Where Can I Use
This? | What Do I Need? |
|
- CN-Series 10.1.x or above Container Images
- Panorama running PAN-OS 10.1.x or above
version
- Helm 3.6 or above version client for CN-Series deployment with Helm
|
Complete the following procedure to enable the CN-Series firewall to inspect tagged VLAN traffic.
To inspect VLAN tagged traffic, you must update the configuration of all virtual
wires on Panorama to allow all VLAN tags. Then you must annotate your application
pod YAML file to assign VLAN tags to the app pod interfaces. This annotation tells
the CN-NGFW which tags are applied to packets that are sent through the
firewall.
Double
VLAN tagging is not supported.