[](https://www.paloaltonetworks.com/network-security?ts=markdown) ![x close icon to close mobile navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/x-black.svg) [![ngfw logo](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/ngfw-logo-dark.svg)](https://www.paloaltonetworks.com/network-security?ts=markdown) ![magnifying glass search icon to open search field](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/search-black.svg) * [](https://www.paloaltonetworks.com/network-security?ts=markdown) * Products ![black arrow pointing left to go back to main navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/arrow-right-black.svg) Products [AI Security](https://www.paloaltonetworks.com/precision-ai-security/secure-ai-by-design?ts=markdown) * [Prisma AIRS](https://www.paloaltonetworks.com/prisma/prisma-ai-runtime-security?ts=markdown) * [AI Access Security](https://www.paloaltonetworks.com/sase/ai-access-security?ts=markdown) [Next-Generation Firewalls](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown) * [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown) * [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown) * [PAN-OS](https://www.paloaltonetworks.com/network-security/pan-os?ts=markdown) * [Panorama](https://www.paloaltonetworks.com/network-security/panorama?ts=markdown) * [SD-WAN for NGFW](https://www.paloaltonetworks.com/network-security/sd-wan-subscription?ts=markdown) * [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown) * [VM-Series](https://www.paloaltonetworks.com/network-security/vm-series-virtual-next-generation-firewall?ts=markdown) * [Cloud NGFW for AWS](https://www.paloaltonetworks.com/network-security/cloud-ngfw?ts=markdown) * [Cloud NGFW for Azure](https://www.paloaltonetworks.com/network-security/cloud-ngfw-for-azure?ts=markdown) * [Container Firewalls](https://www.paloaltonetworks.com/prisma/container-network-security-with-prisma-airs?ts=markdown) [Cloud-Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown) * [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown) * [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown) * [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown) * [Advanced WildFire®](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown) * [Enterprise Data Loss Prevention](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) * [Enterprise Device Security](https://www.paloaltonetworks.com/network-security/enterprise-device-security?ts=markdown) * [Medical Device Security](https://www.paloaltonetworks.com/network-security/medical-device-security?ts=markdown) * [OT Device Security](https://www.paloaltonetworks.com/network-security/ot-device-security?ts=markdown) * [SaaS Security (CASB)](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) [Secure Access Service Edge](https://www.paloaltonetworks.com/sase?ts=markdown) * [Prisma SASE](https://www.paloaltonetworks.com/sase?ts=markdown) * [Prisma Access](https://www.paloaltonetworks.com/sase/access?ts=markdown) * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) * [Prisma SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown) * [Autonomous Digital Experience Management](https://www.paloaltonetworks.com/sase/adem?ts=markdown) [![Cloud NGFW](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/product/ngfw-nav-small-3.jpg) Cloud NGFW Protect AWS deployments with unparalleled simplicity with best-in-class network security delivered as a managed cloud service Learn more](https://www.paloaltonetworks.com/network-security/cloud-ngfw?ts=markdown) * Solutions ![black arrow pointing left to go back to main navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/arrow-right-black.svg) Solutions [Secure AI by Design](https://www.paloaltonetworks.com/precision-ai-security/secure-ai-by-design?ts=markdown) * [Secure AI Ecosystem](https://www.paloaltonetworks.com/prisma/prisma-ai-runtime-security?ts=markdown) * [Secure GenAI Usage](https://www.paloaltonetworks.com/sase/ai-access-security?ts=markdown) [Protect the Extended Network](https://www.paloaltonetworks.com/network-security/protect-your-extended-network?ts=markdown) * [Data Center Security](https://www.paloaltonetworks.com/network-security/data-center?ts=markdown) * [Device Security](https://www.paloaltonetworks.com/network-security/device-security?ts=markdown) * [OT Security](https://www.paloaltonetworks.com/network-security/ot-security-solution?ts=markdown) * [5G Security](https://www.paloaltonetworks.com/network-security/5g-security?ts=markdown) [Prevent Network Threats](https://www.paloaltonetworks.com/network-security/strengthen-your-network-security-foundation?ts=markdown) * [Malware Analysis/Sandboxing](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown) * [Internet Security](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown) * [Intrusion Prevention (IPS)](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown) * [Secure DNS Traffic](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown) [Simplify Network Security Management](https://www.paloaltonetworks.com/network-security/simplify-network-security-management?ts=markdown) * [Simplify Network Security Management](https://www.paloaltonetworks.com/network-security/simplify-network-security-management?ts=markdown) * [Network Security Platform](https://www.paloaltonetworks.com/network-security?ts=markdown) * [Unified Management Experience](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown) [Protect Data \& SaaS Applications](https://www.paloaltonetworks.com/network-security/data-and-cloud-application-security?ts=markdown) * [Data Loss Prevention](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) [Secure Access Service Edge](https://www.paloaltonetworks.com/sase?ts=markdown) * [Zero Trust Network Access](https://www.paloaltonetworks.com/sase/ztna?ts=markdown) * [Cloud Secure Web Gateway](https://www.paloaltonetworks.com/sase/secure-web-gateway?ts=markdown) * [SaaS Security (CASB)](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [Branch \& SD-WAN](https://www.paloaltonetworks.com/sase/branch-sd-wan?ts=markdown) * [Autonomous Digital Experience Management](https://www.paloaltonetworks.com/sase/adem?ts=markdown) * Resources ![black arrow pointing left to go back to main navigation](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/arrow-right-black.svg) Resources Resources * [Blogs](https://www.paloaltonetworks.com/blog/network-security/?ts=markdown) * [Events](https://www.paloaltonetworks.com/resources/network-security-events?ts=markdown) * [Customer Stories](https://www.paloaltonetworks.com/network-security/customer-stories?ts=markdown) * [Research \& Papers](https://www.paloaltonetworks.com/resources?q=*%3A*&_charset_=UTF-8&fq=RC_TYPE_DFACET%3Apan%253Aresource-center%252Frc-type%252Fresearch&fq=RC_TOPIC_DFACET%3Apan%253Aresource-center%252Frc-topic%252Fnetwork-security&ts=markdown) * [Videos](https://www.paloaltonetworks.com/resources?q=*%3A*&_charset_=UTF-8&fq=RC_TOPIC_DFACET%3Apan%253Aresource-center%252Frc-topic%252Fnetwork-security&fq=RC_TYPE_DFACET%3Apan%253Aresource-center%252Frc-type%252Fvideo&ts=markdown) * [Tech Docs](https://docs.paloaltonetworks.com/network-security) * [Compare Firewalls](https://www.paloaltonetworks.com/products/product-selection?ts=markdown) * [Services and Support](https://www.paloaltonetworks.com/services?ts=markdown) * [Packet Pushers Podcasts](https://www.paloaltonetworks.com/podcasts/packet-pusher?ts=markdown) [BLOG Learn more about the threat landscape and other trending topics by exploring our blog to see what our experts are saying Learn more](https://www.paloaltonetworks.com/blog/network-security/?ts=markdown) [AWARDS See third-party reviews, recognition and customer reviews. We're proud to be your cybersecurity partner of choice, protecting our digital way of life Learn more](https://www.paloaltonetworks.com/about-us/awards?ts=markdown) [TEST DRIVE Seeing is believing. Try our cybersecurity innovations in complimentary, customized half-day workshops Learn more](https://www.paloaltonetworks.com/resources/test-drives?ts=markdown) * * [Get Started](https://www.paloaltonetworks.com/network-security/get-started?ts=markdown) ![palo alto networks logo icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/logo-default.svg) ![white arrow icon pointing left to return to main Palo Alto Networks site](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/arrow-right-white.svg) [](https://www.paloaltonetworks.com/network-security?ts=markdown) Search All * [Tech Docs](https://docs.paloaltonetworks.com/search#sort=relevancy&layout=card&numberOfResults=25&f:@panproductcategory=[Network%20Security,CN-Series,Cloud-Delivered%20Security%20Services]) Close search modal *** ** * ** *** AI-driven. Every cloud."\> PAN-OS 12.1 ORION Quantum-safe. AI-driven. Every cloud. === ## Fearlessly innovate across clouds with security that's a step ahead. * [Explore](https://www.paloaltonetworks.com/engage/pan-os-orion/) **strata****strata****inherit\*\*\*\*strata** the 2025 Gartner^®^ Magic Quadrant^™^ for Hybrid Mesh Firewall"\> ANALYST REPORT Palo Alto Networks named a Leader in the 2025 Gartner^®^ Magic Quadrant^™^ for Hybrid Mesh Firewall === ## Palo Alto Networks delivers consistent, AI-powered security from one platform. * [Get the report](https://start.paloaltonetworks.com/gartner-hybrid-mesh-firewalls-mq-2025) **strata****strata****inherit\*\*\*\*strata** # Forrester Consulting's Total Economic Impact^™^ for Cloud-Delivered Security Services 2024 ## 357% ROI, $5.2 million in benefits, $1.1 million saved in MTTR, and more. * [Read the study](https://www.paloaltonetworks.com/resources/research/forrester-tei-report-cdss?ts=markdown) **strata****strata****inherit\*\*\*\*strata** ![Tested. Trusted. Built for your Business.](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/product/01-physical-firewalls-family-shot.png) PA-SERIES # Your security starts with Palo Alto Networks firewalls ## Our new, industry-leading ML-Powered Next-Generation Firewall is here. Driven by innovation, our award-winning hardware firewalls secure every size network in every industry so you get protection in one place and everywhere all at once. * [Take a test drive](https://www.paloaltonetworks.com/resources/test-drives#home?ts=markdown) * [Why ML-powered](https://start.paloaltonetworks.com/4-key-elements-ml-powered-ngfw.html) **strata****strata****inherit\*\*\*\*strata** PrevNext ![](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/x-white.svg) ![Miniseries](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/family/cloud-ngfw-why-3.svg) ## PAN-OS 12.1 ORION| Quantum-safe. AI-drive. Every Cloud. Fearlessly innovate across clouds with security that's a step ahead. [Learn more](https://www.paloaltonetworks.com/blog/2025/08/paves-way-for-quantum-ready-security/) ![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/thumbnails/the-forrester-wave-enterprise-firewalls-q4-2022.jpg) ## The Forrester Wave^™^: Enterprise Firewalls, Q4 2022 Report Palo Alto Networks Named a Leader in Enterprise Firewalls [Get the report](https://start.paloaltonetworks.com/leader-in-forrester-wave.html) ## Seeing is believing To understand the power of PA-Series NGFWs, you'll have to see it for yourself. [Take a test drive](https://www.paloaltonetworks.com/resources/test-drives#home?ts=markdown) ## The latest ML-Powered NGFWs bring industry-leading performance and security to emerging use cases These new platforms dramatically increase performance from prior generations. This ensures you're able to stop highly evasive threats and protect every part of your organization --- from the smallest branch offices to the largest campuses, data centers and 5G service provider networks. ![PA-7500](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/product/PA-7500-v1.png) PA-7500 SERIES ### The platinum standard: our fastest and most scalable firewall The PA-7500 includes the new FE400 ASIC, custom silicon developed by Palo Alto Networks. This enables over 1.5 Tbps App-ID^™^, low latency performance and over 400M concurrent Layer 7 sessions. This flexible, scalable design supports up to seven data processing cards or up to seven networking cards for maximum processing or throughput. * [Read the datasheet](https://www.paloaltonetworks.com/resources/datasheets/pa-7500?ts=markdown) * [Read Hardware Reference](https://docs.paloaltonetworks.com/hardware/pa-7500-hardware-reference) ![PA-5500 SERIES](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/cosmos-hardware/pa-5580/pa-5580.png) PA-5500 SERIES ### Quantum Optimized security for the enterprise data center and large campus locations PA-5500 Series Quantum Optimized NGFWs are ideal for high-speed data center, internet gateway, and service provider deployments, delivering up to 300 Gpbs of threat performance with security services enabled. Built with the FE400 ASIC, custom developed by Palo Alto Networks, the PA-5500 series provides visibility into and secures all traffic, including post-quantum encrypted traffic * [Read the datasheet](https://www.paloaltonetworks.com/resources/datasheets/pa-5500-series?ts=markdown) * [Read Hardware Reference](https://docs.paloaltonetworks.com/hardware/pa-5500-hardware-reference) ![PA-5450](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/product/PA5450-front-v4.png) PA-5450 ### Scalable, high-speed performance in an innovative compact design The PA-5450 is designed to meet the stringent requirements of hyperscale data centers, internet edges and campus segmentation deployments, delivering 150 Gbps of threat performance with security services enabled. * [Read the datasheet](https://www.paloaltonetworks.com/resources/datasheets/pa-5450-series?ts=markdown) * [Read Hardware Reference](https://docs.paloaltonetworks.com/hardware/pa-5400-hardware-reference) ![PA-5400 Series](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/product/PA5445-v2.png) PA-5400 Series ### Compact, high-performing security for data centers and campus locations The PA-5400 Series are the highest performing ML-powered NGFWs in a 2 RU (rack units) design. The PA-5400 Series includes the recently launched PA-5445 which delivers 2.5X threat performance and 50% higher session capacity compared to the previous generation PA-5260. * [Read the datasheet](https://www.paloaltonetworks.com/resources/datasheets/pa-5400-series?ts=markdown) * [Read Hardware Reference](https://docs.paloaltonetworks.com/hardware/pa-5400-hardware-reference) ![PA-3400 SERIES](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/product/PA3410-updated.png) PA-3400 SERIES ### Maximize performance in a 1 RU design The PA-3400 Series is designed to pack performance in a small 1 RU design. This power-efficient ML-powered NGFW is the firewall of choice for internet edge and campus environments. * [Read the datasheet](https://www.paloaltonetworks.com/resources/datasheets/pa-3400-series?ts=markdown) * [Read Hardware Reference](https://docs.paloaltonetworks.com/hardware/pa-3400-hardware-reference) ![PA-1400 SERIES](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/family/06-PA_1410_FrontWtop-669x376.png) PA-1400 SERIES ### Protect large branch locations and small enterprise campuses The PA-1400 Series supports Power over Ethernet (PoE), virtual systems (VSYS), high-speed 5G copper ports (mGig ports) and fiber ports. * \[Read the datasheet\](https://www.paloaltonetworks.com/resources/datasheets/pa-1400-series ?ts=markdown) * [Read Hardware Reference](https://docs.paloaltonetworks.com/hardware/pa-1400-hardware-reference) ![PA-400 SERIES](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/product/pa-560.png) PA-500 SERIES ### Maximum security for enterprise branches and small offices The PA-500 series delivers maximum L7 security for enterprise branches and small office locations, up to 2x the performance for the PA-400 series. PA-500 series offers flexible connectivity with up to 24 high speed ports and up to 330W of Power over Ethernet (PoE) support. Simplify your PA-500 series deployment with Zero Touch Provisioning on Strata Cloud Manager. * [Read the datasheet](https://www.paloaltonetworks.com/resources/datasheets/pa-500-series?ts=markdown) * [Read Hardware Reference](https://docs.paloaltonetworks.com/hardware/pa-500-hardware-reference) ![PA-400 SERIES](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/product/pa-455.png) PA-400 SERIES ### Big security. Small footprint The PA-400 Series protects the enterprise branch with inline, real-time threat prevention. Our two newest boxes in the series, the PA-415-5G and the PA-455, provide optional redundant power for those looking for additional connectivity options, and both are easy to deploy. Most importantly, these ML-powered NGFWs stop known and unknown threats in real time and decrypt branch traffic at high speed. * [Read the datasheet](https://www.paloaltonetworks.com/resources/datasheets/pa-400-series?ts=markdown) * [Read Hardware Reference](https://docs.paloaltonetworks.com/hardware/pa-400-hardware-reference) ![PA-400R Series](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/product/pa-450r.png) PA-400R Series ### Rugged performance for the harshest environments Our customers now have multiple ruggedized next-generation firewalls to choose from. From 1U and DIN-rail mounted form factors to SFP and integrated 5G modem connectivity options, customers will find high performance and more comprehensive security in convenient form factors to suit their needs. * [Read the datasheet](https://www.paloaltonetworks.com/resources/datasheets/pa-400r-series?ts=markdown) * [Read Hardware Reference](https://docs.paloaltonetworks.com/hardware/pa-400r-hardware-reference) ## Maximize your security ROI and reduce downtime Get intelligent security and proven return on investment over three years with our ML-Powered NGFW platform. * [Read the study](https://www.paloaltonetworks.com/resources/research/ngfw-forrester-tei-report?ts=markdown) \* $14.11 MILLION BENEFITS REALIZED \* 50% BREACH REDUCTION \* $5.2 MILLION END-USER PRODUCTIVITY GAIN ![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/family/08-single-pass-parallel-processing-architecture.png) ## Unique architecture offers world-class security and high performance Palo Alto Networks single-pass architecture employs a unique single-pass approach to packet processing, delivering better performance and security. [Get the whitepaper](https://www.paloaltonetworks.com/resources/whitepapers/single-pass-parallel-processing-architecture?ts=markdown) ## PA-Series appliances for every application From the largest data centers and service providers to remote branches and retail locations, our Next-Generation Firewalls cover the complete spectrum of use cases. [Compare firewalls](https://www.paloaltonetworks.com/products/product-comparison?ts=markdown) ## Ensure complete and consistent protection With flexible deployment options that include modular and scalable designs to meet specific deployment needs, you get complete and consistent protection across your business. [Watch the video](https://www.youtube.com/embed/P1-S4bawi9c) *** ** * ** *** Full Layer 7 inspectionInline preventionZero Trust Network Security5G-Native SecurityWeb Proxy * [Full Layer 7 inspection](#producttabscomp_prisma-custom-background_prismacustombackgrou-21_cleanParsys_next-generation-firewall-hardware_network-security_en_US_pan_content_0) * [Inline prevention](#producttabscomp_prisma-custom-background_prismacustombackgrou-21_cleanParsys_next-generation-firewall-hardware_network-security_en_US_pan_content_1) * [Zero Trust Network Security](#producttabscomp_prisma-custom-background_prismacustombackgrou-21_cleanParsys_next-generation-firewall-hardware_network-security_en_US_pan_content_2) * [5G-Native Security](#producttabscomp_prisma-custom-background_prismacustombackgrou-21_cleanParsys_next-generation-firewall-hardware_network-security_en_US_pan_content_3) * [Web Proxy](#producttabscomp_prisma-custom-background_prismacustombackgrou-21_cleanParsys_next-generation-firewall-hardware_network-security_en_US_pan_content_4) *** ** * ** *** ![Full Layer 7 security protection](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/family/full-layer-7-inspection.jpg) ## Full Layer 7 security protection A comprehensive approach to Layer 7 security starts by identifying your applications regardless of port, protocol, evasive techniques or encryption (TLS/SSL). Our Palo Alto Networks firewalls classify network traffic by the application's identity in order to grant access to users and provide visibility and control of all types of applications to admins, including web applications, software-as-a-service (SaaS) applications and legacy applications. Our approach uses the application, not the port, as the basis for all your safe enablement policy decisions so you can allow, deny, schedule, inspect and apply traffic-shaping. When needed, you can create custom App-ID™ tags for proprietary applications or request App-ID development for new applications. * Block malicious files and thwart data exfiltration attempts. * Identify and categorize all applications, on all ports, all the time. * Enable safe migration of legacy Layer 4 rule sets. * [Learn more](https://www.paloaltonetworks.com/resources/techbriefs/app-id-tech-brief?ts=markdown) *** ** * ** *** ![Stop malicious files with inline prevention](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/family/inline-prevention.jpg) ## Stop malicious files with inline prevention Attackers frequently bypass traditional signature-based security, modifying existing threats that then show up as unknown signatures. This leaves security professionals struggling to keep up since manually adding signatures cannot be done fast enough to prevent attacks in real time. Plus, using solutions that pull files offline for inspection creates bottlenecks, hinders productivity and can't scale. Our ML-Powered NGFWs use embedded ML algorithms to enable line-speed classification, inspecting files at download and blocking malicious files before they can cause harm. With inline prevention, the PA-Series automatically prevents initial infections from never-before-seen threats without requiring cloud-based or offline analysis for the majority of malware variant threats, reducing the time between visibility and prevention to near zero. Our inline deep learning system analyzes live traffic, detecting and preventing today's most sophisticated attacks, including portable executables, phishing, malicious JavaScript and fileless attacks. Finely tuned models avoid false positives, and a unique feedback loop ensures fast and accurate threat prevention as attacks happen -- all without sacrificing performance. * Find malicious files in real time right when they enter the network. * Maintain security performance through inline single-pass inspection. * Reduce the time to identify and block unknown threats to almost zero. * [Learn more](https://start.paloaltonetworks.com/preventing-evasive-threats.html) *** ** * ** *** ![Simplify Zero Trust with easy-to-deploy user identity and access](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/family/zero-trust-for-users.jpg) ## Simplify Zero Trust with easy-to-deploy user identity and access Identity is a critical component of a Zero Trust approach to network security. With enterprises increasingly migrating from on-premises to cloud identity providers, and users connecting from anywhere, it is difficult to keep security and identity information connected and in sync across the network. Networks are designed for a single source of identity, and this can lead to inconsistent security between data centers, campus networks, public clouds and hybrid environments. Palo Alto Networks Cloud Identity Engine is a cloud-based architecture for identity-based security that can consistently authenticate and authorize your users, regardless of location and where user identity stores live -- on-premises, in the cloud, or hybrid. As a result, security teams can effortlessly allow all users access to applications and data everywhere and quickly move toward a Zero Trust security posture. Cloud Identity Engine saves you time and hassle in deploying and managing identity-based controls on your network security infrastructure, using a point-and-click configuration with real-time identity synchronization. * Consistently authenticate and authorize your users, regardless of location. * Accurately enforce security decisions for all your users at all times. * Save time in the deployment and management of identity-based controls. * [Learn more](https://www.paloaltonetworks.com/resources/techbriefs/cloud-identity-engine?ts=markdown) *** ** * ** *** ![Safeguard 5G transformation and multi-access edge computing (MEC)](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/family/5g-native-security.jpg) ## Safeguard 5G transformation and multi-access edge computing (MEC) 5G is a vital component of the digital backbone of tomorrow's economy. From consumers to enterprises, governments and critical industries, society will depend on 5G. For this reason, organizations transitioning to 5G infrastructures must adopt security that can withstand sophisticated and evasive attacks as the speed and scale of threats on 5G networks rise. Palo Alto Networks 5G-Native Security allows service providers to safeguard their networks, users and clouds as well as back their customers with enterprise-grade security they need for tomorrow's 5G economy. 5G-Native Security allows organizations to extend Zero Trust to their 5G environments to help protect their business-critical 5G users, devices and applications. 5G-Native Security offers a comprehensive approach to protecting all facets of 5G networks. Service providers can deploy a Zero Trust architecture for their 5G network infrastructure and the business-critical enterprise, government and consumer traffic it carries. Enterprises and organizations can protect their 5G users, applications and infrastructure with the same Zero Trust approach they use in their other network segments. * Extend Zero Trust strategies to 5G environments. * Get enterprise-grade security for tomorrow's 5G economy. * Protect your 5G users, applications, and infrastructure. * [Learn more](https://www.paloaltonetworks.com/apps/pan/public/downloadResource?pagePath=/content/pan/en_US/resources/datasheets/5g-native-security-aag&ts=markdown) *** ** * ** *** ![web proxy](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ngfw/family/full-layer-7-inspection.jpg) ## Web Proxy Over the past two decades, web proxies have become a security mainstay for organizations. As corporate networks expand, the demand for consistent, location-independent security is growing. This means many organizations are adopting converged, cloud-centric architectures. However, many organizations migrating from on-premises to cloud struggle with large structural changes that can hinder business productivity and services. We simplify security for those who use an on-premises proxy by introducing web proxy support for next-generation firewalls. This allows users to modernize their network security without instituting large changes to existing infrastructures. Now, both proxy and firewall admins can leverage a single UI to deploy, manage and operate their firewall, allowing them to provide consistent security and policies across all deployments. We make it simple for organizations to move away from their legacy solutions that can't scale, and give them a way to modernize their proxy architecture and deliver best-in-class security everywhere, all while maintaining interim support for their proxy. Through this platform, organizations can: * Achieve a new standard of consistent, integrated security. * Seamlessly bridge the divide between current and future network architecture. * Significantly enhance operational efficiency. *** ** * ** *** ## Simplify your firewall deployments Simplify and automate onboarding new NGFWs with Zero Touch Provisioning (ZTP). [![white triangle](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/video-play-white.svg)](https://www.paloaltonetworks.com//players.brightcove.net/1050259881001/default_default/index.html?videoId=6112097683001&ts=markdown) ## See what our customers are saying Palo Alto Networks Next-Generation Firewalls are purpose-built with end users in mind. That's why it's their opinions that matter most to us. ![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/case-study/hero-muvi-cinemas-deploys-blockbuster-cybersecurity-with-palo-alto-networks.jpg) ## muvi Cinemas deploys blockbuster cybersecurity with Palo Alto Networks ML-Powered Next-Generation Firewalls, Cortex XDR, Cortex Xpanse, Prisma Cloud, Unit 42, and Cloud-Delivered Security Services ### The Palo Alto Networks portfolio gives us everything we need to combat cybercrime in one best-in-class, integrated stack. ### -- Anas Shehab, Chief Information Officer, muvi Cinemas [Read the case study](https://www.paloaltonetworks.com/customers/muvi-cinemas-deploys-blockbuster-cybersecurity-with-palo-alto-networks?ts=markdown) ![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/case-study/Images-novagroup.jpeg) ## Driving Zero Trust architecture and massive 50% cost savings for NovaGroup ML-Powered Next-Generation Firewall, Threat Protection, GlobalProtect, Advanced URL Filtering, and WildFire ### \[Palo Alto Networks\] demonstrated superior technology and high-quality reference architecture ### -- Trần Phú Nghĩa, Cyber Security Director, NovaGroup [Read the case study](https://www.paloaltonetworks.com/customers/driving-zero-trust-architecture-massive-50-cost-savings-for-novagroup?ts=markdown) ![](https://www.paloaltonetworks.com/content/dam/pan/ja_JP/Images/case-study/hero-university-of-tokyo.jpg) ## University of Tokyo Updates Security for Campus Network with New Hardware NGFW ### The biggest effect of the introduction was that we were able to consolidate the three previously redundant configuration security products into one, greatly streamlining alert management. Because we use Palo Alto Networks' VSYS function that allows you to build instances, there is no big difference from traditional operation management for security personnel who have previously operated individual security products. ### -- Yuji Sekiya, Professor, University of Tokyo [Read the case study](https://www.paloaltonetworks.jp/customers/university-of-tokyo) ![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/case-study/sheffield-hallam-university.jpg) ## Connecting and Safeguarding Students and Staff at Sheffield Hallam University NGFW, Cortex XDR^®^, Cortex XSOAR^®^, Panorama^®^ ### We don't think there's any other solution on the market like Palo Alto Networks. The integration, simplicity of interface, visibility, and reporting outpace anything offered by other vendors. By utilising our existing Palo Alto Networks Next-Generation Firewalls, we are to extend their capabilities by using their portfolio alongside KHIPU Networks as a low-risk, fully interoperable single partner. ### -- Dave Ainscow, Head of Cyber Security, Sheffield Hallam University [Read the case study](https://www.paloaltonetworks.com/customers/sheffield-hallam-university?ts=markdown) ![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/case-study/hero-muvi-cinemas-deploys-blockbuster-cybersecurity-with-palo-alto-networks.jpg) ## muvi Cinemas deploys blockbuster cybersecurity with Palo Alto Networks ML-Powered Next-Generation Firewalls, Cortex XDR, Cortex Xpanse, Prisma Cloud, Unit 42, and Cloud-Delivered Security Services ### The Palo Alto Networks portfolio gives us everything we need to combat cybercrime in one best-in-class, integrated stack. ### -- Anas Shehab, Chief Information Officer, muvi Cinemas [Read the case study](https://www.paloaltonetworks.com/customers/muvi-cinemas-deploys-blockbuster-cybersecurity-with-palo-alto-networks?ts=markdown) ![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/case-study/Images-novagroup.jpeg) ## Driving Zero Trust architecture and massive 50% cost savings for NovaGroup ML-Powered Next-Generation Firewall, Threat Protection, GlobalProtect, Advanced URL Filtering, and WildFire ### \[Palo Alto Networks\] demonstrated superior technology and high-quality reference architecture ### -- Trần Phú Nghĩa, Cyber Security Director, NovaGroup [Read the case study](https://www.paloaltonetworks.com/customers/driving-zero-trust-architecture-massive-50-cost-savings-for-novagroup?ts=markdown) ![](https://www.paloaltonetworks.com/content/dam/pan/ja_JP/Images/case-study/hero-university-of-tokyo.jpg) ## University of Tokyo Updates Security for Campus Network with New Hardware NGFW ### The biggest effect of the introduction was that we were able to consolidate the three previously redundant configuration security products into one, greatly streamlining alert management. Because we use Palo Alto Networks' VSYS function that allows you to build instances, there is no big difference from traditional operation management for security personnel who have previously operated individual security products. ### -- Yuji Sekiya, Professor, University of Tokyo [Read the case study](https://www.paloaltonetworks.jp/customers/university-of-tokyo) ![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/case-study/sheffield-hallam-university.jpg) ## Connecting and Safeguarding Students and Staff at Sheffield Hallam University NGFW, Cortex XDR^®^, Cortex XSOAR^®^, Panorama^®^ ### We don't think there's any other solution on the market like Palo Alto Networks. The integration, simplicity of interface, visibility, and reporting outpace anything offered by other vendors. By utilising our existing Palo Alto Networks Next-Generation Firewalls, we are to extend their capabilities by using their portfolio alongside KHIPU Networks as a low-risk, fully interoperable single partner. ### -- Dave Ainscow, Head of Cyber Security, Sheffield Hallam University [Read the case study](https://www.paloaltonetworks.com/customers/sheffield-hallam-university?ts=markdown) [Become an advocate](https://start.paloaltonetworks.com/sase-advocacy-contact-us.html) RECOMMENDED PRODUCTS ## Expand your network protection CLOUD-DELIVERED SECURITY SERVICES Add security tailored to your business, including threat protection, web protection, data loss prevention, IoT security and SaaS security. [Learn more](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown) STRATA CLOUD MANAGER Prevent network disruptions, strengthen security and unify management and operations across NGFW and SASE. [Learn more](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown) PAN-OS Leverage the software brain inside every firewall -- with App-ID^™^, User-ID^™^, Device-ID^™^, decryption and more. [Learn more](https://www.paloaltonetworks.com/network-security/pan-os?ts=markdown) ## Become an expert in network security Dive deeper into the technology behind our Next-Generation Firewalls by taking a curated journey through relevant resources we've collected from our site. [Become an expert](https://www.paloaltonetworks.com/engage/secure_your_enterprise/tei-2024-report) ## Meet with us Contact our team of NGFW experts today. We want to meet with you to help keep your network secure. First Name Last Name Email Company Job LevelJob Level Job RoleJob Role Phone CountryCountry StateState ProvinceProvince Zip Code Department Let us know how we can help... Sign me up to receive news, product updates, sales outreach, event information and special offers about Palo Alto Networks and its partners. By submitting this form, I understand my personal data will be processed in accordance with [Palo Alto Networks Privacy Statement](https://www.paloaltonetworks.com/legal-notices/privacy?ts=markdown) and [Terms of Use.](https://www.paloaltonetworks.com/legal-notices/terms-of-use?ts=markdown) This site is protected by reCAPTCHA and the Google [Privacy Policy](https://policies.google.com/privacy) and [Terms of Service](https://policies.google.com/terms) apply. Contact us ## THANK YOU! A Palo Alto Networks specialist will reach out to you shortly. We look forward to connecting with you! ![Meet with us](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/public-sector-redesign/federal-creative/11-meet-us-min.jpg) {#footer} ## Products and Services * [AI-Powered Network Security Platform](https://www.paloaltonetworks.com/network-security?ts=markdown) * [Secure AI by Design](https://www.paloaltonetworks.com/precision-ai-security/secure-ai-by-design?ts=markdown) * [Prisma AIRS](https://www.paloaltonetworks.com/prisma/prisma-ai-runtime-security?ts=markdown) * [AI Access Security](https://www.paloaltonetworks.com/sase/ai-access-security?ts=markdown) * [Cloud Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown) * [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown) * [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown) * [Advanced WildFire](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown) * [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown) * [Enterprise Data Loss Prevention](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) * [Enterprise IoT Security](https://www.paloaltonetworks.com/network-security/enterprise-device-security?ts=markdown) * [Medical IoT Security](https://www.paloaltonetworks.com/network-security/medical-device-security?ts=markdown) * [Industrial OT Security](https://www.paloaltonetworks.com/network-security/medical-device-security?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [Next-Generation Firewalls](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown) * [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown) * [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown) * [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown) * [SD-WAN for NGFW](https://www.paloaltonetworks.com/network-security/sd-wan-subscription?ts=markdown) * [PAN-OS](https://www.paloaltonetworks.com/network-security/pan-os?ts=markdown) * [Panorama](https://www.paloaltonetworks.com/network-security/panorama?ts=markdown) * [Secure Access Service Edge](https://www.paloaltonetworks.com/sase?ts=markdown) * [Prisma SASE](https://www.paloaltonetworks.com/sase?ts=markdown) * [Application Acceleration](https://www.paloaltonetworks.com/sase/app-acceleration?ts=markdown) * [Autonomous Digital Experience Management](https://www.paloaltonetworks.com/sase/adem?ts=markdown) * [Enterprise DLP](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) * [Prisma Access](https://www.paloaltonetworks.com/sase/access?ts=markdown) * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) * [Prisma SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown) * [Remote Browser Isolation](https://www.paloaltonetworks.com/sase/remote-browser-isolation?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [AI-Driven Security Operations Platform](https://www.paloaltonetworks.com/cortex?ts=markdown) * [Cloud Security](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) * [Cortex Cloud](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) * [Application Security](https://www.paloaltonetworks.com/cortex/cloud/application-security?ts=markdown) * [Cloud Posture Security](https://www.paloaltonetworks.com/cortex/cloud/cloud-posture-security?ts=markdown) * [Cloud Runtime Security](https://www.paloaltonetworks.com/cortex/cloud/runtime-security?ts=markdown) * [Prisma Cloud](https://www.paloaltonetworks.com/prisma/cloud?ts=markdown) * [AI-Driven SOC](https://www.paloaltonetworks.com/cortex?ts=markdown) * [Cortex XSIAM](https://www.paloaltonetworks.com/cortex/cortex-xsiam?ts=markdown) * [Cortex XDR](https://www.paloaltonetworks.com/cortex/cortex-xdr?ts=markdown) * [Cortex XSOAR](https://www.paloaltonetworks.com/cortex/cortex-xsoar?ts=markdown) * [Cortex Xpanse](https://www.paloaltonetworks.com/cortex/cortex-xpanse?ts=markdown) * [Unit 42 Managed Detection \& Response](https://www.paloaltonetworks.com/cortex/managed-detection-and-response?ts=markdown) * [Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown) * [Threat Intel and Incident Response Services](https://www.paloaltonetworks.com/unit42?ts=markdown) * [Proactive Assessments](https://www.paloaltonetworks.com/unit42/assess?ts=markdown) * [Incident Response](https://www.paloaltonetworks.com/unit42/respond?ts=markdown) * [Transform Your Security Strategy](https://www.paloaltonetworks.com/unit42/transform?ts=markdown) * [Discover Threat Intelligence](https://www.paloaltonetworks.com/unit42/threat-intelligence-partners?ts=markdown) ## Company * [About Us](https://www.paloaltonetworks.com/about-us?ts=markdown) * [Careers](https://jobs.paloaltonetworks.com/en/) * [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown) * [Corporate Responsibility](https://www.paloaltonetworks.com/about-us/corporate-responsibility?ts=markdown) * [Customers](https://www.paloaltonetworks.com/customers?ts=markdown) * [Investor Relations](https://investors.paloaltonetworks.com/) * [Location](https://www.paloaltonetworks.com/about-us/locations?ts=markdown) * [Newsroom](https://www.paloaltonetworks.com/company/newsroom?ts=markdown) ## Popular Links * [Blog](https://www.paloaltonetworks.com/blog/?ts=markdown) * [Communities](https://www.paloaltonetworks.com/communities?ts=markdown) * [Content Library](https://www.paloaltonetworks.com/resources?ts=markdown) * [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown) * [Event Center](https://events.paloaltonetworks.com/) * [Manage Email Preferences](https://start.paloaltonetworks.com/preference-center) * [Products A-Z](https://www.paloaltonetworks.com/products/products-a-z?ts=markdown) * [Product Certifications](https://www.paloaltonetworks.com/legal-notices/trust-center/compliance?ts=markdown) * [Report a Vulnerability](https://www.paloaltonetworks.com/security-disclosure?ts=markdown) * [Sitemap](https://www.paloaltonetworks.com/sitemap?ts=markdown) * [Tech Docs](https://docs.paloaltonetworks.com/) * [Unit 42](https://unit42.paloaltonetworks.com/) * [Do Not Sell or Share My Personal Information](https://panwedd.exterro.net/portal/dsar.htm?target=panwedd) ![PAN logo](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/pan-logo-dark.svg) * [Privacy](https://www.paloaltonetworks.com/legal-notices/privacy?ts=markdown) * [Trust Center](https://www.paloaltonetworks.com/legal-notices/trust-center?ts=markdown) * [Terms of Use](https://www.paloaltonetworks.com/legal-notices/terms-of-use?ts=markdown) * [Documents](https://www.paloaltonetworks.com/legal?ts=markdown) Copyright © 2025 Palo Alto Networks. All Rights Reserved * [![Youtube](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/youtube-black.svg)](https://www.youtube.com/user/paloaltonetworks) * [![Podcast](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/icons/podcast.svg)](https://www.paloaltonetworks.com/podcasts/threat-vector?ts=markdown) * [![Facebook](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/facebook-black.svg)](https://www.facebook.com/PaloAltoNetworks/) * [![LinkedIn](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/linkedin-black.svg)](https://www.linkedin.com/company/palo-alto-networks) * [![Twitter](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/twitter-x-black.svg)](https://twitter.com/PaloAltoNtwks) * EN Select your language