Alto deployment in Azure VMware Solution

Do you have routing and other configuration details for these topologies mentioned in the link provided. For eg: creating transient/management segments and isolated tier 1 gateways etc. https://techcommunity.microsoft.com/t5/azure-migration-and/firewall-integration-in-azure-vmware-solution/ba-p/2254961 However, into the NSX-T environment of ...

  • 709 Posts
  • 107 Subscriptions
Top Solution Authors
Top Liked Authors
Labels