Networking Features

What new Networking features are in PAN-OS 10.1?
Networking features in PAN-OS 10.1.
New Networking Feature
Description
Aggregate Group Members on Multiple Cards
A PA-7050 or PA-7080 firewall that has an aggregate interface group configured using different line cards will correctly handle fragmented packets after you run the CLI operational command: set ae-frag redistribution-policy hash.
Network Packet Broker
You can now not only decrypt but also broker all traffic—decrypted TLS, non-decrypted TLS, and non-TLS—to a suite of vendor-agnostic security tools such as IPS, IDS, and SIEM devices for inspection. Network Packet Broker eliminates the need to purchase and maintain dedicated, single-function appliances to decrypt and manage security chain devices. You can filter and forward traffic to one chain or to multiple chains of security devices based on application, user, IP address, device, and zone. You can also load balance traffic and eliminate single points of failure. The feature enables you to consolidate security tools with overlapping functionality, which simplifies your network and reduces capital and operating expenses.
Support for Stronger SNMPv3 Encryption
SNMPv3 now supports stronger hashing and encryption algorithms to better meet your organizations internal encryption policies. You can specify hashing algorithms from SHA-224 to SHA-512 for the Authentication Protocol, and encryption algorithms AES-192 and AES-256 for the Privacy Protocol when configuring SNMP or defining the SNMP Trap Server profile.

Recommended For You