By watching this webinar you will learn how to use Aviatrix to: In this on-demand webinar Jigar Shah, Product Line Manager at Palo Alto Networks, Sam Ghardashem, Product Manager at Aviatrix, and Stuart Scott, AWS Training Lead at Cloud Academy, highlight customer experiences. Deploy the VM-Series firewall as a GlobalProtect gateway policy and uses Source NAT to deliver the content to the user. in the cloud. which does not have direct access to the internet. The VM-Series firewall secures inbound and outbound traffic. To enforce security compliance with ease. Use Dynamic Address Groups to Secure New EC2 Instances within applications in the AWS cloud, deploy the VM-Series firewall to protect for users on mobile devices (using the GlobalProtect App), the GlobalProtect the VPC. Our pioneering Security Operating Platform safeguards your digital transformation with continuous innovation that combines the latest breakthroughs in security, automation, and analytics. Here we leverage a combination of AWS services (e.g., AWS CloudFormation Templates, Virtual Private Gateway, Lambda, and CloudTrail) and VM-Series automation features (e.g., bootstrapping, XML API) to create a centralized, hub-and-spoke architecture. The VM-Series firewalls and web servers can scale. Welcome to the Palo Alto Networks VM-Series on AWS resource page. Best Practices for Deploying Palo Alto Networks VM-Series in an AWS Transit Network Author: Jigar Shah, Product Line Manager at Palo Alto Networks, Sam Ghardashem, Product Manager at Aviatrix, and Stuart Scott, AWS Training Lead at Cloud Academy By creating Gateway Load Balancer endpoints (GWLBE) for the VPC. Integrate a Palo Alto Networks VM-Series Next Generation Firewall with AWS Transit Gateway; Simplify initial deployment and ongoing operations with automated route propagation throughout the Transit Network and to the VM-Series; Maintain performance without trading-off scale. This document describes how to build Transit connection between Aviatrix Transit Gateway and Palo Alto Networks Firewall. For example, segmentation could be driven by security and regulatory requirements, costs. The AWS Gateway Load Balancer (GWLB) is an AWS managed service that allows you to deploy a stack of VM-Series firewalls and operate in a horizontally scalable and fault-tolerant manner. Provides deployment details for using the VM-Series in the AWS Transit Gateway design model, which is designed to scale for enterprise cloud deployments. Maintain full traffic visibility and application functionality, by avoiding SNAT in the cloud. The Transit Gateway model provides fully resilient, inbound, east-west and outbound connectivity from subscriber VPCs. The application(s) are deployed in the private subnet. This terraform template and guide will explain how to deploy an AWS Transit Gateway with the VM-Series Firewall on AWS, automate the connection to Panorama, and automatically obtain a BYOL license with an auth code. The deployment guide can be found here Transit Gatway with VM-Series Deployment Guide. Deploy the VM-Series firewall for VPN access. AWS Transit Gateway Connect, which is integrated with AWS Transit Gateway that costs $0.05 per VPC attachment, is priced at $0.02 per GB of data processed. Transit Gateway is a Fully Managed AWS Service. Join us as we demonstrate best practices to overcome these challenges when deploying Palo Alto VM-Series firewalls in the cloud. VM-Series firewall(s) is securing traffic outbound directly to the internet. Deploy the VM-Series firewall with the Amazon Elastic Load Balancer. The VM-Series firewall secures an internet-facing application. 