FedRAMP
NGFW FedRAMP Moderate and High FQDNs
Table of Contents
NGFW FedRAMP Moderate and High FQDNs
Learn which fully qualified domains (FQDNs) are supported for use in Prisma SASE
FedRAMP Moderate and High environments.
Because Palo Alto Networks enforces strict incoming Security policy rules for NetSec
FedRAMP tenants, you must provide Palo Alto Networks customer services with a list of
fully qualified domains (FQDNs) for the administrative users who will be accessing your
environment. After you submit a support ticket with these FQDNs, customer services will
create an allow list for them, which will let users log in from these FQDNs and access
the environment.
Moderate FQDNs
The following are FedRAMP Moderate FQDNs.
| Product | Domain |
|---|---|
| CASB (SaaS API / SSPM) |
|
| CASB (SaaS Inline) |
|
|
Cloud Management
|
|
| Strata Logging Service |
|
| DLP | https://gov.dlp.pubsec-cloud.paloaltonetworks.com |
| IoT |
|
| Lumos V&R |
|
| Panorama |
|
|
PanOS Cloud Component
|
|
| Advanced Wildfire |
|
High FQDNs
The following are FedRAMP High FQDNs.
| Product | Domain |
|---|---|
| Cloud Management |
|
| DLP | [ul]
|
| hub | fed.apps.paloaltonetworks.us |
| IoT Security | https://fedramp-banff-pentest1.iot-gov.paloaltonetworks.com |
| Panorama |
Strata Logging Service-gov1.us1.cent1.gov.Strata Logging Service.paloaltonetworks.com
*.api2-lc-prod-gov.gpcloudservice.com
*.fei-lc-prod-gov.gpcloudservice.com
Br-gov1.us1.cent1.gov.Strata Logging Service.paloaltonetworks.com
Lic.lc.prod.us.cs.paloaltonetworks.com
api.us1.cent1.gov.Strata Logging Service.paloaltonetworks.com
|
| PanOS CC (Cloud Component) |
|
| SaaS |
|
| SASE Portal | fed.sase.paloaltonetworks.us |
| Advanced Wildfire |
|