| Where Can I Use
This? | What Do I Need? |
|
|
- CN-Series 10.2.x or above Container Images
- Panorama running PAN-OS 10.2.x or above
version
- Helm 3.6 or above version client for CN-Series deployment with helm
chart
|
You can deploy the CN-Series Firewall as a
Container Network Function (CNF) in L3 Standalone mode in your Kubernetes
environment.
The CN-Series now supports the traffic through
a vRouter, where static routes are configured to redirect traffic
to the dataplane interfaces of the firewall. For reverse direction,
the traffic is redirected to the same firewall using L3 Policy Based
Routing (PBR) with IPv4 IP addresses. IP addresses of the interfaces in
K8s environment are typically programmed through the CNI using DHCP.
To
deploy the Kubernetes CNF in L3 standalone mode: