Listing Thumbnail

    VM-Series Next-Generation Firewall Bundle 1 [VM-300]

     Info
    Deployed on AWS
    Free Trial
    The VM-Series next-generation firewall allows developers and cloud security architects to embed inline threat and data theft prevention into their application development workflows. Native AWS services combined with VM-Series automation features allow you to create "touchless" deployments.
    4.5

    Overview

    Play video

    IMPORTANT: This listing will be restricted starting from 05/11. Please consider using https://aws.amazon.com/marketplace/pp/B083M7JPKB  instead.

    The VM-Series next-generation firewall allows developers and cloud security architects to embed inline threat and data loss prevention into their application development workflows. Your applications and data are protected with whitelisting and segmentation policies that are dynamically updated based on AWS tags, allowing you to reduce the attack surface area and achieve compliance. Additionally, threat prevention policies can stop both known and unknown attacks.

    Bundle 1 includes Threat Prevention (IDS/IPS) subscription, Advanced Threat Prevention Subscription and Premium Support. Panorama (available separately in Marketplace) allows the VM-Series to be managed centrally alongside our firewall appliances to maintain security policy that is consistent with on-premises environments.

    Note: With PAN-OS 9.0.3.xfr and 9.1.0, VM-Series now supports DPDK on the C5 and M5 instances to efficiently process traffic and offer increased performance. If you are switching your VM-Series to C5/M5, we recommend you to migrate the configuration from the old instance to the new C5/M5 instance.

    Highlights

    • An AWS Network Competency and Security Competency approved solution that complements native AWS security with real-time threat and data theft prevention
    • Dynamic and large scale deployments can be protected using AWS Auto Scaling/ELB integration and Transit VPC with AWS Transit Gateway
    • Amazon GuardDuty and AWS Security Hub integration enables the VM-Series to automatically block potentially malicious activity.

    Details

    Delivery method

    Delivery option
    64-bit (x86) Amazon Machine Image (AMI)

    Latest version

    Operating system
    OtherLinux PAN-OS 8.1.25-h1

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Features and programs

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Free trial

    Try this product free for 15 days according to the free trial terms set by the vendor. Usage-based pricing is in effect for usage beyond the free trial terms. Your free trial gets automatically converted to a paid subscription when the trial ends, but may be canceled any time before that.

    VM-Series Next-Generation Firewall Bundle 1 [VM-300]

     Info
    Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time. Alternatively, you can pay upfront for a contract, which typically covers your anticipated usage for the contract duration. Any usage beyond contract will incur additional usage-based costs.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    Usage costs (29)

     Info
    Dimension
    Cost/hour
    m5.xlarge
    Recommended
    $0.87
    m4.xlarge
    $0.87
    c5n.9xlarge
    $0.87
    m5.12xlarge
    $0.87
    m3.xlarge
    $0.87
    m5.24xlarge
    $0.87
    m5n.xlarge
    $0.87
    m3.2xlarge
    $0.87
    m5n.2xlarge
    $0.87
    m4.2xlarge
    $0.87

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    64-bit (x86) Amazon Machine Image (AMI)

    Amazon Machine Image (AMI)

    An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.

    Additional details

    Usage instructions

    See documentation for detailed steps to set admin password before using the web interface of VM-Series. Once the instance is running, connect to it using a SSH client with the private key file used to launch the instance. For example: ssh -i <privatekey.pem> admin@<EIP or private IP of eth0> Then use the PAN-OS CLI commands "configure", "set mgt-config users admin password" and "commit" commands to set the password.

    Support

    Vendor support

    Premium support is available as part of this offering once the VM-Series firewall has been deployed and configured. To help you get started, how-to videos, deployment guides, reference architectures and discussion forums are available on our VM-Series on AWS resource page. The resource page will also allow you to register your firewall and contact support 24/7 in the event that you encounter critical or complex issues once the deployment has completed. http://live.paloaltonetworks.com/aws 

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    25
    In Network Infrastructure
    Top
    10
    In Log Analysis, Network Infrastructure

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Threat Prevention and Detection
    Inline threat and data loss prevention with IDS/IPS capabilities to stop both known and unknown attacks
    Dynamic Policy Management
    Whitelisting and segmentation policies dynamically updated based on AWS tags to reduce attack surface area
    AWS Service Integration
    Native integration with AWS Auto Scaling, ELB, Transit Gateway, GuardDuty, and Security Hub for automated threat response and centralized management
    High-Performance Traffic Processing
    DPDK support on C5 and M5 instances for efficient traffic processing and increased performance
    Centralized Management
    Panorama integration for centralized management of VM-Series alongside firewall appliances to maintain consistent security policies
    Intrusion Prevention System
    Leading Intrusion Prevention System (IPS) integrated into unified security solution for threat detection and prevention
    Advanced Evasion Technique Detection
    Capability to identify and stop Advanced Evasion Techniques (AETs) with superior performance compared to other security devices
    Application Layer Security
    Advanced application control with application layer exfiltration security and dynamic security controls
    Sandboxing and Malware Analysis
    Sandboxing technology for identifying zero-day attacks and advanced malware threats
    Centralized Management Console
    Unified management console for streamlined security administration across data center, office, and branch firewalls
    Advanced Threat Prevention Capabilities
    Firewall, Data Loss Prevention (DLP), Intrusion Prevention System (IPS), application control, IPsec VPN, URL filtering, antivirus, and anti-bot protection against known and unknown threats.
    Network Traffic Inspection and Control
    Inspects and secures encrypted data flows between on-premises networks and AWS VPCs, including North-South traffic entering and exiting private subnets and East-West traffic between VPCs.
    Unified Security Management
    Centralized management via Check Point CloudGuard Security Management Server enabling consistent policy, log, and report management across AWS, hybrid, and on-premises environments.
    Infrastructure-as-Code Integration
    Integrates with Terraform and Ansible for policy automation and cloud-native scaling with dynamic adaptation of security policies based on real-time cloud metadata.
    AWS Service Integration
    Supports Gateway Load Balancer, AWS Security Hub, VPC Ingress Routing, AWS Traffic Mirroring, AWS Transit Gateway, AWS Outposts, and Amazon Macie with deployment options including auto-scaling groups and multi-AZ redundancy.

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    4.5
    192 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    66%
    32%
    2%
    1%
    0%
    13 AWS reviews
    |
    179 external reviews
    External reviews are from G2  and PeerSpot .
    Dragos L.

    Detailed Traffic Visibility and Flexible Rule Management with Palo Alto Firewalls

    Reviewed on Feb 13, 2026
    Review provided by G2
    What do you like best about the product?
    I think most firewalls see the traffic but palo alto's firewalls have detailed view of who made that traffic where and when. you can create rules and manage that very well, for example you can enable a website but block some unwanted features of that site
    What do you dislike about the product?
    i think the most annoying thing is the dcoomit what from the config menu, it can take from 30 seconds to 5 minutes
    What problems is the product solving and how is that benefiting you?
    as i said before traditional firewalls see general traffic but palo altos cand se more details and leave you so you can configure just the way you intend for your business
    Airlines/Aviation

    Excellent firewall solution

    Reviewed on Feb 12, 2026
    Review provided by G2
    What do you like best about the product?
    The Palo Alto experience is different; it surprised me and my whole team.
    What do you dislike about the product?
    It could be more intuitive, with a simpler, more streamlined dashboard that’s easier to navigate.
    What problems is the product solving and how is that benefiting you?
    The lack of detection and response is a major issue.
    Öner C.

    Stable, Fast, and Secure Firewall with Powerful Monitoring

    Reviewed on Dec 23, 2025
    Review provided by G2
    What do you like best about the product?
    Palo Alto firewall is a stable, fast, and secure security firewall. At the same time, its monitoring capabilities are quite strong, and it offers high integration support.
    What do you dislike about the product?
    Although there are valid reasons for it, the commit times can sometimes be long in situations that require quick action, which may cause the operation to slow down slightly.
    What problems is the product solving and how is that benefiting you?
    Its fast and dynamic structure, stable operation, wide variety of applications, and continuously updated App & Threat signatures inspire confidence. Additionally, thanks to its diverse log forwarding options, it can be integrated with automation systems.
    Shoaib S.

    Secure and Robust, Needs Size Optimization

    Reviewed on Dec 09, 2025
    Review provided by G2
    What do you like best about the product?
    I like the features of Palo Alto Networks Next-Generation Firewalls and how well it handles policy implementation.
    What do you dislike about the product?
    I don't like the body size of the Palo Alto Networks Next-Generation Firewalls.
    What problems is the product solving and how is that benefiting you?
    I use Palo Alto Networks Next-Generation Firewalls for network security. I like the features and policy implementation.
    Computer & Network Security

    Exceptionally Reliable Firewall with Outstanding Support

    Reviewed on Nov 28, 2025
    Review provided by G2
    What do you like best about the product?
    Very reliable Firewall with very good support.
    Large number of Features
    Less known bugs
    Holds large number of logs which are useful for troubleshooting
    What do you dislike about the product?
    It is expensive when compared to other vendor
    Required additional license for SD WAN
    Does not provide troubleshooting tools like ping, nslookup etc in GUI which are provided few other providers
    What problems is the product solving and how is that benefiting you?
    It is very reliable Firewall and can operate without any issue for long time
    Easy to configure Global Protect and can integrate SAML authentication or local authentication
    View all reviews