You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/partner-solutions/includes/subscribe.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -5,4 +5,4 @@ ms.date: 01/06/2025
5
5
ms.author: kkendrick
6
6
---
7
7
8
-
You can subscribe to the service through the Azure Marketplace [online store](/marketplace/azure-marketplace-overview#azure-marketplace-online-store) or through the [Azure portal](/azure/azure-portal/azure-portal-overview). Search for it by name:
8
+
You can subscribe to the service through the Azure Marketplace [online store](/marketplace/marketplace-overview#azure-marketplace-online-store) or through the [Azure portal](/azure/azure-portal/azure-portal-overview). Search for it by name:
Copy file name to clipboardExpand all lines: articles/partner-solutions/palo-alto/application-gateway.md
+5-5Lines changed: 5 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -2,8 +2,8 @@
2
2
title: Cloud Next Generation Firewall (NGFW) for Azure deployment behind Azure Application Gateway
3
3
description: Learn how to secure web applications with Cloud NGFW for Azure by Palo Alto Networks.
4
4
5
-
ms.topic: conceptual
6
-
ms.date: 12/09/2024
5
+
ms.topic: how-to
6
+
ms.date: 02/13/2026
7
7
8
8
---
9
9
# Cloud NGFW for Azure deployment behind Azure Application Gateway
@@ -67,15 +67,15 @@ By default, the virtual network connection to the hub has the **Propagate Defaul
67
67
68
68
In some cases, disabling the default route propagation might not be desirable. An example is when other applications or workloads are hosted in the Application Gateway virtual network and require the inspection by Cloud NGFW for Azure. In this case, you can enable the default route propagation but add a 0.0.0.0/0 route to the Application Gateway subnet to override the default route received from the hub. An explicit route to the application virtual network is also required.
69
69
70
-
You can locate the next hop IP address of Cloud NGFW for Azure by viewing the effective routes of a workload in a spoke virtual network.
70
+
You can locate the next hop IP address of Cloud NGFW for Azure by viewing the effective routes of a workload in a spoke virtual network.
71
71
72
72
## Security policy considerations
73
73
74
74
### Azure rulestacks
75
75
76
76
You can use Azure rulestacks to configure security rules and apply security profiles in the Azure portal or through the API. When you're implementing the preceding architecture, configure the security rules by using Palo Alto Networks App-ID, Advanced Threat Prevention, Advanced URL Filtering, DNS Security, and [Cloud-Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions).
77
77
78
-
For more information, see [Cloud NGFW Native Policy Management Using Rulestacks](https://docs.paloaltonetworks.com/cloud-ngfw/azure/cloud-ngfw-for-azure/native-policy-management).
78
+
For more information, see [Cloud NGFW Native Policy Management Using Rulestacks](https://docs.paloaltonetworks.com/cloud-ngfw-azure/administration/protect-traffic-with-cloud-ngfw-for-azure/cloud-ngfw-for-azure-native-policy-management).
79
79
80
80
> [!NOTE]
81
81
> Use of the X-Forwarded-For (XFF) HTTP header field to enforce security policy is currently not supported with Azure rulestacks.
@@ -94,7 +94,7 @@ You need to apply special considerations to zone-based policies to ensure that t
94
94
95
95
## Related content
96
96
97
-
-[Cloud NGFW for Azure](https://docs.paloaltonetworks.com/cloud-ngfw/azure/cloud-ngfw-for-azure) (documentation from Palo Alto Networks)
97
+
-[Cloud NGFW for Azure](https://docs.paloaltonetworks.com/cloud-ngfw-azure/getting-started/introducing-cloud-ngfw-for-azure/cloud-ngfw-for-azure) (documentation from Palo Alto Networks)
98
98
-[Zero-trust network for web applications with Azure Firewall and Application Gateway](/azure/architecture/example-scenario/gateway/application-gateway-before-azure-firewall)
99
99
-[Firewall and Application Gateway for virtual networks](/azure/architecture/example-scenario/gateway/firewall-application-gateway)
100
100
-[Configure Palo Alto Networks Cloud NGFW in Virtual WAN](/azure/virtual-wan/how-to-palo-alto-cloud-ngfw)
Copy file name to clipboardExpand all lines: articles/partner-solutions/palo-alto/overview.md
+3-3Lines changed: 3 additions & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -2,7 +2,7 @@
2
2
title: What is Cloud NGFW by Palo Alto Networks?
3
3
description: Learn about using Cloud NGFW (Next-Generation Firewall) by Palo Alto Networks from Azure Marketplace.
4
4
ms.topic: overview
5
-
ms.date: 12/09/2024
5
+
ms.date: 02/13/2026
6
6
---
7
7
8
8
# What is Cloud NGFW by Palo Alto Networks?
@@ -13,7 +13,7 @@ Microsoft and Palo Alto Networks developed this service and manage it together.
13
13
14
14
You can find Cloud Next-Generation Firewall by Palo Alto Networks in the [Azure portal](https://portal.azure.com/#view/HubsExtension/BrowseResource/resourceType/PaloAltoNetworks.Cloudngfw%2Ffirewalls) or get it on [Azure Marketplace](https://azuremarketplace.microsoft.com/marketplace/apps/paloaltonetworks.pan_swfw_cloud_ngfw?tab=Overview).
15
15
16
-
Palo Alto Networks is leading provider of cloud security, offering next-generation cybersecurity to thousands of customers globally, across all sectors. The integration of Cloud Next-Generation Firewall by Palo Alto for Azure delivers an integrated experience while empowering developers to protect their organizations on Azure.
16
+
Palo Alto Networks is a leading provider of cloud security, offering next-generation cybersecurity to thousands of customers globally, across all sectors. The integration of Cloud Next-Generation Firewall by Palo Alto for Azure delivers an integrated experience, while empowering developers to protect their organizations on Azure.
17
17
18
18
The Palo Alto Networks offering in Azure Marketplace allows you to manage the Cloud Next-Generation Firewall by Palo Alto Networks resources in the Azure portal as an integrated service. It enables you to easily utilize Palo Alto Networks best-in-class network security capabilities on Azure, and you can manage it using either Palo Alto Networks Panorama policy management solution or directly from the Azure portal. Cloud Next-Generation Firewall by Palo Alto combines the scalability and reliability of Microsoft Azure with Palo Alto Networks deep expertise in network security.
19
19
@@ -23,7 +23,7 @@ Here are the key capabilities provided by the Palo Alto integration:
23
23
24
24
-**Seamless onboarding** of Palo Alto software as an integrated service on Azure.
25
25
-**Unified billing** of Palo Alto through Azure monthly billing.
26
-
-**Single-Sign on to Palo Alto**- No separate sign-up needed from Palo Alto portal.
26
+
-**Single-Sign on to Palo Alto**with no separate sign-up needed from Palo Alto portal.
27
27
-**Manage VNET and VWAN traffic** to use existing configuration (.conf) files for Palo Alto deployment.
28
28
29
29
## Subscribe to Cloud Next-Generation Firewall by Palo Alto Networks
0 commit comments