About Panorama Plugins

Panorama supports integrations with these services through the extensible plugin architecture.
Panorama supports an extensible plugin architecture that enables the integration and configuration of the following capabilities:
  • AWS—The AWS plugin enables you to monitor your EC2 workloads on AWS. With the plugin, you can enable communication between Panorama (running 8.1.3 and later) and your AWS VPCs so that Panorama can collect a predefined set of attributes(or metadata elements) as tags for your EC2 instances and register the information to your Palo Alto Networks® firewall(s). When you reference these tags in Dynamic Address Groups and match against them in Security policy rules, you can consistently enforce policy across all assets deployed within your VPCs.
  • Azure— The Azure plugin enables you to monitor your virtual machines on the Azure public cloud. With the plugin, you can enable communication between Panorama (running 8.1.3 and later) and your Azure subscriptions so that Panorama can collect a predefined set of attributes (or metadata elements) as tags for your Azure virtual machines and register the information to your Palo Alto Networks® firewall(s). When you reference these tags in Dynamic Address Groups and match against them in Security policy rules, you can consistently enforce policy across all assets deployed within VNets in your subscriptions.
  • Cisco ACI—The Cisco ACI plugin enables you to monitor endpoints in your Cisco ACI fabric. With the plugin, you enable communication between Panorama (8.1.6 and later) and your Cisco APIC so that Panorama can collect endpoint information as tags for your Endpoint Groups and register the information to you Palo Alto Networks® firewall(s). When you reference these tags in Dynamic Address Groups and match against them in Security policy rules, you can consistently enforce policy across all assets deployed within your Cisco ACI fabric.
  • Cloud Services—The Cloud Services plugin enables the use of the Logging Service and GlobalProtect cloud service. The Logging Service solves operational logging challenges and the GlobalProtect cloud service extends your security infrastructure to your remote network locations and mobile workforce.
  • Interconnect—The Interconnect plugin enables you to Manage Large-Scale Firewall Deployments. Use the Interconnect plugin to set up a two-tier Panorama deployment (on Panorama 8.1.3 and later) for a horizontal scale-out architecture. With the Interconnect plugin, you can deploy a Panorama Controller with up to 64 Panorama Nodes, or 32 Panorama HA pairs, to centrally manage a large number of firewalls.
  • VMware NSX—The VMware NSX plugin enables integration between the VM-Series firewall on VMware NSX with VMware NSX Manager. This integration allows you to deploy the VM-Series firewall as a service on a cluster of ESXi servers.
Refer to the Palo Alto Networks Compatibility Matrixfor details on the different plugin versionsand compatibility information.

Related Documentation