Palo Alto Config Generator
Palo Alto PAN-OS Base / Day-0 Config
Day-zero configuration for Palo Alto Networks firewalls: hostname, management interface, DNS, NTP, admin users, and basic system settings via CLI set commands.
Palo Alto BGP Configuration
BGP configuration under a PAN-OS virtual router with eBGP/iBGP peers, import/export policy, prefix filtering, and route-map equivalents via PAN-OS route filters.
Palo Alto HA (Active/Passive or Active/Active)
High Availability configuration for Palo Alto PAN-OS firewalls: HA1 control link, HA2 data link, passive link state, preemption, and session synchronization.
Palo Alto Security Hardening
PAN-OS security hardening aligned with Palo Alto best practices and CIS Benchmarks: admin access, SSL/TLS, SNMP, management plane restrictions, and security profile defaults.
Palo Alto Site-to-Site IPSec VPN
IKEv2 site-to-site IPSec VPN tunnel on Palo Alto PAN-OS. Generates IKE crypto profile, IPSec crypto profile, IKE gateway, IPSec tunnel, and tunnel interface.
Palo Alto NAT Rules
Source NAT (masquerade / IP pool), Destination NAT (DNAT/port-forwarding), and static NAT rules for Palo Alto PAN-OS firewalls.
Palo Alto Security Zones & Policies
Zone-based security policy configuration for Palo Alto firewalls: zones, Layer 3 interfaces, address objects, and security rules with App-ID and User-ID.
Palo Alto URL Filtering & App-ID Policies
URL filtering profiles, custom URL categories, application-based security rules, and SSL inspection policy for Palo Alto PAN-OS.