Standards-based VPN Connectivity.

Secure site-to-site and remote user connectivity is a critical infrastructure component. Every Palo Alto Networks next-generation firewall platform allows you to easily and securely communicate between sites using standards-based IPsec VPN connections. Remote user communications are protected through a rich set of VPN features in our GlobalProtect™ mobile security service products.


Learn more about GlobalProtect Technology.

Secure site-to-site connectivity through IPsec VPN.

Standards-based IPSec VPN connectivity, combined with application visibility and control, protects communications between two or more Palo Alto Networks devices and/or another vendor's IPSec VPN device. Our firewalls support IKEv1 and IKEv2 with either IPv4 or IPv6 to ensure maximum compatibility between you and your partners. For multiple connection sites, ECMP can provide additional redundancy and cost efficiency by balancing sessions over available Internet connections.

Large Scale VPN.

If you have a lot of branch offices or retail stores, you may need to deploy site-to-site VPN across a number of locations. Large Scale VPN automatically configures your key VPN tunnel settings, making it easy for the staff at your branch office to deploy new firewalls. When a new firewall is brought online, it will use an available Internet connection to authenticate with a GlobalProtect Portal and pick up the latest VPN settings to maintain ongoing, secure communications.

Consistent Security Everywhere.

GlobalProtect lets remote users access your network by automatically establishing either an SSL- or IPSec-based VPN connection, depending on the location and configuration. This remote access connection is authenticated through one of several mechanisms: local DB, RADIUS, LDAP, Active Directory, Kerberos or smart cards. Once a secure connection is established, users are protected by the same security policies as your on-site users.

Have questions?
Connect with someone who has answers.
Chat now