Palo Alto Initial Setup

This will follow the process to do initial setup of vPAN nodes including, admin login password setup and static address configuration.

A web interface will need to be used to access this device. It is recommended to use an external connector (bridge mode) with an unmanaged switch that can be used as out of band management as shown in the topology.

You will need to find a PAVM qcow2 image from a source. I will be providing my node .yaml file. DO NOT modify this file as Panorama OS is a 'picky bitch' when it comes to resources and will not behave properly. Symptoms can include but are not limited to Web login UI not loading and/or intermittent response from the CLI/Web UI.

Lab download:

Node download: vPAN Node



Start the vPANs, they can take up to 20m to startup. They will not allow login until they get past the second login that states:

PA-VM login:

Once booted and given access to a management network (our external connector) it will pull a DHCP address that it will display in the CLI. You can either navigate to this web address using https://<address> or you can login at the CLI.

We will use the web interface. The default credentials are admin/admin, it will prompt to change.


Once you are in the device navigate to Device>Interfaces>Management. From this page you will want to setup static IPs for your management interfaces as well as the services running on them.

You can also limit devices that have access through this management portal from this page.







Popular posts from this blog