[](https://www.paloaltonetworks.com/?ts=markdown) * Sign In * Customer * Partner * Employee * [Login to download](https://www.paloaltonetworks.com/login?ts=markdown) * [Join us to become a member](https://www.paloaltonetworks.com/login?screenToRender=traditionalRegistration&ts=markdown) * EN * [USA (ENGLISH)](https://www.paloaltonetworks.com) * [AUSTRALIA (ENGLISH)](https://www.paloaltonetworks.com.au) * [BRAZIL (PORTUGUÉS)](https://www.paloaltonetworks.com.br) * [CANADA (ENGLISH)](https://www.paloaltonetworks.ca) * [CHINA (简体中文)](https://www.paloaltonetworks.cn) * [FRANCE (FRANÇAIS)](https://www.paloaltonetworks.fr) * [GERMANY (DEUTSCH)](https://www.paloaltonetworks.de) * [INDIA (ENGLISH)](https://www.paloaltonetworks.in) * [ITALY (ITALIANO)](https://www.paloaltonetworks.it) * [JAPAN (日本語)](https://www.paloaltonetworks.jp) * [KOREA (한국어)](https://www.paloaltonetworks.co.kr) * [LATIN AMERICA (ESPAÑOL)](https://www.paloaltonetworks.lat) * [MEXICO (ESPAÑOL)](https://www.paloaltonetworks.com.mx) * [SINGAPORE (ENGLISH)](https://www.paloaltonetworks.sg) * [SPAIN (ESPAÑOL)](https://www.paloaltonetworks.es) * [TAIWAN (繁體中文)](https://www.paloaltonetworks.tw) * [UK (ENGLISH)](https://www.paloaltonetworks.co.uk) * ![magnifying glass search icon to open search field](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/search-black.svg) * [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown) * [What's New](https://www.paloaltonetworks.com/resources?ts=markdown) * [Get Support](https://support.paloaltonetworks.com/SupportAccount/MyAccount) * [Under Attack?](https://start.paloaltonetworks.com/contact-unit42.html) ![x close icon to close mobile navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/x-black.svg) [![Palo Alto Networks logo](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/pan-logo-dark.svg)](https://www.paloaltonetworks.com/?ts=markdown) ![magnifying glass search icon to open search field](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/search-black.svg) * [](https://www.paloaltonetworks.com/?ts=markdown) * Products ![black arrow pointing left to go back to main navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/arrow-right-black.svg) Products [AI-Powered Network Security Platform](https://www.paloaltonetworks.com/network-security?ts=markdown) * [AI Security](https://www.paloaltonetworks.com/precision-ai-security/secure-ai-by-design?ts=markdown) * [Prisma AIRS](https://www.paloaltonetworks.com/prisma/prisma-ai-runtime-security?ts=markdown) * [AI Access Security](https://www.paloaltonetworks.com/sase/ai-access-security?ts=markdown) * [Cloud Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown) * [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown) * [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown) * [Advanced WildFire](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown) * [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown) * [Enterprise Data Loss Prevention](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) * [Enterprise Device Security](https://www.paloaltonetworks.com/network-security/enterprise-device-security?ts=markdown) * [Medical Device Security](https://www.paloaltonetworks.com/network-security/medical-device-security?ts=markdown) * [OT Device Security](https://www.paloaltonetworks.com/network-security/ot-device-security?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [Next-Generation Firewalls](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown) * [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown) * [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown) * [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown) * [SD-WAN for NGFW](https://www.paloaltonetworks.com/network-security/sd-wan-subscription?ts=markdown) * [PAN-OS](https://www.paloaltonetworks.com/network-security/pan-os?ts=markdown) * [Panorama](https://www.paloaltonetworks.com/network-security/panorama?ts=markdown) * [Secure Access Service Edge](https://www.paloaltonetworks.com/sase?ts=markdown) * [Prisma SASE](https://www.paloaltonetworks.com/sase?ts=markdown) * [Application Acceleration](https://www.paloaltonetworks.com/sase/app-acceleration?ts=markdown) * [Autonomous Digital Experience Management](https://www.paloaltonetworks.com/sase/adem?ts=markdown) * [Enterprise DLP](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) * [Prisma Access](https://www.paloaltonetworks.com/sase/access?ts=markdown) * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) * [Prisma SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown) * [Remote Browser Isolation](https://www.paloaltonetworks.com/sase/remote-browser-isolation?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) [AI-Driven Security Operations Platform](https://www.paloaltonetworks.com/cortex?ts=markdown) * [Cloud Security](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) * [Cortex Cloud](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) * [Application Security](https://www.paloaltonetworks.com/cortex/cloud/application-security?ts=markdown) * [Cloud Posture Security](https://www.paloaltonetworks.com/cortex/cloud/cloud-posture-security?ts=markdown) * [Cloud Runtime Security](https://www.paloaltonetworks.com/cortex/cloud/runtime-security?ts=markdown) * [Prisma Cloud](https://www.paloaltonetworks.com/prisma/cloud?ts=markdown) * [AI-Driven SOC](https://www.paloaltonetworks.com/cortex?ts=markdown) * [Cortex XSIAM](https://www.paloaltonetworks.com/cortex/cortex-xsiam?ts=markdown) * [Cortex XDR](https://www.paloaltonetworks.com/cortex/cortex-xdr?ts=markdown) * [Cortex AgentiX](https://www.paloaltonetworks.com/cortex/agentix?ts=markdown) * [Cortex XSOAR](https://www.paloaltonetworks.com/cortex/cortex-xsoar?ts=markdown) * [Cortex Exposure Management](https://www.paloaltonetworks.com/cortex/exposure-management?ts=markdown) * [Cortex Xpanse](https://www.paloaltonetworks.com/cortex/cortex-xpanse?ts=markdown) * [Cortex Advanced Email Security](https://www.paloaltonetworks.com/cortex/advanced-email-security?ts=markdown) * [Unit 42 Managed Detection \& Response](https://www.paloaltonetworks.com/cortex/managed-detection-and-response?ts=markdown) * [Unit 42 Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown) * Solutions ![black arrow pointing left to go back to main navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/arrow-right-black.svg) Solutions Secure AI by Design * [Secure AI Ecosystem](https://www.paloaltonetworks.com/prisma/prisma-ai-runtime-security?ts=markdown) * [Secure GenAI Usage](https://www.paloaltonetworks.com/sase/ai-access-security?ts=markdown) Network Security * [Cloud Network Security](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown) * [Data Center Security](https://www.paloaltonetworks.com/network-security/data-center?ts=markdown) * [DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown) * [Intrusion Detection and Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown) * [Device Security](https://www.paloaltonetworks.com/network-security/device-security?ts=markdown) * [OT Security](https://www.paloaltonetworks.com/network-security/ot-device-security?ts=markdown) * [5G Security](https://www.paloaltonetworks.com/network-security/5g-security?ts=markdown) * [Secure All Apps, Users and Locations](https://www.paloaltonetworks.com/sase/secure-users-data-apps-devices?ts=markdown) * [Secure Branch Transformation](https://www.paloaltonetworks.com/sase/secure-branch-transformation?ts=markdown) * [Secure Work on Any Device](https://www.paloaltonetworks.com/sase/secure-work-on-any-device?ts=markdown) * [VPN Replacement](https://www.paloaltonetworks.com/sase/vpn-replacement-for-secure-remote-access?ts=markdown) * [Web \& Phishing Security](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown) Cloud Security * [Application Security Posture Management (ASPM)](https://www.paloaltonetworks.com/cortex/cloud/application-security-posture-management?ts=markdown) * [Software Supply Chain Security](https://www.paloaltonetworks.com/cortex/cloud/software-supply-chain-security?ts=markdown) * [Code Security](https://www.paloaltonetworks.com/cortex/cloud/code-security?ts=markdown) * [Cloud Security Posture Management (CSPM)](https://www.paloaltonetworks.com/cortex/cloud/cloud-security-posture-management?ts=markdown) * [Cloud Infrastructure Entitlement Management (CIEM)](https://www.paloaltonetworks.com/cortex/cloud/cloud-infrastructure-entitlement-management?ts=markdown) * [Data Security Posture Management (DSPM)](https://www.paloaltonetworks.com/cortex/cloud/data-security-posture-management?ts=markdown) * [AI Security Posture Management (AI-SPM)](https://www.paloaltonetworks.com/cortex/cloud/ai-security-posture-management?ts=markdown) * [Cloud Detection \& Response](https://www.paloaltonetworks.com/cortex/cloud-detection-and-response?ts=markdown) * [Cloud Workload Protection (CWP)](https://www.paloaltonetworks.com/cortex/cloud/cloud-workload-protection?ts=markdown) * [Web Application \& API Security (WAAS)](https://www.paloaltonetworks.com/cortex/cloud/web-app-api-security?ts=markdown) Security Operations * [Cloud Detection \& Response](https://www.paloaltonetworks.com/cortex/cloud-detection-and-response?ts=markdown) * [Security Information and Event Management](https://www.paloaltonetworks.com/cortex/modernize-siem?ts=markdown) * [Network Security Automation](https://www.paloaltonetworks.com/cortex/network-security-automation?ts=markdown) * [Incident Case Management](https://www.paloaltonetworks.com/cortex/incident-case-management?ts=markdown) * [SOC Automation](https://www.paloaltonetworks.com/cortex/security-operations-automation?ts=markdown) * [Threat Intel Management](https://www.paloaltonetworks.com/cortex/threat-intel-management?ts=markdown) * [Managed Detection \& Response](https://www.paloaltonetworks.com/cortex/managed-detection-and-response?ts=markdown) * [Attack Surface Management](https://www.paloaltonetworks.com/cortex/cortex-xpanse/attack-surface-management?ts=markdown) * [Compliance Management](https://www.paloaltonetworks.com/cortex/cortex-xpanse/compliance-management?ts=markdown) * [Internet Operations Management](https://www.paloaltonetworks.com/cortex/cortex-xpanse/internet-operations-management?ts=markdown) * [Extended Data Lake (XDL)](https://www.paloaltonetworks.com/cortex/cortex-xdl?ts=markdown) * [Agentic Assistant](https://www.paloaltonetworks.com/cortex/cortex-agentic-assistant?ts=markdown) Endpoint Security * [Endpoint Protection](https://www.paloaltonetworks.com/cortex/endpoint-protection?ts=markdown) * [Extended Detection \& Response](https://www.paloaltonetworks.com/cortex/detection-and-response?ts=markdown) * [Ransomware Protection](https://www.paloaltonetworks.com/cortex/ransomware-protection?ts=markdown) * [Digital Forensics](https://www.paloaltonetworks.com/cortex/digital-forensics?ts=markdown) [Industries](https://www.paloaltonetworks.com/industry?ts=markdown) * [Public Sector](https://www.paloaltonetworks.com/industry/public-sector?ts=markdown) * [Financial Services](https://www.paloaltonetworks.com/industry/financial-services?ts=markdown) * [Manufacturing](https://www.paloaltonetworks.com/industry/manufacturing?ts=markdown) * [Healthcare](https://www.paloaltonetworks.com/industry/healthcare?ts=markdown) * [Small \& Medium Business Solutions](https://www.paloaltonetworks.com/industry/small-medium-business-portfolio?ts=markdown) * Services ![black arrow pointing left to go back to main navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/arrow-right-black.svg) Services [Threat Intel and Incident Response Services](https://www.paloaltonetworks.com/unit42?ts=markdown) * [Assess](https://www.paloaltonetworks.com/unit42/assess?ts=markdown) * [AI Security Assessment](https://www.paloaltonetworks.com/unit42/assess/ai-security-assessment?ts=markdown) * [Attack Surface Assessment](https://www.paloaltonetworks.com/unit42/assess/attack-surface-assessment?ts=markdown) * [Breach Readiness Review](https://www.paloaltonetworks.com/unit42/assess/breach-readiness-review?ts=markdown) * [BEC Readiness Assessment](https://www.paloaltonetworks.com/bec-readiness-assessment?ts=markdown) * [Cloud Security Assessment](https://www.paloaltonetworks.com/unit42/assess/cloud-security-assessment?ts=markdown) * [Compromise Assessment](https://www.paloaltonetworks.com/unit42/assess/compromise-assessment?ts=markdown) * [Cyber Risk Assessment](https://www.paloaltonetworks.com/unit42/assess/cyber-risk-assessment?ts=markdown) * [M\&A Cyber Due Diligence](https://www.paloaltonetworks.com/unit42/assess/mergers-acquisitions-cyber-due-diligence?ts=markdown) * [Penetration Testing](https://www.paloaltonetworks.com/unit42/assess/penetration-testing?ts=markdown) * [Purple Team Exercises](https://www.paloaltonetworks.com/unit42/assess/purple-teaming?ts=markdown) * [Ransomware Readiness Assessment](https://www.paloaltonetworks.com/unit42/assess/ransomware-readiness-assessment?ts=markdown) * [SOC Assessment](https://www.paloaltonetworks.com/unit42/assess/soc-assessment?ts=markdown) * [Supply Chain Risk Assessment](https://www.paloaltonetworks.com/unit42/assess/supply-chain-risk-assessment?ts=markdown) * [Tabletop Exercises](https://www.paloaltonetworks.com/unit42/assess/tabletop-exercise?ts=markdown) * [Unit 42 Retainer](https://www.paloaltonetworks.com/unit42/retainer?ts=markdown) * [Respond](https://www.paloaltonetworks.com/unit42/respond?ts=markdown) * [Cloud Incident Response](https://www.paloaltonetworks.com/unit42/respond/cloud-incident-response?ts=markdown) * [Digital Forensics](https://www.paloaltonetworks.com/unit42/respond/digital-forensics?ts=markdown) * [Incident Response](https://www.paloaltonetworks.com/unit42/respond/incident-response?ts=markdown) * [Managed Detection and Response](https://www.paloaltonetworks.com/unit42/respond/managed-detection-response?ts=markdown) * [Managed Threat Hunting](https://www.paloaltonetworks.com/unit42/respond/managed-threat-hunting?ts=markdown) * [Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown) * [Unit 42 Retainer](https://www.paloaltonetworks.com/unit42/retainer?ts=markdown) * [Transform](https://www.paloaltonetworks.com/unit42/transform?ts=markdown) * [IR Plan Development and Review](https://www.paloaltonetworks.com/unit42/transform/incident-response-plan-development-review?ts=markdown) * [Security Program Design](https://www.paloaltonetworks.com/unit42/transform/security-program-design?ts=markdown) * [Virtual CISO](https://www.paloaltonetworks.com/unit42/transform/vciso?ts=markdown) * [Zero Trust Advisory](https://www.paloaltonetworks.com/unit42/transform/zero-trust-advisory?ts=markdown) [Global Customer Services](https://www.paloaltonetworks.com/services?ts=markdown) * [Education \& Training](https://www.paloaltonetworks.com/services/education?ts=markdown) * [Professional Services](https://www.paloaltonetworks.com/services/consulting?ts=markdown) * [Success Tools](https://www.paloaltonetworks.com/services/customer-success-tools?ts=markdown) * [Support Services](https://www.paloaltonetworks.com/services/solution-assurance?ts=markdown) * [Customer Success](https://www.paloaltonetworks.com/services/customer-success?ts=markdown) [![](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/logo-unit-42.svg) UNIT 42 RETAINER Custom-built to fit your organization's needs, you can choose to allocate your retainer hours to any of our offerings, including proactive cyber risk management services. Learn how you can put the world-class Unit 42 Incident Response team on speed dial. Learn more](https://www.paloaltonetworks.com/unit42/retainer?ts=markdown) * Partners ![black arrow pointing left to go back to main navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/arrow-right-black.svg) Partners NextWave Partners * [NextWave Partner Community](https://www.paloaltonetworks.com/partners?ts=markdown) * [Cloud Service Providers](https://www.paloaltonetworks.com/partners/nextwave-for-csp?ts=markdown) * [Global Systems Integrators](https://www.paloaltonetworks.com/partners/nextwave-for-gsi?ts=markdown) * [Technology Partners](https://www.paloaltonetworks.com/partners/technology-partners?ts=markdown) * [Service Providers](https://www.paloaltonetworks.com/partners/service-providers?ts=markdown) * [Solution Providers](https://www.paloaltonetworks.com/partners/nextwave-solution-providers?ts=markdown) * [Managed Security Service Providers](https://www.paloaltonetworks.com/partners/managed-security-service-providers?ts=markdown) * [XMDR Partners](https://www.paloaltonetworks.com/partners/managed-security-service-providers/xmdr?ts=markdown) Take Action * [Portal Login](https://www.paloaltonetworks.com/partners/nextwave-partner-portal?ts=markdown) * [Managed Services Program](https://www.paloaltonetworks.com/partners/managed-security-services-provider-program?ts=markdown) * [Become a Partner](https://paloaltonetworks.my.site.com/NextWavePartnerProgram/s/partnerregistration?type=becomepartner) * [Request Access](https://paloaltonetworks.my.site.com/NextWavePartnerProgram/s/partnerregistration?type=requestaccess) * [Find a Partner](https://paloaltonetworks.my.site.com/NextWavePartnerProgram/s/partnerlocator) [CYBERFORCE CYBERFORCE represents the top 1% of partner engineers trusted for their security expertise. Learn more](https://www.paloaltonetworks.com/cyberforce?ts=markdown) * Company ![black arrow pointing left to go back to main navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/arrow-right-black.svg) Company Palo Alto Networks * [About Us](https://www.paloaltonetworks.com/about-us?ts=markdown) * [Management Team](https://www.paloaltonetworks.com/about-us/management?ts=markdown) * [Investor Relations](https://investors.paloaltonetworks.com) * [Locations](https://www.paloaltonetworks.com/about-us/locations?ts=markdown) * [Ethics \& Compliance](https://www.paloaltonetworks.com/company/ethics-and-compliance?ts=markdown) * [Corporate Responsibility](https://www.paloaltonetworks.com/about-us/corporate-responsibility?ts=markdown) * [Military \& Veterans](https://jobs.paloaltonetworks.com/military) [Why Palo Alto Networks?](https://www.paloaltonetworks.com/why-paloaltonetworks?ts=markdown) * [Precision AI Security](https://www.paloaltonetworks.com/precision-ai-security?ts=markdown) * [Our Platform Approach](https://www.paloaltonetworks.com/why-paloaltonetworks/platformization?ts=markdown) * [Accelerate Your Cybersecurity Transformation](https://www.paloaltonetworks.com/why-paloaltonetworks/nam-cxo-portfolio?ts=markdown) * [Awards \& Recognition](https://www.paloaltonetworks.com/about-us/awards?ts=markdown) * [Customer Stories](https://www.paloaltonetworks.com/customers?ts=markdown) * [Global Certifications](https://www.paloaltonetworks.com/legal-notices/trust-center/compliance?ts=markdown) * [Trust 360 Program](https://www.paloaltonetworks.com/resources/whitepapers/trust-360?ts=markdown) Careers * [Overview](https://jobs.paloaltonetworks.com/) * [Culture \& Benefits](https://jobs.paloaltonetworks.com/en/culture/) [A Newsweek Most Loved Workplace "Businesses that do right by their employees" Read more](https://www.paloaltonetworks.com/company/press/2021/palo-alto-networks-secures-top-ranking-on-newsweek-s-most-loved-workplaces-list-for-2021?ts=markdown) * More ![black arrow pointing left to go back to main navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/arrow-right-black.svg) More Resources * [Blog](https://www.paloaltonetworks.com/blog/?ts=markdown) * [Unit 42 Threat Research](https://unit42.paloaltonetworks.com/) * [Communities](https://www.paloaltonetworks.com/communities?ts=markdown) * [Content Library](https://www.paloaltonetworks.com/resources?ts=markdown) * [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown) * [Tech Insider](https://techinsider.paloaltonetworks.com/) * [Knowledge Base](https://knowledgebase.paloaltonetworks.com/) * [Palo Alto Networks TV](https://tv.paloaltonetworks.com/) * [Perspectives of Leaders](https://www.paloaltonetworks.com/perspectives/?ts=markdown) * [Cyber Perspectives Magazine](https://www.paloaltonetworks.com/cybersecurity-perspectives/cyber-perspectives-magazine?ts=markdown) * [Regional Cloud Locations](https://www.paloaltonetworks.com/products/regional-cloud-locations?ts=markdown) * [Tech Docs](https://docs.paloaltonetworks.com/) * [Security Posture Assessment](https://www.paloaltonetworks.com/security-posture-assessment?ts=markdown) * [Threat Vector Podcast](https://unit42.paloaltonetworks.com/unit-42-threat-vector-podcast/) * [Packet Pushers Podcasts](https://www.paloaltonetworks.com/podcasts/packet-pusher?ts=markdown) Connect * [LIVE community](https://live.paloaltonetworks.com/) * [Events](https://events.paloaltonetworks.com/) * [Executive Briefing Center](https://www.paloaltonetworks.com/about-us/executive-briefing-program?ts=markdown) * [Demos](https://www.paloaltonetworks.com/demos?ts=markdown) * [Contact us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown) [Blog Stay up-to-date on industry trends and the latest innovations from the world's largest cybersecurity Learn more](https://www.paloaltonetworks.com/blog/) * Sign In ![black arrow pointing left to go back to main navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/arrow-right-black.svg) Sign In * Customer * Partner * Employee * [Login to download](https://www.paloaltonetworks.com/login?ts=markdown) * [Join us to become a member](https://www.paloaltonetworks.com/login?screenToRender=traditionalRegistration&ts=markdown) * EN ![black arrow pointing left to go back to main navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/arrow-right-black.svg) Language * [USA (ENGLISH)](https://www.paloaltonetworks.com) * [AUSTRALIA (ENGLISH)](https://www.paloaltonetworks.com.au) * [BRAZIL (PORTUGUÉS)](https://www.paloaltonetworks.com.br) * [CANADA (ENGLISH)](https://www.paloaltonetworks.ca) * [CHINA (简体中文)](https://www.paloaltonetworks.cn) * [FRANCE (FRANÇAIS)](https://www.paloaltonetworks.fr) * [GERMANY (DEUTSCH)](https://www.paloaltonetworks.de) * [INDIA (ENGLISH)](https://www.paloaltonetworks.in) * [ITALY (ITALIANO)](https://www.paloaltonetworks.it) * [JAPAN (日本語)](https://www.paloaltonetworks.jp) * [KOREA (한국어)](https://www.paloaltonetworks.co.kr) * [LATIN AMERICA (ESPAÑOL)](https://www.paloaltonetworks.lat) * [MEXICO (ESPAÑOL)](https://www.paloaltonetworks.com.mx) * [SINGAPORE (ENGLISH)](https://www.paloaltonetworks.sg) * [SPAIN (ESPAÑOL)](https://www.paloaltonetworks.es) * [TAIWAN (繁體中文)](https://www.paloaltonetworks.tw) * [UK (ENGLISH)](https://www.paloaltonetworks.co.uk) * [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown) * [What's New](https://www.paloaltonetworks.com/resources?ts=markdown) * [Get support](https://support.paloaltonetworks.com/SupportAccount/MyAccount) * [Under Attack?](https://start.paloaltonetworks.com/contact-unit42.html) * [Demos and Trials](https://www.paloaltonetworks.com/get-started?ts=markdown) Search All * [Tech Docs](https://docs.paloaltonetworks.com/search) Close search modal [Deploy Bravely --- Secure your AI transformation with Prisma AIRS](https://www.deploybravely.com) [](https://www.paloaltonetworks.com/?ts=markdown) 1. [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown) 2. [Cloud Security](https://www.paloaltonetworks.com/cyberpedia/cloud-security?ts=markdown) 3. [SD-WAN vs. SASE: Where One Ends and the Other Begins](https://www.paloaltonetworks.com/cyberpedia/sd-wan-vs-sase?ts=markdown) Table of contents * [What is SD-WAN?](#what-is-sd-wan) * [What is SASE?](#what-is-sase) * [How are SD-WAN and SASE related?](#how-are-sd-wan-and-sase-related) * [Does SASE replace SD-WAN?](#does-sase-replace-sd-wan) * [When should you use SD-WAN vs. SASE?](#when-should-you-use-sd-wan-vs-sase) * [What are the main differences between SD-WAN and SASE?](#what-are-the-main-differences-between-sd-wan-and-sase) * [SD-WAN vs. SASE FAQs](#sd-wan-vs-sase-faqs) # SD-WAN vs. SASE: Where One Ends and the Other Begins 4 min. read Table of contents * [What is SD-WAN?](#what-is-sd-wan) * [What is SASE?](#what-is-sase) * [How are SD-WAN and SASE related?](#how-are-sd-wan-and-sase-related) * [Does SASE replace SD-WAN?](#does-sase-replace-sd-wan) * [When should you use SD-WAN vs. SASE?](#when-should-you-use-sd-wan-vs-sase) * [What are the main differences between SD-WAN and SASE?](#what-are-the-main-differences-between-sd-wan-and-sase) * [SD-WAN vs. SASE FAQs](#sd-wan-vs-sase-faqs) 1. What is SD-WAN? * [1. What is SD-WAN?](#what-is-sd-wan) * [2. What is SASE?](#what-is-sase) * [3. How are SD-WAN and SASE related?](#how-are-sd-wan-and-sase-related) * [4. Does SASE replace SD-WAN?](#does-sase-replace-sd-wan) * [5. When should you use SD-WAN vs. SASE?](#when-should-you-use-sd-wan-vs-sase) * [6. What are the main differences between SD-WAN and SASE?](#what-are-the-main-differences-between-sd-wan-and-sase) * [7. SD-WAN vs. SASE FAQs](#sd-wan-vs-sase-faqs) The difference between SD-WAN and SASE is that SD-WAN is a networking technology that optimizes wide-area connectivity, while SASE is a framework that converges SD-WAN with cloud-delivered security. SD-WAN focuses on routing traffic across multiple links to improve performance and efficiency. SASE extends this by unifying connectivity with security functions for distributed users and applications. ## What is SD-WAN? [Software-defined wide area networking, or SD-WAN](https://www.paloaltonetworks.com/cyberpedia/what-is-sd-wan), is a networking technology that changes how organizations connect their branch offices, data centers, and cloud services. Instead of depending on a single private line such as [MPLS](https://www.paloaltonetworks.com/cyberpedia/mpls-what-is-multiprotocol-label-switching), it can use multiple transport types at once. That includes broadband internet, LTE, and other available connections. ![Diagram labeled 'SD-WAN architecture' showing six branch office icons, three on each side, connected to a central data center box at the bottom. The branches and data center also connect upward to a box labeled 'Internet' that contains cloud service logos including AWS, Azure, Google Cloud, Dropbox, Salesforce, and Workday. Green lines represent MPLS, purple lines represent cellular, and blue lines represent broadband, all shown in the key at the bottom.](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/cyberpedia/sd-wan-vs-sase/SD-WAN-architecture.png) The purpose is simple. Improve the performance, efficiency, and flexibility of the wide area network. Here's why it matters: Traditional WAN architectures were rigid and tied to expensive private circuits. ![Diagram titled 'SD-WAN control plane and data plane' with two labeled sections. On the left under 'Data plane' are four stacked boxes labeled Cloud, DC, Campus, and Branch, each with a blue router icon. These connect through edge routers to three central ovals labeled MPLS, Internet, and 4G/5G. Lines extend from these ovals through green icons labeled 'Smart controllers' to three orange boxes on the right under 'Control plane' labeled Orchestration, Analytics, and Automation.](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/cyberpedia/sd-wan-vs-sase/Limitations-of-traditional-WAN.png "Diagram titled 'SD-WAN control plane and data plane' with two labeled sections. On the left under 'Data plane' are four stacked boxes labeled Cloud, DC, Campus, and Branch, each with a blue router icon. These connect through edge routers to three central ovals labeled MPLS, Internet, and 4G/5G. Lines extend from these ovals through green icons labeled 'Smart controllers' to three orange boxes on the right under 'Control plane' labeled Orchestration, Analytics, and Automation.") But SD-WAN separates the control and data planes. And that allows policies to steer traffic across the best available path in real time. Path selection is based on application requirements and business rules. Not just static routing. ![Diagram titled 'SD-WAN control plane and data plane' with two labeled sections. On the left under 'Data plane' are four stacked boxes labeled Cloud, DC, Campus, and Branch, each with a blue router icon. These connect through edge routers to three central ovals labeled MPLS, Internet, and 4G/5G. Lines extend from these ovals through green icons labeled 'Smart controllers' to three orange boxes on the right under 'Control plane' labeled Orchestration, Analytics, and Automation.](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/cyberpedia/sd-wan-vs-sase/control-plane-and-data-plane.png "Diagram titled 'SD-WAN control plane and data plane' with two labeled sections. On the left under 'Data plane' are four stacked boxes labeled Cloud, DC, Campus, and Branch, each with a blue router icon. These connect through edge routers to three central ovals labeled MPLS, Internet, and 4G/5G. Lines extend from these ovals through green icons labeled 'Smart controllers' to three orange boxes on the right under 'Control plane' labeled Orchestration, Analytics, and Automation.") In practice, that means the network can automatically shift traffic if a link becomes congested or fails. Applications like voice or video can be prioritized to maintain quality, while less sensitive traffic can be sent over cheaper links. ![The diagram titled 'SD-WAN dynamic path selection and traffic steering' shows a branch office connected to various network interfaces. The branch office connects to two virtual interfaces: the VPN virtual interface (IPSec interfaces) depicted in orange and the DIA virtual interface (Ethernet interfaces) depicted in blue. SD-WAN traffic steering includes session load distribution, path quality profile, and traffic distribution profile. Path quality is assessed based on latency, jitter, and packet loss, with a top-down priority for traffic distribution. The VPN interface leads to a private network connecting to headquarters, while the DIA interface connects to the public internet, indicating connections to Internet/SaaS services. Application thresholds are shown at the top left, linking to the branch office through the SD-WAN traffic steering components.](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/cyberpedia/sd-wan-vs-sase/Dynamic-path-selection-and-traffic-steering.png) Essentially, SD-WAN is about optimizing WAN connectivity. It replaces the limitations of legacy routing with centralized orchestration, dynamic path selection, and transport independence. Which means the network becomes more resilient, adaptive, and cost-efficient without changing how users or applications interact with it. | ***Further reading:*** * [*What Is SD-WAN Architecture? \[Components, Types, Importance\]*](https://www.paloaltonetworks.com/cyberpedia/sd-wan-architecture) * [*Types of SD-WAN Deployment Models: A Complete Guide*](https://www.paloaltonetworks.com/cyberpedia/sd-wan-deployment-models) ## What is SASE? [Secure access service edge, or SASE](https://www.paloaltonetworks.com/cyberpedia/what-is-sase), is a framework that merges networking and security into a single cloud-delivered model. Instead of relying on separate hardware appliances, it provides both connectivity and protection through distributed points of presence. The goal is straightforward. Secure and connect users, applications, and data--no matter where they're located. Here's how it works: SASE brings together networking and security into a single framework. ![SASE architecture diagram laid out to show how it integrates different components and locations. On the left, labeled 'Your users' and 'Traffic sources,' are icons for Mobile/Computer, Branch/Retail, and Home, representing various user environments. The central part of the diagram lists components of 'SSE' (Secure Service Edge) including FWaaS (Firewall as a Service), SWG (Secure Web Gateway), CASB (Cloud Access Security Broker), and ZTNA (Zero Trust Network Access). To the right, labeled 'Your data' and 'Traffic destinations,' are icons for HQ/Data Center, SaaS applications, and Public Cloud, indicating where the data resides and is managed. At the top of the central section, 'SSE' is linked with 'A' representing the network access, which includes SD-WAN (Software-Defined Wide Area Network) and Internet Global Networks, collectively underlining the comprehensive network and security coverage SASE provides across varied locations and data pathways.](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/cyberpedia/sd-wan-vs-sase/SASE-architecture.png "SASE architecture diagram laid out to show how it integrates different components and locations. On the left, labeled 'Your users' and 'Traffic sources,' are icons for Mobile/Computer, Branch/Retail, and Home, representing various user environments. The central part of the diagram lists components of 'SSE' (Secure Service Edge) including FWaaS (Firewall as a Service), SWG (Secure Web Gateway), CASB (Cloud Access Security Broker), and ZTNA (Zero Trust Network Access). To the right, labeled 'Your data' and 'Traffic destinations,' are icons for HQ/Data Center, SaaS applications, and Public Cloud, indicating where the data resides and is managed. At the top of the central section, 'SSE' is linked with 'A' representing the network access, which includes SD-WAN (Software-Defined Wide Area Network) and Internet Global Networks, collectively underlining the comprehensive network and security coverage SASE provides across varied locations and data pathways.") SD-WAN is the networking foundation, which--as explained--manages connectivity across different links and locations. Security functions such as [firewall as a service (FWaaS)](https://www.paloaltonetworks.com/cyberpedia/what-is-firewall-as-a-service), [secure web gateway (SWG)](https://www.paloaltonetworks.com/cyberpedia/what-is-secure-web-gateway), [cloud access security broker (CASB)](https://www.paloaltonetworks.com/cyberpedia/what-is-a-casb-cloud-access-security-broker), and [zero trust network access (ZTNA)](https://www.paloaltonetworks.com/cyberpedia/what-is-zero-trust-network-access-ztna) are integrated alongside it. Together, these capabilities let organizations apply consistent policies and enforce access across cloud, branch, and remote environments. It's important to note that SASE isn't just a collection of tools. It's an actual architectural approach that shifts networking and security to the cloud. And that shift is what allows organizations to scale, reduce complexity, and deliver a unified experience to users working from anywhere. In short: SASE equals SD-WAN plus a cloud-based security stack. It's the model enterprises are adopting to replace fragmented legacy systems with a converged way to connect and protect. ## How are SD-WAN and SASE related? SD-WAN and SASE aren't separate technologies competing with one another. They're connected. And that's because SD-WAN is one of the essential components inside a SASE framework, as discussed. Let's break this down. Again, SD-WAN was designed to solve wide area networking challenges. So it gave organizations the ability to move away from rigid private circuits and route traffic dynamically across multiple connections. And that definitely made networks more flexible and cost-efficient. But what it didn't do was solve the security problem. For example(s): ![Architecture diagram illustrating the security risks associated with direct internet access at branch locations. It features a branch connected to an SD-WAN router, which is shown in the center. The SD-WAN router connects to a data center at HQ and branches off to the Internet. A switch and firewall are depicted under the branch, indicating additional network components. To the right, 'Attackers' are illustrated as a potential threat, emphasizing the exposure of network traffic to security risks. The title above the diagram notes that this direct access introduces vulnerabilities to the network.](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/cyberpedia/sd-wan-vs-sase/SD-WAN-vulnerabilities-due-to-direct-internet-access.png "Architecture diagram illustrating the security risks associated with direct internet access at branch locations. It features a branch connected to an SD-WAN router, which is shown in the center. The SD-WAN router connects to a data center at HQ and branches off to the Internet. A switch and firewall are depicted under the branch, indicating additional network components. To the right, 'Attackers' are illustrated as a potential threat, emphasizing the exposure of network traffic to security risks. The title above the diagram notes that this direct access introduces vulnerabilities to the network.") ![Diagram illustrating the challenges of monitoring in an SD-WAN environment due to dynamic path selection. It shows a branch connected to an SD-WAN fabric, represented in the center. An arrow points to a label indicating 'Blindspot internet traffic,' which signifies unmonitored traffic flowing to the Internet. To the left, an access control list is depicted, accompanied by a note on 'Improper configuration on access control list,' highlighting a potential issue. On the right, HQ is illustrated as a connection point. The title at the bottom notes that dynamic path selection complicates the monitoring process, resulting in blind spots.](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/cyberpedia/sd-wan-vs-sase/Loss-of-visibility-in-traffic-flow.png "Diagram illustrating the challenges of monitoring in an SD-WAN environment due to dynamic path selection. It shows a branch connected to an SD-WAN fabric, represented in the center. An arrow points to a label indicating 'Blindspot internet traffic,' which signifies unmonitored traffic flowing to the Internet. To the left, an access control list is depicted, accompanied by a note on 'Improper configuration on access control list,' highlighting a potential issue. On the right, HQ is illustrated as a connection point. The title at the bottom notes that dynamic path selection complicates the monitoring process, resulting in blind spots.") So traffic still had to be secured by separate tools and appliances. And that's where SASE came in. It built on SD-WAN's networking foundation and added the missing security services--all the functions we covered previously (SWG, CASB, FWaaS, and ZTNA). They all converge with SD-WAN under a single cloud-delivered model. Think of it as an evolution path: * Legacy WAN was built on MPLS and fixed architectures. * SD-WAN introduced transport independence and centralized control. * SASE extends that progress by converging networking and security together in the cloud. Remember: SASE still depends on SD-WAN for connectivity. The networking layer provides the basis for applying global security policies and ensuring reliable access. Without SD-WAN's traffic steering and link optimization, SASE wouldn't be able to deliver consistent performance for distributed users and applications. The bottom line is this. SD-WAN is the transport fabric. SASE is the broader framework that uses that fabric to connect and secure everything everywhere. So one is embedded inside the other. | ***Further reading:*** * [*Top 7 SD-WAN Challenges: SD-WAN Risks, Issues, \& Solutions*](https://www.paloaltonetworks.com/cyberpedia/sd-wan-challenges) * [*What Is SD-WAN Security? | SD-WAN Security Considerations*](https://www.paloaltonetworks.com/cyberpedia/what-is-sd-wan-security) ## Does SASE replace SD-WAN? It's a common misconception that adopting SASE means getting rid of SD-WAN. But that isn't the case. This view often comes from how SASE is described as the "next evolution" of SD-WAN, which can make it sound like a direct replacement. Confusion also comes from procurement discussions, where buyers are often encouraged to consider SASE platforms instead of separate SD-WAN deployments. So what does change? The scope. SD-WAN focuses on networking. As mentioned, it makes the WAN more efficient. But SASE takes that same networking base and adds the security functions organizations need today. So SASE doesn't replace SD-WAN. It extends it. Architecturally, this is how SASE integrates SD-WAN alongside its security layers: Organizations still deploy SD-WAN. But it comes as part of a larger cloud-delivered framework that unifies networking and security in one architecture. To put it simply, SASE builds on SD-WAN to give organizations integrated security and connectivity in the cloud era. | ***Further reading:** [SD-WAN vs. SASE vs. SSE: What Are the Differences?](https://www.paloaltonetworks.com/cyberpedia/sdwan-vs-sase-vs-sse)* ## When should you use SD-WAN vs. SASE? The choice between SD-WAN and SASE depends on your environment and priorities. It's not really a matter of one versus the other. It's about what your organization needs now, and what it will need later. ![Architecture diagram titled 'When to use SD-WAN vs. SASE'. A central box on the left reads 'What's the priority?'. Three branching arrows point right. The top branch reads 'Need WAN modernization or MPLS offload?' with a label 'WAN performance, transport flexibility, centralized control' leading to a blue box labeled 'SD-WAN'. The middle branch reads 'Need secure access for distributed/cloud users?' with a label 'Networking + integrated security' leading to a teal box labeled 'SASE'. The bottom branch reads 'Already on SD-WAN but expanding security needs?' with a label 'Phased path toward convergence' leading to a dark gray box labeled 'Extend into SASE'.](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/cyberpedia/sd-wan-vs-sase/When-to-use-SD-WAN-vs-SASE.png "Architecture diagram titled 'When to use SD-WAN vs. SASE'. A central box on the left reads 'What's the priority?'. Three branching arrows point right. The top branch reads 'Need WAN modernization or MPLS offload?' with a label 'WAN performance, transport flexibility, centralized control' leading to a blue box labeled 'SD-WAN'. The middle branch reads 'Need secure access for distributed/cloud users?' with a label 'Networking + integrated security' leading to a teal box labeled 'SASE'. The bottom branch reads 'Already on SD-WAN but expanding security needs?' with a label 'Phased path toward convergence' leading to a dark gray box labeled 'Extend into SASE'.") **Start with SD-WAN when the main challenge is modernizing the wide area network.** For example, if you're trying to offload expensive MPLS connections or improve performance between branch offices and data centers. SD-WAN can deliver better routing, transport flexibility, and centralized control without requiring a major architectural change. **On the other hand, SASE makes more sense when networking and security need to come together.** Distributed workforces, cloud adoption, and a push toward [Zero Trust](https://www.paloaltonetworks.com/cyberpedia/what-is-a-zero-trust-architecture) are the drivers. Organizations that want consistent policy enforcement across users, applications, and devices will find that SASE's cloud-delivered model addresses gaps that SD-WAN alone cannot. And don't forget: this isn't an all-or-nothing decision. **Many organizations deploy SD-WAN first, then extend into SASE as requirements evolve.** Hardware refresh cycles, existing vendor contracts, and team structures often dictate a phased path. And that means SD-WAN may be a starting point, while SASE is the eventual destination. To sum up: use SD-WAN when the priority is WAN performance and cost optimization. Use SASE when the priority is securing access everywhere. And recognize that most enterprises will move through both stages on the way to a fully converged model. | ***Further reading:*** * [*How much does SD-WAN cost?*](https://www.paloaltonetworks.com/cyberpedia/how-much-does-sdwan-cost) * [*How to Do an SD-WAN Migration From Any Starting Point*](https://www.paloaltonetworks.com/cyberpedia/sd-wan-migration) ## What are the main differences between SD-WAN and SASE? Let's get into the nuts and bolts of how SD-WAN and SASE diverge in terms of scope. Both improve connectivity, but they were designed to solve different problems. The table below breaks down how: | Comparison: SD-WAN vs. SASE | |-----------------------------| | Dimension | SD-WAN | SASE | |-----------------------|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|------------------------------------------------------------------------------| | **Core focus** | Application-aware WAN connectivity and optimization | Unified framework for secure connectivity everywhere | | **Key components** | SD-WAN edge devices, controllers, policies, and overlays | SD-WAN + security services (FWaaS, SWG, CASB, ZTNA, etc.) | | **Security coverage** | Limited to [encryption](https://www.paloaltonetworks.com/cyberpedia/data-encryption) and basic [segmentation](https://www.paloaltonetworks.com/cyberpedia/what-is-network-segmentation) | Broad, integrated security stack enforcing Zero Trust | | **Deployment model** | Hardware or virtual appliances at sites, managed centrally | Cloud-delivered model using distributed points of presence | | **Primary use cases** | MPLS offload, branch-to-branch and branch-to-cloud optimization | Secure access for hybrid work, cloud adoption, and global policy enforcement | | **User scope** | Branch offices and data centers | Users, devices, and applications anywhere | It can't be said enough: the two aren't competing choices. SD-WAN provides the transport layer that SASE builds on. And that makes it the logical starting point for many organizations-- and a permanent part of any SASE deployment. ![Icon of a book](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/cyberpedia/what-is-rlhf/icon-rlhf-document.svg) DIG DEEPER INTO SASE Want to see how SASE builds on SD-WAN in practice? *Secure Access Service Edge (SASE) For Dummies, 3rd Edition* breaks down the architecture, security layers, and adoption paths with real-world context. --- [Download book](https://www.paloaltonetworks.com/resources/ebooks/sase-for-dummies) ## SD-WAN vs. SASE FAQs ### Does SASE require SD-WAN? Yes. SASE inherently integrates SD-WAN's capabilities for optimized network traffic with cloud-native security functions. Therefore, removing SD-WAN from the equation would strip SASE of its foundational networking component, rendering it incomplete. #### Can you have SASE without SD-WAN? No. You cannot have SASE without SD-WAN. SASE's framework fundamentally relies on SD-WAN's network optimization combined with cloud-native security features. #### Is SASE the same as SD-WAN? No. SASE is not the same as SD-WAN. While SD-WAN focuses on optimizing network traffic and connectivity, SASE combines these capabilities with cloud-native security services. #### Has SD-WAN become obsolete? No. SD-WAN remains essential for WAN optimization and is a foundational component of SASE. While adoption is shifting toward SASE platforms, SD-WAN itself is not obsolete---it underpins modern secure connectivity. #### When should an organization move from SD-WAN to SASE? Organizations typically extend from SD-WAN to SASE when cloud adoption, hybrid work, and Zero Trust priorities outpace what SD-WAN alone can provide. Transitions often align with hardware refresh cycles, vendor contract renewals, or broader security modernization initiatives. Related content [Podcast: Packet Pushers | Why SD-WAN is the Secret to SASE Success Hear why SD-WAN is the foundational component of a SASE solution.](https://media.blubrry.com/packetpushers/media.blubrry.com/2903570/ins.blubrry.com/2903570/TB_Palo_Alto_0701-SD-WAN.mp3) [Podcast: Packet Pushers | Can SD-WAN Solve Latency Issues for Modern Applications? Get the facts on how application acceleration helps deliver SaaS \& cloud apps with the highest level of performance.](https://media.blubrry.com/packetpushers/media.blubrry.com/2903570/ins.blubrry.com/2903570/TB_0120_PANW.mp3) [eBook: Why Next-Gen SD-WAN Is the Solution for You Discover how integrated next-gen SD-WAN improves user experience, control, and visibility.](https://start.paloaltonetworks.com/why-next-gen-sd-wan-is-the-solution-for-you.html) [eBook: The Branch of the Future, Today Find out how to securely enable branch modernization with Prisma SD-WAN.](https://www.paloaltonetworks.com/resources/ebooks/securely-enable-branch-modernization-with-prisma-sd-wan) ![Share page on facebook](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/resources/facebook-circular-icon.svg) ![Share page on linkedin](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/resources/linkedin-circular-icon.svg) [![Share page by an email](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/resources/email-circular-icon.svg)](mailto:?subject=SD-WAN%20vs.%20SASE%3A%20Where%20One%20Ends%20and%20the%20Other%20Begins&body=SD-WAN%20is%20a%20networking%20technology%20that%20optimizes%20wide-area%20connectivity.%20SASE%20is%20a%20framework%20that%20converges%20SD-WAN%20with%20cloud-delivered%20security.%20at%20https%3A//www.paloaltonetworks.com/cyberpedia/sd-wan-vs-sase) Back to Top {#footer} ## Products and Services * [AI-Powered Network Security Platform](https://www.paloaltonetworks.com/network-security?ts=markdown) * [Secure AI by Design](https://www.paloaltonetworks.com/precision-ai-security/secure-ai-by-design?ts=markdown) * [Prisma AIRS](https://www.paloaltonetworks.com/prisma/prisma-ai-runtime-security?ts=markdown) * [AI Access Security](https://www.paloaltonetworks.com/sase/ai-access-security?ts=markdown) * [Cloud Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown) * [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown) * [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown) * [Advanced WildFire](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown) * [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown) * [Enterprise Data Loss Prevention](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) * [Enterprise IoT Security](https://www.paloaltonetworks.com/network-security/enterprise-device-security?ts=markdown) * [Medical IoT Security](https://www.paloaltonetworks.com/network-security/medical-device-security?ts=markdown) * [Industrial OT Security](https://www.paloaltonetworks.com/network-security/medical-device-security?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [Next-Generation Firewalls](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown) * [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown) * [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown) * [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown) * [SD-WAN for NGFW](https://www.paloaltonetworks.com/network-security/sd-wan-subscription?ts=markdown) * [PAN-OS](https://www.paloaltonetworks.com/network-security/pan-os?ts=markdown) * [Panorama](https://www.paloaltonetworks.com/network-security/panorama?ts=markdown) * [Secure Access Service Edge](https://www.paloaltonetworks.com/sase?ts=markdown) * [Prisma SASE](https://www.paloaltonetworks.com/sase?ts=markdown) * [Application Acceleration](https://www.paloaltonetworks.com/sase/app-acceleration?ts=markdown) * [Autonomous Digital Experience Management](https://www.paloaltonetworks.com/sase/adem?ts=markdown) * [Enterprise DLP](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) * [Prisma Access](https://www.paloaltonetworks.com/sase/access?ts=markdown) * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) * [Prisma SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown) * [Remote Browser Isolation](https://www.paloaltonetworks.com/sase/remote-browser-isolation?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [AI-Driven Security Operations Platform](https://www.paloaltonetworks.com/cortex?ts=markdown) * [Cloud Security](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) * [Cortex Cloud](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) * [Application Security](https://www.paloaltonetworks.com/cortex/cloud/application-security?ts=markdown) * [Cloud Posture Security](https://www.paloaltonetworks.com/cortex/cloud/cloud-posture-security?ts=markdown) * [Cloud Runtime Security](https://www.paloaltonetworks.com/cortex/cloud/runtime-security?ts=markdown) * [Prisma Cloud](https://www.paloaltonetworks.com/prisma/cloud?ts=markdown) * [AI-Driven SOC](https://www.paloaltonetworks.com/cortex?ts=markdown) * [Cortex XSIAM](https://www.paloaltonetworks.com/cortex/cortex-xsiam?ts=markdown) * [Cortex XDR](https://www.paloaltonetworks.com/cortex/cortex-xdr?ts=markdown) * [Cortex XSOAR](https://www.paloaltonetworks.com/cortex/cortex-xsoar?ts=markdown) * [Cortex Xpanse](https://www.paloaltonetworks.com/cortex/cortex-xpanse?ts=markdown) * [Unit 42 Managed Detection \& Response](https://www.paloaltonetworks.com/cortex/managed-detection-and-response?ts=markdown) * [Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown) * [Threat Intel and Incident Response Services](https://www.paloaltonetworks.com/unit42?ts=markdown) * [Proactive Assessments](https://www.paloaltonetworks.com/unit42/assess?ts=markdown) * [Incident Response](https://www.paloaltonetworks.com/unit42/respond?ts=markdown) * [Transform Your Security Strategy](https://www.paloaltonetworks.com/unit42/transform?ts=markdown) * [Discover Threat Intelligence](https://www.paloaltonetworks.com/unit42/threat-intelligence-partners?ts=markdown) ## Company * [About Us](https://www.paloaltonetworks.com/about-us?ts=markdown) * [Careers](https://jobs.paloaltonetworks.com/en/) * [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown) * [Corporate Responsibility](https://www.paloaltonetworks.com/about-us/corporate-responsibility?ts=markdown) * [Customers](https://www.paloaltonetworks.com/customers?ts=markdown) * [Investor Relations](https://investors.paloaltonetworks.com/) * [Location](https://www.paloaltonetworks.com/about-us/locations?ts=markdown) * [Newsroom](https://www.paloaltonetworks.com/company/newsroom?ts=markdown) ## Popular Links * [Blog](https://www.paloaltonetworks.com/blog/?ts=markdown) * [Communities](https://www.paloaltonetworks.com/communities?ts=markdown) * [Content Library](https://www.paloaltonetworks.com/resources?ts=markdown) * [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown) * [Event Center](https://events.paloaltonetworks.com/) * [Manage Email Preferences](https://start.paloaltonetworks.com/preference-center) * [Products A-Z](https://www.paloaltonetworks.com/products/products-a-z?ts=markdown) * [Product Certifications](https://www.paloaltonetworks.com/legal-notices/trust-center/compliance?ts=markdown) * [Report a Vulnerability](https://www.paloaltonetworks.com/security-disclosure?ts=markdown) * [Sitemap](https://www.paloaltonetworks.com/sitemap?ts=markdown) * [Tech Docs](https://docs.paloaltonetworks.com/) * [Unit 42](https://unit42.paloaltonetworks.com/) * [Do Not Sell or Share My Personal Information](https://panwedd.exterro.net/portal/dsar.htm?target=panwedd) ![PAN logo](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/pan-logo-dark.svg) * [Privacy](https://www.paloaltonetworks.com/legal-notices/privacy?ts=markdown) * [Trust Center](https://www.paloaltonetworks.com/legal-notices/trust-center?ts=markdown) * [Terms of Use](https://www.paloaltonetworks.com/legal-notices/terms-of-use?ts=markdown) * [Documents](https://www.paloaltonetworks.com/legal?ts=markdown) Copyright © 2025 Palo Alto Networks. All Rights Reserved * [![Youtube](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/youtube-black.svg)](https://www.youtube.com/user/paloaltonetworks) * [![Podcast](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/icons/podcast.svg)](https://www.paloaltonetworks.com/podcasts/threat-vector?ts=markdown) * [![Facebook](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/facebook-black.svg)](https://www.facebook.com/PaloAltoNetworks/) * [![LinkedIn](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/linkedin-black.svg)](https://www.linkedin.com/company/palo-alto-networks) * [![Twitter](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/twitter-x-black.svg)](https://twitter.com/PaloAltoNtwks) * EN Select your language