Howdy, this page is old. If you’re digging for info on building Palo Alto Firewalls in AWS, the steps below may be outdated.
This tutorial describes how to configure Palo Alto firewalls to protect an Internet facing web farm in Amazon Web Services (AWS). It includes 3 steps:
- Building the AWS VPC Network
- Building the Palo Alto Network in AWS
- Creating the EC2 Linux Servers
NOTE: Charges may apply when using AWS services. Before proceeding, be sure to read and understand Amazon’s user agreement and the respective charges. Secondly, this tutorial is intended to be a quick reference for setting up the Palo Alto in AWS, and in no way recommends, implies or suggests best practice for securing the environment.
The Network Design
In this tutorial you will create a web server farm behind a Palo Alto firewall in AWS. Web servers will be built in a private DMZ network. An Internet Gateway will be created for Internet access, and Elastic IPs will be used to associate (or NAT) to the public network.

AWS with a Palo Alto Firewall
About the Author
Grant Carmichael
Grant Carmichael is a seasoned Information Security Professional and Digital Marketer with over a decade of experience. As the founder of EVANCED.NET, he leads a team that helps businesses of all sizes achieve success through data-driven digital marketing strategies.
A devoted husband to Katie and father to Hadley and Hensley, Grant enjoys wake surfing on Lake Lanier and RV adventures with his family. Combining technical expertise with a personal touch, Grant and his team at EVANCED.NET are dedicated to delivering exceptional results for their clients.