Listing Thumbnail

    VM-Series Virtual Next-Generation Firewall - ARM (BYOL)

     Info
    Deployed on AWS
    The VM-Series Next Generation Firewall (NGFW) gives security teams complete visibility and control over all networks using powerful traffic identification, malware prevention, and threat intelligence technologies.

    Overview

    VM-Series, when combined with native AWS services, enable you to create "touchless" deployments and allow your developers to operate at the speed of the cloud. VM-Series protects your applications and data using whitelisting and segmentation policies that are dynamically updated based on AWS tags, allowing you to reduce the attack surface area and achieve compliance. Additionally, threat prevention policies can stop both known and unknown attacks. For BYOL listing, VM-Series license is not included. Please contact your Palo Alto Networks sales representative or channel partner.

    Highlights

    • An AWS Network Competency and Security Competency approved solution that complements native AWS security with real-time threat and data theft prevention.
    • Dynamic and large scale deployments can be protected using AWS Auto Scaling/ELB integration and Transit VPC with AWS Transit Gateway and Gateway Load Balancer
    • Amazon GuardDuty and AWS Security Hub integration enables the VM-Series to automatically block potentially malicious activity

    Details

    Delivery method

    Delivery option
    64-bit (Arm) Amazon Machine Image (AMI)

    Latest version

    Operating system
    OtherLinux 11.1.6-h7

    Deployed on AWS

    Features and programs

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    VM-Series Virtual Next-Generation Firewall - ARM (BYOL)

     Info
    Pricing and entitlements for this product are managed through an external billing relationship between you and the vendor. You activate the product by supplying a license purchased outside of AWS Marketplace, while AWS provides the infrastructure required to launch the product. AWS Subscriptions have no end date and may be canceled any time. However, the cancellation won't affect the status of the external license.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    64-bit (Arm) Amazon Machine Image (AMI)

    Amazon Machine Image (AMI)

    An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.

    Support

    Vendor support

    To help you get started with your deployment such as how-to videos, deployment guides and reference architectures, please visit: https://live.paloaltonetworks.com/aws  .For post-sales support, you can use the following options:Call us at 1 (866) 898-9087 Open a case by following the steps here:

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Similar products

    Customer reviews

    Ratings and reviews

     Info
    3.3
    3 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    33%
    67%
    0%
    0%
    3 AWS reviews
    |
    140 external reviews
    External reviews are sourced from G2  and are not included in the star rating for this product.
    Computer & Network Security

    Virtualized Security Excellence if you can afford it

    Reviewed on May 07, 2025
    Review provided by G2
    What do you like best about the product?
    I believe what I like the best about these FWs is their Application level visibility. The App-ID tech used in the Firewalls allows us in our environment to control applications on a granular level allowing improved security.
    Also the fact they're fairly easy to deploy and implement in any environment our customers have such as VMware, AWS, Azure cloud etc. This helps with the ease of integration within the organizations using multiple cloud solutions.
    What do you dislike about the product?
    One con would be that they can have some complex initial configuration and may require special expertise within the customer support environment, which can discourage may discourage smaller organizations from using these as they have slightly high licensing and maintenance costs compared to other Virtual FW solutions.
    What problems is the product solving and how is that benefiting you?
    They help with the scalability of our setups as they can be used with multiple cloud environments with no limitations such as AWS, Azure, GCP or even VMware
    Computer & Network Security

    Virtualized Security Excellence if you can afford it

    Reviewed on May 07, 2025
    Review provided by G2
    What do you like best about the product?
    I believe what I like the best about these FWs is their Application level visibility. The App-ID tech used in the Firewalls allows us in our environment to control applications on a granular level allowing improved security.
    Also the fact they're fairly easy to deploy and implement in any environment our customers have such as VMware, AWS, Azure cloud etc. This helps with the ease of integration within the organizations using multiple cloud solutions.
    What do you dislike about the product?
    One con would be that they can have some complex initial configuration and may require special expertise within the customer support environment, which can discourage may discourage smaller organizations from using these as they have slightly high licensing and maintenance costs compared to other Virtual FW solutions.
    What problems is the product solving and how is that benefiting you?
    They help with the scalability of our setups as they can be used with multiple cloud environments with no limitations such as AWS, Azure, GCP or even VMware
    Naveed A.

    Good alternative for a hardware firewall

    Reviewed on May 05, 2025
    Review provided by G2
    What do you like best about the product?
    I like it has almost the same features as the hardware firewall. It's easy to deploy on any cloud solution like azure,aws. User based policies in VM is a great next step after application segmentation.
    Palo Alto support is always great to deal with.
    What do you dislike about the product?
    Cost to have and maintain a Palo Alto firewall is always a challenge. It's the same with the VM series as well, being an expensive product.
    Reporting seems to be limited as compared to physical firewall. VM Palo Alto doesn't provide hardware acceleration as well.
    What problems is the product solving and how is that benefiting you?
    We have deployed Palo Alto VM firewall in our vsphere switch which is for protecting our production servers. We have different types of servers deployed on virtualized switch, all the traffic to servers passes through Palo Alto vm. Different application control and web profiles have been setup as per server on VM.
    VM is easy to upgrade and keep a check on licenses accordingly. Panorama provides a complete landscape of security which helps us in setting up policies.
    Naveed A.

    Good alternative for a hardware firewall

    Reviewed on May 05, 2025
    Review provided by G2
    What do you like best about the product?
    I like it has almost the same features as the hardware firewall. It's easy to deploy on any cloud solution like azure,aws. User based policies in VM is a great next step after application segmentation.
    Palo Alto support is always great to deal with.
    What do you dislike about the product?
    Cost to have and maintain a Palo Alto firewall is always a challenge. It's the same with the VM series as well, being an expensive product.
    Reporting seems to be limited as compared to physical firewall. VM Palo Alto doesn't provide hardware acceleration as well.
    What problems is the product solving and how is that benefiting you?
    We have deployed Palo Alto VM firewall in our vsphere switch which is for protecting our production servers. We have different types of servers deployed on virtualized switch, all the traffic to servers passes through Palo Alto vm. Different application control and web profiles have been setup as per server on VM.
    VM is easy to upgrade and keep a check on licenses accordingly. Panorama provides a complete landscape of security which helps us in setting up policies.
    Dustin L.

    PA Virtual Firewall Review

    Reviewed on May 05, 2025
    Review provided by G2
    What do you like best about the product?
    The ease of use & implementation of Palo Alto products is straight forward and they make it easy for even first time administrators to learn and adapt the technology to clients' needs. Customer support for their products is excellent, also very easy to integrate.
    What do you dislike about the product?
    I have found nothing that I dislike about this product, other than actually having to have hands on equipment to deploy. This can cause issues when shipping a device to a client in a different location as it can be tricky to walk an end user through setup.
    What problems is the product solving and how is that benefiting you?
    It is helping us to keep all of our switches and other networking gear secure by being the front line defense against attacks. This is benefiting our organization because it keeps the house from burning down and keeps our clients secure in a SOC II Type 2 environment.
    View all reviews