Uvation MarketplaceMarketplace
  • Uvation Marketplace
  • loading

    Product Information

    Palo Alto Networks VM-Series Firewall on Microsoft Azure

    Introduction

    Microsoft Azure migration initiatives are rapidly transforming data centers into hybrid clouds, yet the risks of data loss and business disruption jeopardize adoption. The VM-Series on Azure solves these challenges, enabling you to: Protect your Azure workloads through unmatched application visibility and precise control. Prevent threats from moving laterally between workloads and stop data exfiltration. Eliminate security-induced application development bottlenecks with automation and centralized management.

    Palo Alto Networks VM-Series Virtualized Next-Generation Firewalls protect your Azure workloads with advanced security features that allow you to confidently and quickly migrate your business-critical applications to the cloud. ARM templates and third-party automation tools enable seamless integration into your application lifecycle to prevent data loss and business disruption.

    Azure Network Security Groups or VM-Series?

    Organizations are migrating their enterprise applications onto Azure for reasons including business agility and reduced data center footprint. Security best practices dictate that your public cloud posture should mirror your data center’s—understand your threat exposure through application visibility, apply policies to reduce attack surfaces, and prevent threats and data exfiltration within allowed traffic.

    Native Azure security features provide basic port-based filtering to control access to deployed resources. However, they cannot identify or control traffic based on application identity, nor can they prevent threats within allowed traffic. The VM-Series complements Azure Network Security Groups and Azure Firewall by enabling application-based controls, reducing attack surfaces, preventing threats, and stopping data exfiltration.

    Comparison of VM-Series and Azure Network Security Groups
    VM-Series on Azure security overview banner

    VM-Series on Azure

    The VM-Series enables a prevention-based approach to protecting your applications and data on Azure. Automation and centralized management allow next-generation security to be embedded in your Azure application workflows, ensuring security keeps pace with development.

    Complete visibility enhances security decisions—understanding applications in use, even encrypted ones, helps craft informed policies. Segmentation and application whitelisting support data security and compliance by allowing only business-aligned applications while preventing lateral movement across subnets and virtual networks (VNets).

    VM-Series Azure network segmentation and compliance
    • User-based policies enhance security posture by integrating with on-premises directories like Active Directory or LDAP, ensuring access based on credentials and roles.
    • Deployed with GlobalProtect, the VM-Series extends corporate security policies to endpoints and users anywhere.
    • Advanced threat prevention via Threat Prevention, DNS Security, and WildFire protects against known and unknown threats across all traffic directions.
    • Data exfiltration prevention through content inspection, command and control blocking, and file-type control ensures sensitive data stays protected.
    • Data filtering features detect and block confidential information patterns like credit card and Social Security numbers, enforcing compliance and data integrity.




    Paloalto VM-1000-HV

    uvation