Listing Thumbnail

    VM-Series Next-Generation Firewall Bundle 1 [VM-300]

     Info
    Free Trial
    The VM-Series next-generation firewall allows developers and cloud security architects to embed inline threat and data theft prevention into their application development workflows. Native AWS services combined with VM-Series automation features allow you to create "touchless" deployments.
    Listing Thumbnail

    VM-Series Next-Generation Firewall Bundle 1 [VM-300]

     Info

    Overview

    Play video

    IMPORTANT: This listing will be restricted starting from 05/11. Please consider using https://aws.amazon.com/marketplace/pp/B083M7JPKB  instead.

    The VM-Series next-generation firewall allows developers and cloud security architects to embed inline threat and data loss prevention into their application development workflows. Your applications and data are protected with whitelisting and segmentation policies that are dynamically updated based on AWS tags, allowing you to reduce the attack surface area and achieve compliance. Additionally, threat prevention policies can stop both known and unknown attacks.

    Bundle 1 includes Threat Prevention (IDS/IPS) subscription and Premium Support. Panorama (available separately in Marketplace) allows the VM-Series to be managed centrally alongside our firewall appliances to maintain security policy that is consistent with on-premises environments.

    Note: With PAN-OS 9.0.3.xfr and 9.1.0, VM-Series now supports DPDK on the C5 and M5 instances to efficiently process traffic and offer increased performance. If you are switching your VM-Series to C5/M5, we recommend you to migrate the configuration from the old instance to the new C5/M5 instance.

    Highlights

    • An AWS Network Competency and Security Competency approved solution that complements native AWS security with real-time threat and data theft prevention
    • Dynamic and large scale deployments can be protected using AWS Auto Scaling/ELB integration and Transit VPC with AWS Transit Gateway
    • Amazon GuardDuty and AWS Security Hub integration enables the VM-Series to automatically block potentially malicious activity.

    Details

    Delivery method

    Delivery option
    64-bit (x86) Amazon Machine Image (AMI)

    Latest version

    Operating system
    OtherLinux PAN-OS 8.1.25-h1

    Typical total price

    This estimate is based on use of the seller's recommended configuration (m5.xlarge) in the US East (N. Virginia) Region. View pricing details

    $1.062/hour

    Features and programs

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Free trial

    Try this product at no cost for 15 days according to the free trial terms set by the vendor. Usage-based pricing is in effect for usage beyond the free trial terms. Your free trial gets automatically converted to a paid subscription when the trial ends, but may be canceled any time before that.

    VM-Series Next-Generation Firewall Bundle 1 [VM-300]

     Info
    Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time. Alternatively, you can pay upfront for a contract, which typically covering your anticipated usage for the contract duration. Any usage beyond contract will incur additional usage-based costs.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    Usage costs (29)

     Info
    Instance type
    Product cost/hour
    EC2 cost/hour
    Total/hour
    m3.xlarge
    $0.87
    $0.266
    $1.136
    m3.2xlarge
    $0.87
    $0.532
    $1.402
    m4.xlarge
    $0.87
    $0.20
    $1.07
    m4.2xlarge
    $0.87
    $0.40
    $1.27
    m4.4xlarge
    $0.87
    $0.80
    $1.67
    m5.xlarge
    Recommended
    $0.87
    $0.192
    $1.062
    m5.2xlarge
    $0.87
    $0.384
    $1.254
    m5.4xlarge
    $0.87
    $0.768
    $1.638
    m5.12xlarge
    $0.87
    $2.304
    $3.174
    m5.24xlarge
    $0.87
    $4.608
    $5.478

    Additional AWS infrastructure costs

    Type
    Cost
    EBS General Purpose SSD (gp2) volumes
    $0.10/per GB/month of provisioned storage

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    64-bit (x86) Amazon Machine Image (AMI)

    Amazon Machine Image (AMI)

    An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.

    Additional details

    Usage instructions

    See documentation for detailed steps to set admin password before using the web interface of VM-Series. Once the instance is running, connect to it using a SSH client with the private key file used to launch the instance. For example: ssh -i <privatekey.pem> admin@<EIP or private IP of eth0> Then use the PAN-OS CLI commands "configure", "set mgt-config users admin password" and "commit" commands to set the password.

    Support

    Vendor support

    Premium support is available as part of this offering once the VM-Series firewall has been deployed and configured. To help you get started, how-to videos, deployment guides, reference architectures and discussion forums are available on our VM-Series on AWS resource page. The resource page will also allow you to register your firewall and contact support 24/7 in the event that you encounter critical or complex issues once the deployment has completed. http://live.paloaltonetworks.com/aws 

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Similar products

    Customer reviews

    Ratings and reviews

     Info
    5
    1 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    100%
    0%
    0%
    0%
    0%
    1 AWS reviews
    |
    101 external reviews
    External reviews are sourced from G2  and are not included in the star rating for this product.
    Atharva Sandeep P.

    Reliable Security with Advanced Features

    Reviewed on Nov 25, 2024
    Review provided by G2
    What do you like best about the product?
    1. Advanced Threat Prevention
    2. User Friendly UI
    3. High performance capabilities even under heavy workloads
    What do you dislike about the product?
    1. Cost is one of the issues, since it has high upfront costs compared tp other firewalls.
    2. When I was a beginner, it was a very steep learning curve as I never had experience working on it.
    What problems is the product solving and how is that benefiting you?
    The problem that we had was dealing with zero day attacks and APT's, and PA NGFW really helped us to reduce risk of breaches and minimize the downtome through its proactive threat prevention.
    Atef T.

    Using Palo Alto NGFW

    Reviewed on Nov 22, 2024
    Review provided by G2
    What do you like best about the product?
    Palo Alto Networks’ NGFWs are a powerful security solution for enterprises that need robust protection and granular control over their network traffic. They excel in security features, scalability, and integration with broader security ecosystems. While the upfront cost and complexity of setup may be a challenge for smaller businesses, larger organizations will find the performance, security, and visibility offered by these firewalls invaluable in defending against advanced cyber threats.
    What do you dislike about the product?
    All things is fine with Palo tools but need to update the admin interface to be more likley
    What problems is the product solving and how is that benefiting you?
    Solving many issue related the cyber security , and enhance our security in our org
    Antonio Z.

    Managing the Attack Surface

    Reviewed on Nov 21, 2024
    Review provided by G2
    What do you like best about the product?
    Best thing about Palo Alto Networks Next-Generation Firewalls is Transparency and AppID.
    Often times you'll find other vendors referencing max throughput which is measured in really strict conditions and/or without utilizing full security features on firewall. This is often times really missleading. When you look at PANW firewall throughput, it's measured while having all the beneficial services running.

    AppID is really mind blowing part of the Firewall. From Reducing the attack surface by approving exactly what is the bare minimum of necessary apps. (Firewall it self offloads this for you, using the Policy Optimizer) all the way to knowing the impact of using such appliactions.

    Generaly, features by themselves are something that you expect from firewall to have, however the approach that was taken, Reducing the Attack surface, is really what makes the ZTNA possible. All the way from segmentation, continuously inspecting the traffic, only from specific users/groups, and only allowed applications is a unbeatable combination.
    What do you dislike about the product?
    I only dislike commit time, when you want to make a fast change and see result quickly, you must pass through commit that takes around 45 sec to complete.
    What problems is the product solving and how is that benefiting you?
    PANW Firewall is providing a complete platform for enabling ZTNA.
    From creating a security zones (aka Segments), and only allowing traffic within explicitly defined zones,
    Implementing user identification (either transparent or explicit) which has endless posibilities.
    Using Security Profiles to inspect allowed traffic.
    Using Decryption that is not intrusive by default. (Firewall bypasses decryption on certain errors, so users are not escalating to support)
    Security and Investigations

    i can confirmed that the Palo Alto firewall is my best recommended firwall for any customer.

    Reviewed on Nov 16, 2024
    Review provided by G2
    What do you like best about the product?
    the sytabilty for the firewall policies.
    What do you dislike about the product?
    the high price of the applinces is a real challange for us.
    What problems is the product solving and how is that benefiting you?
    the sceurity for our network against the L4 attacks.
    Computer Software

    Practicality of using Palo Alto Networks

    Reviewed on Nov 16, 2024
    Review provided by G2
    What do you like best about the product?
    What stands out is the ease of use. Quiet simple to understand how it works.
    What do you dislike about the product?
    Customer support is abit slow. There is need to improve on efficiency.
    What problems is the product solving and how is that benefiting you?
    I believe it is addressing advanced and evolving threats in the industry
    View all reviews