Palo Alto - Firewall Networking

Pings

The default IP is 192.168.1.1. For the VM appliance, it defaults to DHCP

Can’t log in until prompt shows, PA-VM login:

The default user and password are admin

It will force you to change the password on login

Changes don’t take effect until you commit.

show config running
show interface management
Palo Alto Management Interface CLI
Palo Alto Management Interface CLI
configure
  set deviceconfig system ip-address 192.168.1.11 netmask 255.255.255.0
  set deviceconfig system default-gateway 192.168.1.1
  set deviceconfig system dns-setting server primary 8.8.8.8
  set deviceconfig system type static
commit
Palo Alto Management Interface GUI
Palo Alto Management Interface GUI

Palo Alto Setting Management IP

L3 Security Zones

Network > Zones

Palo Alto Zone
Palo Alto Zone

Palo Alto Creating Zones

L3 Interfaces

Network > Interfaces

Palo Alto Ethernet Interface
Palo Alto Ethernet Interface Zone Configuration
Palo Alto Ethernet Interface IPv4 Configuration
Palo Alto Ethernet Interface IPv4 Configuration
Palo Alto Ethernet Interfaces
Palo Alto Ethernet Interfaces

Virtual Router

interfaces are added to a virtual router, which acts like a VRF to isolate routes.

Palo Alto Virtual Router Interfaces
Palo Alto Virtual Router Interfaces
Palo Alto Virtual Route Table
Palo Alto Virtual Route Table

Static Route

Static routes are added within the virtual router.

Palo Alto Static Route
Palo Alto Static Route

Dynamic Routes

Dynamic routing protocols are configured within the virtual router.

Palo Alto OSPF Configuration
Palo Alto OSPF Configuration
Palo Alto OSPF Configuration Details
Palo Alto OSPF Configuration Details
Palo Alto OSPF Neighbor
Palo Alto OSPF Neighbor