Native NGFW Deployment—When you subscribe to Cloud NGFW via AWS
Marketplace, you procure a tenant. You can then deploy Cloud NGFW resources
for your VPCs with a few clicks on the
Cloud NGFW
Console or using
APIs. These resources come with
built-in resilience, scalability, and lifecycle management. You can also use
infrastructure as code tools such as
Cloud
Formation or
Terraform for creating these resources. Once created, you can
author Security policy rules for these Cloud NGFW resources using Native
policy management (rulestacks) or using Panorama policy management (device
groups).