I use Palo Alto Networks VM-Series for testing purposes of VMs.
VM-Series Next-Generation Firewall Bundle 1 [VM-300]
Palo Alto NetworksExternal reviews
External reviews are not included in the AWS star rating for the product.
PAN provides a great NGFW. I have managed/deployed PAN firewalls throughout my career
Palo Alto NGFW
1. Palo Alto NGFW provides a user-friendly web UI to configure and manage security policies and settings. So, it is easily implemented and integrated with third-party vendors.
2. The panorama management platform is good for centralized management and policy distribution of larger Organizations.
3. Palo Alto Networks provides customer support and assistance during the implementation process. it is beneficial in resolving technical issues.
4. For most of the projects, we recommended using and explaining the benefits and security of Palo Alto NGFW.
- Migrating away from a Palo Alto Networks NGFW to a different vendor or solution can be challenging due to vendor-specific configurations and policies.
- to detect and block ransomware and other malicious.
- to restrict the malicious or compromised websites.
- to prevent users from inadvertently downloading ransomware from malicious websites.
- to restrict access and actions based on user roles and permissions, reducing the risk of ransomware infections.
- to prevent the use of potentially risky or unauthorized file-sharing and download services.
- to enhance your security posture and protect against known ransomware threats.
A tool with a great support team that is useful for testing purposes of VMs
What is our primary use case?
What is most valuable?
The main advantage of Palo Alto Networks VM-Series stems from the fact that you can access it with the help of cloud services.
What needs improvement?
With Palo Alto Networks VM-Series, it is hard for me to manage its network configuration part. Regarding Palo Alto Networks VM-Series, I am figuring out whether to use interzone or intrazone networks for the VMs in our company's environment, which is very confusing. The aforementioned aspects of the solution can be considered for improvement.
In the future, whenever I try to onboard Palo Alto Networks VM-Series, it should allow for easy configuration, especially in terms of network connectivity. I want an easier setup and configuration in the product's future releases.
For how long have I used the solution?
I have been using Palo Alto Networks VM-Series for around a year. My company has a partnership with Palo Alto Networks.
How are customer service and support?
The technical support of Palo Alto Networks does reply to the cases or issues I file with the support team. The support is equally good for all the products that fall under Palo Alto Networks. I rate the technical support a nine out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
I rate the implementation process a six or seven on a scale of one to ten, where one is difficult and ten is easy.
During the implementation process of the product, I faced some issues related to the networking part and connectivity of VMs. I faced issues with how an end user could connect the VMs to a firewall or connect a firewall to VMs, but the same process was easy for me on a physical device firewall.
What other advice do I have?
I am more comfortable with the physical device firewall. I am actually trying to figure out things since I am not very familiar with the VM side of Palo Alto.
I would recommend Palo Alto Networks VM-Series since it is a cheaper product compared to the other tools available in the market. Apart from Palo Alto Networks VM-Series, I usually recommend Palo Alto Networks Cortex XSOAR and Palo Alto Networks Prisma Cloud.
I rate the overall product an eight out of ten.
An enterprise solution that needs to improve order process
What is most valuable?
The tool's cloud version makes application migration easy.
What needs improvement?
Palo Alto Networks VM-Series needs to improve its order process.
For how long have I used the solution?
I have been working with the solution for two years.
What do I think about the stability of the solution?
I rate the solution's stability a nine out of ten.
What do I think about the scalability of the solution?
I rate the product's scalability a nine out of ten.
How was the initial setup?
Palo Alto Networks VM-Series' deployment is not difficult.
What's my experience with pricing, setup cost, and licensing?
The solution is expensive. I rate its pricing a three out of ten.
What other advice do I have?
Palo Alto Networks VM-Series is an enterprise product because it is costly. I rate it an eight out of ten.
Stable product with effective security features
What is our primary use case?
We use Palo Alto Networks VM-Series primarily for security purposes. It helps us with URL filtering, domain blocking, threat analysis, and detecting vulnerabilities.
How has it helped my organization?
We can monitor the traffic manually and detect threats. Additionally, we can block different IP addresses and URLs.
What needs improvement?
There could be dynamic DNS features similar to Fortinet in the product.
For how long have I used the solution?
We have been using Palo Alto Networks VM-Series for six years.
What do I think about the stability of the solution?
I rate the product's stability a nine out of ten.
What do I think about the scalability of the solution?
I rate the product's stability a seven out of ten. It could be better. We have four users for it at the moment. We plan to increase the number of devices.
How are customer service and support?
We receive technical support from a local partner rather than directly from the vendor. The support team requires more training.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We have used Cisco Adaptive Security Appliance (ASA) before. Compared to Palo Alto, Cisco devices are not feasible regarding hardware. They are very slow and complicated to find the granular level of results. Sometimes, even a technical expert is unable to fetch a proper report.
How was the initial setup?
I rate the initial setup process an eight out of ten. It takes eight hours to complete and requires one security engineer to execute the process. The deployment involves setting up security policies. The on-premise installation is simple. However, VM installation is complicated in terms of the network interface.
What's my experience with pricing, setup cost, and licensing?
It is an expensive product. I rate the pricing an eight out of ten. We purchased a three-year license for it.
What other advice do I have?
I rate Palo Alto Networks VM-Series an eight out of ten.
Stable product with an easy installation process
What is our primary use case?
We use the product to mitigate vulnerabilities for the applications running on particular VMs.
What is most valuable?
The product's most valuable feature is pricing.
What needs improvement?
Compared to Azure Firewall, the product could be better in terms of performance.
For how long have I used the solution?
We have been using Palo Alto Networks VM-Series for three years.
What do I think about the stability of the solution?
The product is stable.
What do I think about the scalability of the solution?
It is an easy-to-scale product and suitable for enterprises.
How are customer service and support?
Palo Alto's support is good. Whenever I raise a ticket, they immediately look into it and make a Zoom call.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I have used Cisco's Next-Generation Firewall before. It works better than Palo Alto.
How was the initial setup?
Palo Alto's installation process is easy because we use Panorama tool to manage it. We can communicate and implement traffic policies, filtering, and other specific options with its help.
It requires two to three engineers and takes two days to complete the deployment. For maintenance, it requires a team of two engineers.
What other advice do I have?
It's good to work with Palo Alto Networks VM-Series. I recommend it to others and rate it an eight out of ten.
Users have full ownership of their device and offers centralized management
What is our primary use case?
The main concern is VPN. If you're using Azure Firewall, you still need a VPN gateway to terminate your VPN connection. Azure Firewall doesn't remove the need for another VPN gateway, especially for point-to-site VPN. So you have to use another VPN appliance. With Palo Alto and FortiGate, for example, you can have an all-in-one solution. The VPN gateway and all the other features are available.
What is most valuable?
Palo Alto Networks VM-Series has everything centralized. You have the VPN solution, firewall, routing, UDR, flexibility, updates, and full visibility of your traffic. You can also perform log debugging. It provides all the things that Azure's firewall doesn't offer. Plus, you have full ownership of your device.
What needs improvement?
Firstly, Palo Alto should update their documentation to make it more readable and provide easier-to-follow instructions through videos. This would help people learn and deploy the product more easily. Even if the product itself is excellent, lacking proper documentation and troubleshooting guidance renders it less useful. It won't be helpful even if it's rock solid but lacks sufficient information and tutorials.
For how long have I used the solution?
I've been using Palo Alto as a VM for about three months. I use the latest version.
What do I think about the stability of the solution?
It is a stable solution. I would rate the stability a ten out of ten.
What do I think about the scalability of the solution?
It is a scalable solution. We have more than 20 entities using this solution.
How are customer service and support?
Customer service and support are great. The response time is good. My experience with them was very good.
Which solution did I use previously and why did I switch?
I used Azure Firewall for a while, but then I removed it and installed Palo Alto.
How was the initial setup?
The setup requires professional people to work on it. It's not straightforward. Knowledge is needed to adapt it to your platform.
So, it's not an entry-level solution; it requires professional and expert-level skills.
What about the implementation team?
I deployed the solution myself. The deployment process took about three to four days. It depends on your production environment because I had to migrate production.
Only one person is required for deployment and maintenance.
What other advice do I have?
I can't make a suggestion because it depends on the specific needs they have. They can consider using the entry-level version or opt for the expert lab, depending on their workload.
Overall, I would rate the solution a nine out of ten.
Palo Alto Firewall Deliver You A Next Generation Capabilities With Advanced Security Protection
- Good Customer Support Services Which Will Assist You During There Is Issue On Your Devices
- Detail Traffic Log, Security log During Troubleshooting
- Complexity On Configuration Which Will Require You To Have Some Basic Knowledge On Firewall Concept
- Firmware Updates And Stability To Address Vulnerabilities And Enhance Feature
- Prevention And Mitigation On Robust Security Protection
- Layer 7 Application Visibility To Classify Network Traffic On Application Level
Short Summary of Palo Alto NGFW
1. Proper documentation and admin guide available on the beacon portal.
2. Advance security over competitors.
3. Suitable for small, mid and enterprise-size organizations.
4. Dashboard and control is very nice
1.It supports only 260-time object schedules, but there are 365 days in a year.
2. SNMP Trap didn't poll power logs on Solarwind.
3. By default, the UDP session out for the ike-esp-udp app is 3600 sec which causes high session table utilization.