Palo Alto Networks VNFs
Palo Alto Networks is available as the VM-Series next-generation firewall and Prisma SD-WAN (Virtual ION). VM-Series uses a Palo Alto Networks Auth Code for BYOL licensing. Each device is offered customer-managed, Tata Communications-managed, or both. Sizes, interfaces, access methods and supported versions are below, with links to Palo Alto Networks’s own documentation and support.
Devices
Palo Alto Networks VM Series Firewall
The VM-Series virtual next-generation firewall.
Function: Firewall & Security
Available: Customer-managed and Tata Communications-managed
|
Size |
vCPU cores |
Memory |
Software package |
|
Tiny |
2 Cores |
8GB |
Firewall - VM 100 |
|
Small |
4 Cores |
16GB |
Firewall - VM 100 |
|
Small |
4 Cores |
16GB |
Firewall - VM 300 |
|
Medium |
8 Cores |
48GB |
Firewall - VM 100 |
|
Medium |
8 Cores |
48GB |
Firewall - VM 300 |
|
Medium |
8 Cores |
48GB |
Firewall - VM 500 |
|
Large |
16 Cores |
56GB |
Firewall - VM 100 |
|
Large |
16 Cores |
56GB |
Firewall - VM 300 |
|
Large |
16 Cores |
56GB |
Firewall - VM 500 |
|
Large |
16 Cores |
56GB |
Firewall - VM 700 |
-
Virtual data interfaces (default / max): 10 / 10
-
Supported OS versions: 10.1.14-h6, 10.2.10-h9, 11.0.4-h6, 11.1.4-h7, 11.2.3-h3
-
Access methods: SSH, Web Console
-
Deployment options: Single, Redundant, Cluster
Prisma Virtual ION SD-WAN
The Prisma SD-WAN Virtual ION edge, managed through the Prisma SD-WAN controller.
Function: SD-WAN
Available: Customer-managed
|
Size |
vCPU cores |
Memory |
Software package |
|
Tiny |
2 Cores |
8GB |
SDWAN - Virtual ION (3102v) |
|
Small |
4 Cores |
8GB |
SDWAN - Virtual ION (3102v) |
|
Small |
4 Cores |
8GB |
SDWAN - Virtual ION (3104v) |
|
Medium |
8 Cores |
32GB |
SDWAN - Virtual ION (3102v) |
|
Medium |
8 Cores |
32GB |
SDWAN - Virtual ION (3104v) |
|
Medium |
8 Cores |
32GB |
SDWAN - Virtual ION (7108v) |
-
Virtual data interfaces (default / max): 10 / 10
-
Supported OS versions: 5.5.3-b2, 6.0.1-b70, 6.1.4-b2, 6.2.1-b3, 6.3.1-b6
-
Access methods: Prisma SD-WAN controller
-
Deployment options: Single, Redundant
Licensing and management
Devices from Palo Alto Networks are offered under two models. With customer-managed (BYOL), Tata Communications hosts the VNF and you provide and manage your own Palo Alto Networks licence, configuration and patching; you are responsible for obtaining a valid Palo Alto Networks licence, so contact Palo Alto Networks or a Palo Alto Networks partner to purchase a licence and support contract. With Tata Communications-managed, Tata Communications provides the licence (subscription) and runs configuration, management, patching and renewals.
Deploying with or without a public IP address
A VNF can be deployed with a public IP address on IZO™+ Multi Cloud Connect or without one; where no public IP is assigned, plan management access over the private path in your solution. Device-side configuration (interfaces, routing, policy) is performed in the vendor’s own management tooling using the access methods listed for each device. This page stays at parameter-handoff level and does not reproduce vendor command-line configuration; see the vendor documentation below.
Palo Alto Networks documentation and support
For device configuration, feature detail and throughput figures, use Palo Alto Networks’s own resources. For a customer-managed device you obtain support from Palo Alto Networks or a Palo Alto Networks partner; for a Tata Communications-managed device, raise a request on the TCx Portal and Tata Communications handles it.
-
VM-Series documentation: docs.paloaltonetworks.com/vm-series
-
Prisma SD-WAN documentation: docs.paloaltonetworks.com/prisma/prisma-sd-wan
-
Documentation home: docs.paloaltonetworks.com
-
Community: live.paloaltonetworks.com
-
Technical support: support.paloaltonetworks.com