VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
VM-Series in the Public Cloud
The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.
About VM-Series in the Public Cloud

Welcome to the VM-Series in the Public Cloud discussion forum! This community exists as a resource for you to discuss VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud and Alibaba. We encourage you to engage in this rapidly growing community to share ideas, pose questions, and propose real-world solutions to any challenges that may arise.

Disclaimer:
This forum is provided for Live Community members to discuss and share information pertaining to the VM-Series deployments on AWS, Microsoft Azure, Google Cloud Platform Oracle Cloud and Alibaba. Please use the information from this forum at your own risk and make sure to test and verify proposed solutions presented here. For information on contacting Palo Alto Networks support, click here.

Discussions

GWLB Sub-Interface

Hello,

 

Question about GWLB and sub-interface mapping.  If I have 2 VPCs (VPC-Shared and VPC-Production) and I associate VPC-Shared with a GWLB Endpoint to sub-interface e1/1.100 on a zone also named VPC-Shared and VPC-Production with an endpoint to e

...

IPv6 support in Azure/AWS

Anyone already succeeded in getting IPv6 addresses working on our FW in Azure or AWS?

 

Trying to get the mgmt-interface use an IPv6 address in order to connect to IPv6 Panorama.

If required this can also be done via DP interface and service routing.

 

Tr

...

Zero trust in AWS issue with ALB

We are trying to implement a zero trust environment inside our AWS cloud. We are using a transit gateway deployment, and have all traffic going through a secuirty vpc which houses a pair of PA-VM's. These firewalls are reached by the other VPC's thro

...

nelsonc0 by L1 Bithead
  • 2003 Views
  • 2 replies
  • 1 Likes

Palo in AWS to Azure VPN Gateway

Hi All, I am trying to setup a site-to-to site VPN between Palo (v9.0.1) and Azure VPN gateway.

 

I have a question and an issue that I am trying to resolve...

 

NAT-T should be enabled in the gateway settings since AWS NATs everything?

 

This is the error

...

Azure refarch template broken

https://github.com/PaloAltoNetworks/ReferenceArchitectures/tree/master/Azure-1FW-3-interfaces-existing-environment-BS

This is broken as of about 2 weeks ago from this post.

 

New, undocumented field called "Custom Data" - need to state what needs to be

...

Oracle Cloud lower vCPU count

Hi all, try to figure out what will happen to my Vm-series FW in Oracle Cloud if I lower my vCpu count. Will the firewall know that the cores changed and adjust or will just crash? I'm using OCPUs and it doubles the vCPU when enabled. Thanks

SAML for management access to PA

Hi folks,

 

We got a customer who needs to authenticate firewall admins (PA management) against Azure SAML.

Azure only allows you to specify a unique SSO URL being the type https://<Customer Firewall FQDN>:443/SAML20/SP

 

Problem is, this is a standard Ac

...

JF18866 by L0 Member
  • 1315 Views
  • 0 replies
  • 0 Likes

Palo HA in Azure - traffic flow

I have a pair of VM300 gateways running 9.1.13 in Azure. I'm using a 'load balancer sandwich' approach to provide active active HA.

The public load balancer in front of the firewalls does a good job of delivering inbound traffic.  However, routing to

...

  • 622 Posts
  • 80 Subscriptions
Top Liked Authors
Labels