Home
Products
Releases
Best Practices
Resources
By Type
EN
Location
Documentation Home
Palo Alto Networks
Support
Live Community
Knowledge Base
Products
Releases
Best Practices
Resources
By Type
Network Security
Cloud-Delivered Security Services
Advanced DNS Security
Advanced WildFire
Advanced Threat Prevention
Advanced URL Filtering
AI Access Security
Enterprise Data Loss Prevention
SaaS Security
IoT Security
Cloud Identity Engine
Cloud NGFW for AWS
Cloud NGFW for Azure
CN-Series
Common Services
License Activation & Subscription Management
Tenant Management
Identity & Access Management
Device Associations
FAQ
GlobalProtect
Next-Generation Firewall
PAN-OS
AIOps for NGFW
Firewalls
SD-WAN
Service Provider
Panorama
Strata Logging Service
Strata Cloud Manager
AI Runtime Security
VM-Series
Secure Access Service Edge
Common Services
License Activation & Subscription Management
Tenant Management
Identity & Access Management
Device Associations
FAQ
FedRAMP
Next-Generation CASB
Prisma Access
Autonomous DEM
Prisma Access Browser
Prisma SD-WAN
ION Devices
Remote Browser Isolation
Strata Cloud Manager
Strata Multitenant Cloud Manager
Cloud-Native Security
Prisma Cloud
Security Operations
Cortex XDR
Cortex XSOAR
Cortex XPANSE
Cortex XSIAM
What's New
What's New Releases
All Release Notes
View All Release Notes
Recently Updated Release Notes
Prisma Access Agent Release Notes
SaaS Security Release Notes
PAN-OS Release Notes (PAN-OS 10.2)
AI Runtime Security Release Notes
PAN-OS Release Notes (PAN-OS 11.2)
PAN-OS Release Notes (PAN-OS 11.1)
GlobalProtect™ App Release Notes (6.2)
VM-Series and Panorama Plugins Release Notes
Cloud NGFW for AWS Release Notes
Release Notes
See All Recently Updated Release Notes
Recently Updated Documentation
Getting Started
Prisma Access Administrator’s Guide (Panorama Managed) (2.2 Preferred)
Prisma Access Administrator’s Guide (Panorama Managed) (3.2 Preferred and Innovation)
Prisma Access Administrator’s Guide (Panorama Managed) (3.1 Preferred and Innovation)
Prisma Access Administrator’s Guide (Panorama Managed) (3.0 Preferred and Innovation)
Prisma Access Agent User Guide
Prisma Access Agent Administration
Prisma Access Administration (4.0 & Later)
DNS Security Administration
Administration
See All Recent Updates
Applications and Threats Content Updates
Best Practices for Migrating to Application-Based Policy
Data Center
Decryption
DoS and Zone
Get Started
Internet Gateway Security Policy
Secure Administrative Access
Security Policy
WildFire
Zero Trust
VIEW ALL
All Release Notes
Blog
Compatibility Matrix
Experts Corner
Infographics
Licensing, Registration, and Activation
OSS Listings
Translated Documents
VIEW ALL
API Documentation
Release Notes
PAN-OS Release Notes
PAN-OS Release Notes
All Documentation
>
Clear
Search
Loading
Clear
Associated Content and Software Versions
Updated on
Sat Apr 12 00:13:02 PDT 2025
Focus
Download PDF
Updated on
Sat Apr 12 00:13:02 PDT 2025
Focus
Home
PAN-OS
Associated Content and Software Versions
Download PDF
Associated Content and Software Versions
Table of Contents
Filter
Expand All
|
Collapse All
Next-Generation Firewall Docs
Getting Started
Get Started with NGFWs
Something went wrong please try again later
Networking
Version
PAN-OS 11.1 & Later
PAN-OS 11.1 & Later
PAN-OS 11.0 (EoL)
PAN-OS 10.2
PAN-OS 10.1
Networking
Networking Introduction
Configure Interfaces
Tap Interfaces
Virtual Wire Interfaces
Layer 2 and Layer 3 Packets over a Virtual Wire
Port Speeds of Virtual Wire Interfaces
LLDP over a Virtual Wire
Aggregated Interfaces for a Virtual Wire
Virtual Wire Support of High Availability
Zone Protection for a Virtual Wire Interface
VLAN-Tagged Traffic
Virtual Wire Subinterfaces
Configure Virtual Wires
Layer 2 Interfaces
Layer 2 Interfaces with No VLANs
Layer 2 Interfaces with VLANs
Configure a Layer 2 Interface
Configure a Layer 2 Interface, Subinterface, and VLAN
Manage Per-VLAN Spanning Tree (PVST+) BPDU Rewrite
Layer 3 Interfaces
Configure Layer 3 Interfaces
Manage IPv6 Hosts Using NDP
IPv6 Router Advertisements for DNS Configuration
Configure RDNS Servers and DNS Search List for IPv6 Router Advertisements
NDP Monitoring
Enable NDP Monitoring
Cellular Interfaces
Configure 5G for a Cellular Interface
Upgrade 5G Firmware
Upgrade 5G Cellular Firmware
Configure a PPPoE Client on a Subinterface
Configure an IPv6 PPPoE Client
Configure an Aggregate Interface Group
Configure Bonjour Reflector for Network Segmentation
Use Interface Management Profiles to Restrict Access
Virtual Routers
Virtual Router Overview
Configure Virtual Routers
Service Routes
Service Routes Overview
Configure Service Routes
Static Routes
Static Route Overview
Static Route Removal Based on Path Monitoring
Configure a Static Route
Configure Path Monitoring for a Static Route
RIP
RIP Overview
Configure RIP
OSPF
OSPF Concepts
OSPFv3
OSPF Neighbors
OSPF Areas
OSPF Router Types
Configure OSPF
Configure OSPFv3
Configure OSPF Graceful Restart
Confirm OSPF Operation
View the Routing Table
Confirm OSPF Adjacencies
Confirm that OSPF Connections are Established
BGP
BGP Overview
MP-BGP
Configure BGP
Configure a BGP Peer with MP-BGP for IPv4 or IPv6 Unicast
Configure a BGP Peer with MP-BGP for IPv4 Multicast
BGP Confederations
IP Multicast
IGMP
PIM
Shortest-Path Tree (SPT) and Shared Tree
PIM Assert Mechanism
Reverse-Path Forwarding
Configure IP Multicast
View IP Multicast Information
Route Redistribution
Route Redistribution Overview
Configure Route Redistribution
GRE Tunnels
GRE Tunnel Overview
Create a GRE Tunnel
DHCP
DHCP Overview
Firewall as a DHCP Server and Client
Firewall as a DHCPv6 Client
DHCP Messages
DHCP Addressing
DHCP Address Allocation Methods
DHCP Leases
DHCP Options
Predefined DHCP Options
Multiple Values for a DHCP Option
DHCP Options 43, 55, and 60 and Other Customized Options
Dynamic IPv6 Addressing on the Management Interface
Configure an Interface as a DHCP Server
Configure an Interface as a DHCPv4 Client
Configure an Interface as a DHCPv6 Client with Prefix Delegation
Configure the Management Interface as a DHCP Client
Configure the Management Interface for Dynamic IPv6 Address Assignment
Configure an Interface as a DHCP Relay Agent
Monitor and Troubleshoot DHCP
View DHCP Server Information
Clear DHCP Leases
View DHCP Client Information
Gather Debug Output about DHCP
DNS
DNS Overview
DNS Proxy Object
DNS Server Profile
Multi-Tenant DNS Deployments
Configure a DNS Proxy Object
Configure a DNS Server Profile
Configure a Web Proxy
Configure Explicit Proxy
Configure Transparent Proxy
Configure Authentication for Explicit Web Proxy
Configure Exemptions for Explicit Proxy Authentication
Exclude All Explicit Proxy Traffic From Authentication
Use Case 1: Firewall Requires DNS Resolution
Use Case 2: ISP Tenant Uses DNS Proxy to Handle DNS Resolution for Security Policies, Reporting, and Services within its Virtual System
Use Case 3: Firewall Acts as DNS Proxy Between Client and Server
DNS Proxy Rule and FQDN Matching
DDNS
Dynamic DNS Overview
Configure Dynamic DNS for Firewall Interfaces
NAT
NAT Policy Rules
NAT Policy Overview
NAT Address Pools Identified as Address Objects
Proxy ARP for NAT Address Pools
Source NAT and Destination NAT
Source NAT
Destination NAT
Destination NAT with DNS Rewrite Use Cases
Destination NAT with DNS Rewrite Reverse Use Cases
Destination NAT with DNS Rewrite Forward Use Cases
NAT Rule Capacities
Dynamic IP and Port NAT Oversubscription
Dataplane NAT Memory Statistics
Configure NAT
Translate Internal Client IP Addresses to Your Public IP Address (Source DIPP NAT)
Create a Source NAT Rule with Persistent DIPP
PAN-OS
Strata Cloud Manager
Enable Clients on the Internal Network to Access your Public Servers (Destination U-Turn NAT)
Enable Bi-Directional Address Translation for Your Public-Facing Servers (Static Source NAT)
Configure Destination NAT with DNS Rewrite
Configure Destination NAT Using Dynamic IP Addresses
Modify the Oversubscription Rate for DIPP NAT
Reserve Dynamic IP NAT Addresses
Disable NAT for a Specific Host or Interface
NAT Configuration Examples
Destination NAT Example—One-to-One Mapping
Destination NAT with Port Translation Example
Destination NAT Example—One-to-Many Mapping
Source and Destination NAT Example
Virtual Wire Source NAT Example
Virtual Wire Static NAT Example
Virtual Wire Destination NAT Example
NPTv6
NPTv6 Overview
Unique Local Addresses
Reasons to Use NPTv6
How NPTv6 Works
Checksum-Neutral Mapping
Bi-Directional Translation
NPTv6 Applied to a Specific Service
NDP Proxy
NPTv6 and NDP Proxy Example
The ND Cache in NPTv6 Example
The NDP Proxy in NPTv6 Example
The NPTv6 Translation in NPTv6 Example
Neighbors in the ND Cache are Not Translated
Create an NPTv6 Policy
NAT64
NAT64 Overview
IPv4-Embedded IPv6 Address
DNS64 Server
Path MTU Discovery
IPv6-Initiated Communication
Configure NAT64 for IPv6-Initiated Communication
Configure NAT64 for IPv4-Initiated Communication
Configure NAT64 for IPv4-Initiated Communication with Port Translation
ECMP
ECMP Load-Balancing Algorithms
Configure ECMP on a Virtual Router
Enable ECMP for Multiple BGP Autonomous Systems
Verify ECMP
LLDP
LLDP Overview
Supported TLVs in LLDP
LLDP Syslog Messages and SNMP Traps
Configure LLDP
View LLDP Settings and Status
Clear LLDP Statistics
BFD
BFD Overview
BFD Model, Interface, and Client Support
Non-Supported RFC Components of BFD
BFD for Static Routes
BFD for Dynamic Routing Protocols
Configure BFD
Reference: BFD Details
Session Settings and Timeouts
Transport Layer Sessions
TCP
TCP Half Closed and TCP Time Wait Timers
Unverified RST Timer
TCP Split Handshake Drop
Maximum Segment Size (MSS)
UDP
ICMP
Security Policy Rules Based on ICMP and ICMPv6 Packets
ICMPv6 Rate Limiting
Control Specific ICMP or ICMPv6 Types and Codes
Configure Session Timeouts
Configure Session Settings
Session Distribution Policies
Session Distribution Policy Descriptions
Change the Session Distribution Policy and View Statistics
Prevent TCP Split Handshake Session Establishment
Tunnel Content Inspection
Tunnel Content Inspection Overview
Configure Tunnel Content Inspection
View Inspected Tunnel Activity
View Tunnel Information in Logs
Create a Custom Report Based on Tagged Tunnel Traffic
Tunnel Acceleration Behavior
Disable Tunnel Acceleration
Network Packet Broker
Network Packet Broker Overview
How Network Packet Broker Works
Prepare to Deploy Network Packet Broker
Configure Transparent Bridge Security Chains
Configure Routed Layer 3 Security Chains
Network Packet Broker HA Support
User Interface Changes for Network Packet Broker
Limitations of Network Packet Broker
Troubleshoot Network Packet Broker
Advanced Routing
Enable Advanced Routing
Logical Router Overview
Configure a Logical Router
Create a Static Route
Configure BGP on an Advanced Routing Engine
Create BGP Routing Profiles
Create Filters for the Advanced Routing Engine
Configure OSPFv2 on an Advanced Routing Engine
Create OSPF Routing Profiles
Configure OSPFv3 on an Advanced Routing Engine
Create OSPFv3 Routing Profiles
Configure RIPv2 on an Advanced Routing Engine
Create RIPv2 Routing Profiles
Create BFD Profiles
Configure IPv4 Multicast
Configure MSDP
Create Multicast Routing Profiles
Create an IPv4 MRoute
PoE
PoE Overview
Configure PoE
Incidents & Alerts
Alerts
Manage NGFW Alerts
View Alert Details
View Probable Causes
Forecasting and Anomaly Detection
Manage Capacity Analyzer Alerts
CPU Usage Metrics in AIOps for NGFW
Create a Notification Rule
Integrating with ServiceNow
AIOps for NGFW Alerts Reference
Premium Health Alerts
Free Health Alerts
Service Alerts
Alerts Raised by Leveraging Machine Learning
Manage NGFW Incidents
View Incident Details
Something went wrong please try again later
Previous
Limitations in PAN-OS 11.1
Next
Associated Content and Software Versions for PAN-OS 11.1
Associated Content and Software Versions
What content and software versions are compatible with PAN-OS 11.1.
Review information about the associated content and software versions for Palo Alto Networks PAN-OS® 11.1 software.
Associated Content and Software Versions for PAN-OS 11.1
WildFire Analysis Environment Support for PAN-OS 11.1
Previous
Limitations in PAN-OS 11.1
Next
Associated Content and Software Versions for PAN-OS 11.1