Simplifying Hybrid Cloud Security with Nutanix and Palo Alto Networks on AWS | Nutanix Community
Skip to main content
Blog

Simplifying Hybrid Cloud Security with Nutanix and Palo Alto Networks on AWS

  • March 7, 2025
  • 1 reply
  • 86 views
Simplifying Hybrid Cloud Security with Nutanix and Palo Alto Networks on AWS
aluciani
Forum|alt.badge.img+34

Palo Alto Networks VM-Series Virtual Next-Generation Firewalls on Nutanix Cloud Clusters

Organizations now have a simpler way to secure their hybrid multicloud environments with Palo Alto Networks VM-Series Virtual Next-Generation Firewalls (NGFWs). These firewalls are now fully validated for the Nutanix Cloud Clusters (NC2) platform on Amazon AWS with the Nutanix Flow Virtual Networking solution.

Designed to maximize the power of hybrid cloud, NC2 allows the extension of workloads from on-premises to AWS. By leveraging bare metal-as-a-service (BMaaS), NC2 empowers organizations to deploy scalable cloud infrastructure without the need to purchase and manage additional hardware upfront—and provides a consistent process for provisioning and managing Nutanix clusters across both on-premises and cloud environments.

With the addition of Palo Alto Networks VM-Series Virtual Firewalls, Nutanix customers can secure Nutanix AHV workloads using overlay networks deployed within Flow Virtual Networking using virtual private clouds (VPCs).

VM-Series Virtual Next-Generation Firewalls Deliver Application Layer Security

VM-Series Virtual Firewalls provide additional protection for Nutanix AHV workloads, adding advanced application-layer security for more complete coverage. NGFW eliminates the need for complex reconfigurations by providing a unified layer of network security and visibility across both on-premises and AWS workloads. This validated integration allows Nutanix to simplify operations while also safeguarding the full breadth of an organization’s hybrid infrastructure.

VM-Series Virtual Firewalls also offer advanced Cloud-Delivered Security Services that can provide a carefully optimized balance of speed, protection, and value. These services deliver straightforward and comprehensive protection for workloads across public clouds, private clouds, and on-premises environments, safeguarding against both established and emerging threats.

Palo Alto Networks VM-Series Virtual Firewalls are managed through Panorama™,  Palo Alto Networks’ centralized firewall management platform. Panorama provides a unified interface for configuring, monitoring, and managing security policies, eliminating the need to toggle between multiple tools. This streamlined approach allows you to efficiently oversee the security of virtual environments, physical datacenters, and public clouds from a single management console.

Enable Advanced Security with Microsegmentation and Nutanix Flow Network Security

As virtualized and cloud environments expand, the associated attack surface grows, increasing the risk of unauthorized access to internal networks. Once perimeter security controls are breached, attackers can move laterally (east-west) across systems, seeking valuable data to steal or exploit. To mitigate these risks, it’s crucial to adopt a security strategy that addresses both lateral network traffic and perimeter protection.

The Nutanix Flow Network Security solution provides robust protection through advanced microsegmentation, deploying managed virtual-machine-level software firewalls to enhance visibility and control across virtual networks. Even when virtual machines (VMs) migrate between network segments or clouds, a unified security policy provides consistent protection, reducing vulnerabilities to malware, ransomware, and other threats.

Flow Network Security takes an application-centric approach to microsegmentation, safeguarding east-west traffic by enabling precise control over VM-to-VM communications. This approach minimizes the risk of lateral threat propagation, to help keep each VM protected as part of an integrated security strategy.

How VM-Series NGFWs Work with Nutanix

For Nutanix customers using NC2 on AWS, VM-Series virtual firewalls deployed within a Nutanix Flow overall VPC provide application-layer security for workloads. When deployed in high availability mode, these firewalls can secure both internal traffic within the VPC and traffic between the VPC and external sources.

Panorama virtual instances deployed on NC2 on AWS can be used to manage and monitor VM-series HA pairs deployed within the VPC. Customers can also use the Nutanix plugin for Panorama to synchronize categories and manage Dynamic Address groups.

Discover How Palo Alto Networks Enhances the Advanced Security Capabilities of Nutanix

Explore more about how VM-Series Virtual Firewalls work with Nutanix here.

Or, discover additional Palo Alto Networks-Nutanix integrations here, all designed to provide customers with the next-generation security features they need.


©2025 Nutanix, Inc. All rights reserved. Nutanix, the Nutanix logo and all Nutanix product and service names mentioned are registered trademarks or trademarks of Nutanix, Inc. in the United States and other countries. Palo Alto Networks, the Palo Alto Networks logo, Panorama, and all Palo Alto Networks product and service names mentioned are registered trademarks or trademarks of Palo Alto Networks, Inc. All other brand names mentioned are for identification purposes only and may be the trademarks of their respective holder(s).

Did this topic help you find an answer to your question?

1 reply

Forum|alt.badge.img
  • Adventurer
  • 3 replies
  • March 10, 2025

Hi

Great article, I wrote a (dutch) piece howto integrate Flow in AHV, maybe it’s helpful for others:-)

https://marcotubben.wixsite.com/marcosblog/post/palo-alto-integratie-in-nutanix-flow

Greetings, Marco