The VM-Series firewall is available in the following models—VM-50, VM-100, VM-200, VM-300, VM-500, VM-700 and VM-1000-HV.
All models can be deployed as guest virtual machines on VMware ESXi and vCloud Air, Citrix NetScaler SDX, KVM and KVM in OpenStack, and Microsoft Hyper-V. In the public cloud environments—Amazon Web Services, Azure, Google Cloud Platform—all models except the VM-50 are supported; on VMware NSX, only the VM-100, VM-200, VM-300, VM-500, and VM-1000-HV firewalls are supported. The software package (.xva, .ova, or .vhdx file) that is used to deploy the VM-Series firewall is common across all models.
When you apply the capacity license on the VM-Series firewall, the model number and the associated capacities are implemented on the firewall. Capacity is defined in terms of the number of sessions, rules, security zones, address objects, IPSec VPN tunnels, and SSL VPN tunnels that the VM-Series firewall is optimized to handle. To make sure that you purchase the correct model for your network requirements, use the following table to understand the maximum capacity for each model and the capacity differences by model:
Dynamic IP Addresses
IPSec VPN Tunnels
SSL VPN Tunnels
For information on the platforms on which you can deploy the VM-Series firewall, see VM-Series Deployments. For more information about the VM-Series firewall models, see the Palo Alto Networks Firewall comparison tool. You can also review general information About the VM-Series Firewall.
VM-Series Firewall for NSX Licenses
VM-Series Firewall for NSX Licenses In order to automate the provisioning and licensing of the VM-Series firewall for NSX in the VMware integrated NSX solution, ...
VM-Series Deployments The VM-Series firewall can be deployed on the following platforms: VM-Series for VMware vSphere Hypervisor (ESXi) and vCloud Air You can deploy any ...
VM-Series System Requirements
VM-Series System Requirements Each instance of the VM-Series firewall requires a minimum resource allocation—number of CPUs, memory, and disk space, on its host server. Use ...
VM-50 Lite Mode
VM-50 Lite Mode The standard VM-50, while the smallest model of the VM-Series, requires more resources than are available in some environments. The VM-50 Lite ...
Plan Your Cisco ENCS Deployment
Ensure the Cisco ENCS environment can support the VM-Series firewall. ...
License Types—VM-Series Firewalls
License Types—VM-Series Firewalls You can license the VM-Series firewall as a Bring your own license (BYOL), Pay as you go, (PAYG), or with an Enterprise ...
OCI Shape Types
OCI Shape Types The VM-Series firewalls support the following OCI VM shapes. See Oracle Cloud Infrastructure documentation for more information about VM shapes. VM-Series Model ...
What are the Components of the VM-Series for NSX Solution?
What are the Components of the VM-Series for NSX Solution? The following tables show the components of this joint Palo Alto Networks and VMware solution. ...
Firewall File Forwarding Capacity by Model
Firewall File Forwarding Capacity by Model File forwarding capacity is the maximum rate per minute at which each Palo Alto Networks firewall model can submit ...