- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
Welcome to the VM-Series in the Public Cloud discussion forum! This community exists as a resource for you to discuss VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud and Alibaba. We encourage you to engage in this rapidly growing community to share ideas, pose questions, and propose real-world solutions to any challenges that may arise.
Disclaimer:
This forum is provided for Live Community members to discuss and share information pertaining to the VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform Oracle Cloud and Alibaba. Please use the information from this forum at your own risk and make sure to test and verify proposed solutions presented here. For information on contacting Palo Alto Networks support, click here.
I am not sure why am I getting this IKEv2 IKE SA negotiation is failed as responder, non-rekey. Failed SA error when my custome is trying to send traffic to my VM-100 via IPSEC tunnel. This was working until yesterday but suddenly it stopped working
...
I'm planning to deploy VM series on AWS cloud, however I need clarification on VM subnet selection.
As per documentation, we have to attach 3 NIC in the VM , one each for Mgmt,WAN & LAN. My question is whether all NIC have to same AZ, e.g us-west-2a
...
How we setup VM on Laptop using Oracle VirtualBox Manager
Only 1 ethernet which can use for Outside
How to configure inside and management internet?
As wifi ethernet left
I'm trying to bring up a new PAN-OS 11.1 instances in AWS, installed from aws-marketplace/PA-VM-AWS-11.1.0-f1260463-68e1-4bfb-bf2e-075c2664c1d7. I am able to reach the management IP address, both SSH and the web UI are working. However the two intend
...
Dear Team,
I need a suggestion before going for deployment on GWLB with PA series.
Requirement:
2 PA VM series in aws behind GWLB, say PA 01 and PA 02,
I want to configure IPsec with Site A but only with PA 01 and Tunnel with Site B only with
...
Dear Team,
Our old employee has left the company and we have recieved below configuration from palo alto based on the requirements, Below is the spec.
Install 6 VM NGFWs with 8 vCPUs, Each virtual firewall will have
the following licenses: Advanc
Just installed a new VM-Series Virtual NextGen Firewall w/ Threat Prevention - Bundle1 AWS.
Used the "request plugins vm_series aws gwlb associate .." command to link up some Gateway load balancer endpoints with the subinterfaces.
When I used the sh
...
Template VM-Series Next-Generation Firewall from Palo Alto Networks (byol)
--------------------------------------------------------------------------------
bootstrap content
type=dhcp-client; hostname=eskfw81; vm-auth-key=xxxxxxx; panorama-server=x
...
I'm using the bootstrap module from here: PaloAltoNetworks/terraform-azurerm-vmseries-modules: Terraform Reusable Modules for VM-Series on Azure (github.com)
When deploying the bootstrap module in Azure with both bootstrap.xml and an "all-contents"
...
Dear memebers,
We are going to use palo alto vm series firewall on Azure and like to take your advice on the type of certificates to be installed. The firewalls will be public facing front end by Azure application gateway.
The FW will be protecti
...
Dear memebers, I need your advice on the vCPU count of the Palo alto.
Our old employee has left the company and we have received below configuration from palo alto based on the requirements, Below is the spec.
Install 6 VM NGFWs with 8 vCPUs, Each
...
Dear Members,
Hope you are doing well.
We are looking to protect our 2 internet facing VM series firewall by using cloudflare. The plan is use the magic transit tunnel from cloudflare and pass the traffic to internet facing vm series.
Once i cr
...
(sorry for the repost but the other forums/topic areas just don't ever seem to get a response when I post there and are much less active)
In the deployment guides and conversations I've had it seems that the PA-VM firewall in Azure is typically des
...
Dear Team,
Current scenario:
1 HA pair of VM-300 on 9.1.6 (Azure cloud)
Licensed with TP, WF, GP etc.
I want to migrate to new license such as Credit based, will this be impacting the production or do we need to migrate the instance to new inst
...