1. Packages
  2. Azure Classic
  3. API Docs
  4. paloalto
  5. NextGenerationFirewallVirtualNetworkPanorama

We recommend using Azure Native.

Azure Classic v5.81.0 published on Monday, Jun 24, 2024 by Pulumi


Explore with Pulumi AI

azure logo

We recommend using Azure Native.

Azure Classic v5.81.0 published on Monday, Jun 24, 2024 by Pulumi

    Manages a Palo Alto Next Generation Firewall Virtual Network Panorama.

    Example Usage

    import * as pulumi from "@pulumi/pulumi";
    import * as azure from "@pulumi/azure";
    const example = new azure.core.ResourceGroup("example", {
        name: "example-resource-group",
        location: "westeurope",
    const examplePublicIp = new azure.network.PublicIp("example", {
        name: "example-public-ip",
        location: example.location,
        resourceGroupName: example.name,
        allocationMethod: "Static",
        sku: "Standard",
    const exampleNetworkSecurityGroup = new azure.network.NetworkSecurityGroup("example", {
        name: "example-nsg",
        location: test.location,
        resourceGroupName: test.name,
    const exampleVirtualNetwork = new azure.network.VirtualNetwork("example", {
        name: "example-vnet",
        addressSpaces: [""],
        location: example.location,
        resourceGroupName: example.name,
        tags: {
            environment: "Production",
    const trust = new azure.network.Subnet("trust", {
        name: "example-trust-subnet",
        resourceGroupName: example.name,
        virtualNetworkName: exampleVirtualNetwork.name,
        addressPrefixes: [""],
        delegations: [{
            name: "trusted",
            serviceDelegation: {
                name: "PaloAltoNetworks.Cloudngfw/firewalls",
                actions: ["Microsoft.Network/virtualNetworks/subnets/join/action"],
    const trustSubnetNetworkSecurityGroupAssociation = new azure.network.SubnetNetworkSecurityGroupAssociation("trust", {
        subnetId: trust.id,
        networkSecurityGroupId: exampleNetworkSecurityGroup.id,
    const untrust = new azure.network.Subnet("untrust", {
        name: "example-untrust-subnet",
        resourceGroupName: example.name,
        virtualNetworkName: exampleVirtualNetwork.name,
        addressPrefixes: [""],
        delegations: [{
            name: "untrusted",
            serviceDelegation: {
                name: "PaloAltoNetworks.Cloudngfw/firewalls",
                actions: ["Microsoft.Network/virtualNetworks/subnets/join/action"],
    const untrustSubnetNetworkSecurityGroupAssociation = new azure.network.SubnetNetworkSecurityGroupAssociation("untrust", {
        subnetId: untrust.id,
        networkSecurityGroupId: exampleNetworkSecurityGroup.id,
    const exampleNextGenerationFirewallVirtualNetworkPanorama = new azure.paloalto.NextGenerationFirewallVirtualNetworkPanorama("example", {
        name: "example-ngfwvh",
        resourceGroupName: example.name,
        location: example.location,
        panoramaBase64Config: "e2RnbmFtZTogY25nZnctYXotZXhhbXBsZSwgdHBsbmFtZTogY25nZnctZXhhbXBsZS10ZW1wbGF0ZS1zdGFjaywgZXhhbXBsZS1wYW5vcmFtYS1zZXJ2ZXI6IDE5Mi4xNjguMC4xLCB2bS1hdXRoLWtleTogMDAwMDAwMDAwMDAwMDAwLCBleHBpcnk6IDIwMjQvMDcvMzF9Cg==",
        networkProfile: {
            publicIpAddressIds: [examplePublicIp.id],
            vnetConfiguration: {
                virtualNetworkId: exampleVirtualNetwork.id,
                trustedSubnetId: trust.id,
                untrustedSubnetId: untrust.id,
    import pulumi
    import pulumi_azure as azure
    example = azure.core.ResourceGroup("example",
    example_public_ip = azure.network.PublicIp("example",
    example_network_security_group = azure.network.NetworkSecurityGroup("example",
    example_virtual_network = azure.network.VirtualNetwork("example",
            "environment": "Production",
    trust = azure.network.Subnet("trust",
    trust_subnet_network_security_group_association = azure.network.SubnetNetworkSecurityGroupAssociation("trust",
    untrust = azure.network.Subnet("untrust",
    untrust_subnet_network_security_group_association = azure.network.SubnetNetworkSecurityGroupAssociation("untrust",
    example_next_generation_firewall_virtual_network_panorama = azure.paloalto.NextGenerationFirewallVirtualNetworkPanorama("example",
    package main
    import (
    func main() {
    	pulumi.Run(func(ctx *pulumi.Context) error {
    		example, err := core.NewResourceGroup(ctx, "example", &core.ResourceGroupArgs{
    			Name:     pulumi.String("example-resource-group"),
    			Location: pulumi.String("westeurope"),
    		if err != nil {
    			return err
    		examplePublicIp, err := network.NewPublicIp(ctx, "example", &network.PublicIpArgs{
    			Name:              pulumi.String("example-public-ip"),
    			Location:          example.Location,
    			ResourceGroupName: example.Name,
    			AllocationMethod:  pulumi.String("Static"),
    			Sku:               pulumi.String("Standard"),
    		if err != nil {
    			return err
    		exampleNetworkSecurityGroup, err := network.NewNetworkSecurityGroup(ctx, "example", &network.NetworkSecurityGroupArgs{
    			Name:              pulumi.String("example-nsg"),
    			Location:          pulumi.Any(test.Location),
    			ResourceGroupName: pulumi.Any(test.Name),
    		if err != nil {
    			return err
    		exampleVirtualNetwork, err := network.NewVirtualNetwork(ctx, "example", &network.VirtualNetworkArgs{
    			Name: pulumi.String("example-vnet"),
    			AddressSpaces: pulumi.StringArray{
    			Location:          example.Location,
    			ResourceGroupName: example.Name,
    			Tags: pulumi.StringMap{
    				"environment": pulumi.String("Production"),
    		if err != nil {
    			return err
    		trust, err := network.NewSubnet(ctx, "trust", &network.SubnetArgs{
    			Name:               pulumi.String("example-trust-subnet"),
    			ResourceGroupName:  example.Name,
    			VirtualNetworkName: exampleVirtualNetwork.Name,
    			AddressPrefixes: pulumi.StringArray{
    			Delegations: network.SubnetDelegationArray{
    					Name: pulumi.String("trusted"),
    					ServiceDelegation: &network.SubnetDelegationServiceDelegationArgs{
    						Name: pulumi.String("PaloAltoNetworks.Cloudngfw/firewalls"),
    						Actions: pulumi.StringArray{
    		if err != nil {
    			return err
    		_, err = network.NewSubnetNetworkSecurityGroupAssociation(ctx, "trust", &network.SubnetNetworkSecurityGroupAssociationArgs{
    			SubnetId:               trust.ID(),
    			NetworkSecurityGroupId: exampleNetworkSecurityGroup.ID(),
    		if err != nil {
    			return err
    		untrust, err := network.NewSubnet(ctx, "untrust", &network.SubnetArgs{
    			Name:               pulumi.String("example-untrust-subnet"),
    			ResourceGroupName:  example.Name,
    			VirtualNetworkName: exampleVirtualNetwork.Name,
    			AddressPrefixes: pulumi.StringArray{
    			Delegations: network.SubnetDelegationArray{
    					Name: pulumi.String("untrusted"),
    					ServiceDelegation: &network.SubnetDelegationServiceDelegationArgs{
    						Name: pulumi.String("PaloAltoNetworks.Cloudngfw/firewalls"),
    						Actions: pulumi.StringArray{
    		if err != nil {
    			return err
    		_, err = network.NewSubnetNetworkSecurityGroupAssociation(ctx, "untrust", &network.SubnetNetworkSecurityGroupAssociationArgs{
    			SubnetId:               untrust.ID(),
    			NetworkSecurityGroupId: exampleNetworkSecurityGroup.ID(),
    		if err != nil {
    			return err
    		_, err = paloalto.NewNextGenerationFirewallVirtualNetworkPanorama(ctx, "example", &paloalto.NextGenerationFirewallVirtualNetworkPanoramaArgs{
    			Name:                 pulumi.String("example-ngfwvh"),
    			ResourceGroupName:    example.Name,
    			Location:             example.Location,
    			PanoramaBase64Config: pulumi.String("e2RnbmFtZTogY25nZnctYXotZXhhbXBsZSwgdHBsbmFtZTogY25nZnctZXhhbXBsZS10ZW1wbGF0ZS1zdGFjaywgZXhhbXBsZS1wYW5vcmFtYS1zZXJ2ZXI6IDE5Mi4xNjguMC4xLCB2bS1hdXRoLWtleTogMDAwMDAwMDAwMDAwMDAwLCBleHBpcnk6IDIwMjQvMDcvMzF9Cg=="),
    			NetworkProfile: &paloalto.NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileArgs{
    				PublicIpAddressIds: pulumi.StringArray{
    				VnetConfiguration: &paloalto.NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileVnetConfigurationArgs{
    					VirtualNetworkId:  exampleVirtualNetwork.ID(),
    					TrustedSubnetId:   trust.ID(),
    					UntrustedSubnetId: untrust.ID(),
    		if err != nil {
    			return err
    		return nil
    using System.Collections.Generic;
    using System.Linq;
    using Pulumi;
    using Azure = Pulumi.Azure;
    return await Deployment.RunAsync(() => 
        var example = new Azure.Core.ResourceGroup("example", new()
            Name = "example-resource-group",
            Location = "westeurope",
        var examplePublicIp = new Azure.Network.PublicIp("example", new()
            Name = "example-public-ip",
            Location = example.Location,
            ResourceGroupName = example.Name,
            AllocationMethod = "Static",
            Sku = "Standard",
        var exampleNetworkSecurityGroup = new Azure.Network.NetworkSecurityGroup("example", new()
            Name = "example-nsg",
            Location = test.Location,
            ResourceGroupName = test.Name,
        var exampleVirtualNetwork = new Azure.Network.VirtualNetwork("example", new()
            Name = "example-vnet",
            AddressSpaces = new[]
            Location = example.Location,
            ResourceGroupName = example.Name,
            Tags = 
                { "environment", "Production" },
        var trust = new Azure.Network.Subnet("trust", new()
            Name = "example-trust-subnet",
            ResourceGroupName = example.Name,
            VirtualNetworkName = exampleVirtualNetwork.Name,
            AddressPrefixes = new[]
            Delegations = new[]
                new Azure.Network.Inputs.SubnetDelegationArgs
                    Name = "trusted",
                    ServiceDelegation = new Azure.Network.Inputs.SubnetDelegationServiceDelegationArgs
                        Name = "PaloAltoNetworks.Cloudngfw/firewalls",
                        Actions = new[]
        var trustSubnetNetworkSecurityGroupAssociation = new Azure.Network.SubnetNetworkSecurityGroupAssociation("trust", new()
            SubnetId = trust.Id,
            NetworkSecurityGroupId = exampleNetworkSecurityGroup.Id,
        var untrust = new Azure.Network.Subnet("untrust", new()
            Name = "example-untrust-subnet",
            ResourceGroupName = example.Name,
            VirtualNetworkName = exampleVirtualNetwork.Name,
            AddressPrefixes = new[]
            Delegations = new[]
                new Azure.Network.Inputs.SubnetDelegationArgs
                    Name = "untrusted",
                    ServiceDelegation = new Azure.Network.Inputs.SubnetDelegationServiceDelegationArgs
                        Name = "PaloAltoNetworks.Cloudngfw/firewalls",
                        Actions = new[]
        var untrustSubnetNetworkSecurityGroupAssociation = new Azure.Network.SubnetNetworkSecurityGroupAssociation("untrust", new()
            SubnetId = untrust.Id,
            NetworkSecurityGroupId = exampleNetworkSecurityGroup.Id,
        var exampleNextGenerationFirewallVirtualNetworkPanorama = new Azure.PaloAlto.NextGenerationFirewallVirtualNetworkPanorama("example", new()
            Name = "example-ngfwvh",
            ResourceGroupName = example.Name,
            Location = example.Location,
            PanoramaBase64Config = "e2RnbmFtZTogY25nZnctYXotZXhhbXBsZSwgdHBsbmFtZTogY25nZnctZXhhbXBsZS10ZW1wbGF0ZS1zdGFjaywgZXhhbXBsZS1wYW5vcmFtYS1zZXJ2ZXI6IDE5Mi4xNjguMC4xLCB2bS1hdXRoLWtleTogMDAwMDAwMDAwMDAwMDAwLCBleHBpcnk6IDIwMjQvMDcvMzF9Cg==",
            NetworkProfile = new Azure.PaloAlto.Inputs.NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileArgs
                PublicIpAddressIds = new[]
                VnetConfiguration = new Azure.PaloAlto.Inputs.NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileVnetConfigurationArgs
                    VirtualNetworkId = exampleVirtualNetwork.Id,
                    TrustedSubnetId = trust.Id,
                    UntrustedSubnetId = untrust.Id,
    package generated_program;
    import com.pulumi.Context;
    import com.pulumi.Pulumi;
    import com.pulumi.core.Output;
    import com.pulumi.azure.core.ResourceGroup;
    import com.pulumi.azure.core.ResourceGroupArgs;
    import com.pulumi.azure.network.PublicIp;
    import com.pulumi.azure.network.PublicIpArgs;
    import com.pulumi.azure.network.NetworkSecurityGroup;
    import com.pulumi.azure.network.NetworkSecurityGroupArgs;
    import com.pulumi.azure.network.VirtualNetwork;
    import com.pulumi.azure.network.VirtualNetworkArgs;
    import com.pulumi.azure.network.Subnet;
    import com.pulumi.azure.network.SubnetArgs;
    import com.pulumi.azure.network.inputs.SubnetDelegationArgs;
    import com.pulumi.azure.network.inputs.SubnetDelegationServiceDelegationArgs;
    import com.pulumi.azure.network.SubnetNetworkSecurityGroupAssociation;
    import com.pulumi.azure.network.SubnetNetworkSecurityGroupAssociationArgs;
    import com.pulumi.azure.paloalto.NextGenerationFirewallVirtualNetworkPanorama;
    import com.pulumi.azure.paloalto.NextGenerationFirewallVirtualNetworkPanoramaArgs;
    import com.pulumi.azure.paloalto.inputs.NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileArgs;
    import com.pulumi.azure.paloalto.inputs.NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileVnetConfigurationArgs;
    import java.util.List;
    import java.util.ArrayList;
    import java.util.Map;
    import java.io.File;
    import java.nio.file.Files;
    import java.nio.file.Paths;
    public class App {
        public static void main(String[] args) {
        public static void stack(Context ctx) {
            var example = new ResourceGroup("example", ResourceGroupArgs.builder()
            var examplePublicIp = new PublicIp("examplePublicIp", PublicIpArgs.builder()
            var exampleNetworkSecurityGroup = new NetworkSecurityGroup("exampleNetworkSecurityGroup", NetworkSecurityGroupArgs.builder()
            var exampleVirtualNetwork = new VirtualNetwork("exampleVirtualNetwork", VirtualNetworkArgs.builder()
                .tags(Map.of("environment", "Production"))
            var trust = new Subnet("trust", SubnetArgs.builder()
            var trustSubnetNetworkSecurityGroupAssociation = new SubnetNetworkSecurityGroupAssociation("trustSubnetNetworkSecurityGroupAssociation", SubnetNetworkSecurityGroupAssociationArgs.builder()
            var untrust = new Subnet("untrust", SubnetArgs.builder()
            var untrustSubnetNetworkSecurityGroupAssociation = new SubnetNetworkSecurityGroupAssociation("untrustSubnetNetworkSecurityGroupAssociation", SubnetNetworkSecurityGroupAssociationArgs.builder()
            var exampleNextGenerationFirewallVirtualNetworkPanorama = new NextGenerationFirewallVirtualNetworkPanorama("exampleNextGenerationFirewallVirtualNetworkPanorama", NextGenerationFirewallVirtualNetworkPanoramaArgs.builder()
        type: azure:core:ResourceGroup
          name: example-resource-group
          location: westeurope
        type: azure:network:PublicIp
        name: example
          name: example-public-ip
          location: ${example.location}
          resourceGroupName: ${example.name}
          allocationMethod: Static
          sku: Standard
        type: azure:network:NetworkSecurityGroup
        name: example
          name: example-nsg
          location: ${test.location}
          resourceGroupName: ${test.name}
        type: azure:network:VirtualNetwork
        name: example
          name: example-vnet
          location: ${example.location}
          resourceGroupName: ${example.name}
            environment: Production
        type: azure:network:Subnet
          name: example-trust-subnet
          resourceGroupName: ${example.name}
          virtualNetworkName: ${exampleVirtualNetwork.name}
            - name: trusted
                name: PaloAltoNetworks.Cloudngfw/firewalls
                  - Microsoft.Network/virtualNetworks/subnets/join/action
        type: azure:network:SubnetNetworkSecurityGroupAssociation
        name: trust
          subnetId: ${trust.id}
          networkSecurityGroupId: ${exampleNetworkSecurityGroup.id}
        type: azure:network:Subnet
          name: example-untrust-subnet
          resourceGroupName: ${example.name}
          virtualNetworkName: ${exampleVirtualNetwork.name}
            - name: untrusted
                name: PaloAltoNetworks.Cloudngfw/firewalls
                  - Microsoft.Network/virtualNetworks/subnets/join/action
        type: azure:network:SubnetNetworkSecurityGroupAssociation
        name: untrust
          subnetId: ${untrust.id}
          networkSecurityGroupId: ${exampleNetworkSecurityGroup.id}
        type: azure:paloalto:NextGenerationFirewallVirtualNetworkPanorama
        name: example
          name: example-ngfwvh
          resourceGroupName: ${example.name}
          location: ${example.location}
          panoramaBase64Config: e2RnbmFtZTogY25nZnctYXotZXhhbXBsZSwgdHBsbmFtZTogY25nZnctZXhhbXBsZS10ZW1wbGF0ZS1zdGFjaywgZXhhbXBsZS1wYW5vcmFtYS1zZXJ2ZXI6IDE5Mi4xNjguMC4xLCB2bS1hdXRoLWtleTogMDAwMDAwMDAwMDAwMDAwLCBleHBpcnk6IDIwMjQvMDcvMzF9Cg==
              - ${examplePublicIp.id}
              virtualNetworkId: ${exampleVirtualNetwork.id}
              trustedSubnetId: ${trust.id}
              untrustedSubnetId: ${untrust.id}

    Create NextGenerationFirewallVirtualNetworkPanorama Resource

    Resources are created with functions called constructors. To learn more about declaring and configuring resources, see Resources.

    Constructor syntax

    new NextGenerationFirewallVirtualNetworkPanorama(name: string, args: NextGenerationFirewallVirtualNetworkPanoramaArgs, opts?: CustomResourceOptions);
    def NextGenerationFirewallVirtualNetworkPanorama(resource_name: str,
                                                     args: NextGenerationFirewallVirtualNetworkPanoramaArgs,
                                                     opts: Optional[ResourceOptions] = None)
    def NextGenerationFirewallVirtualNetworkPanorama(resource_name: str,
                                                     opts: Optional[ResourceOptions] = None,
                                                     network_profile: Optional[NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileArgs] = None,
                                                     panorama_base64_config: Optional[str] = None,
                                                     resource_group_name: Optional[str] = None,
                                                     destination_nats: Optional[Sequence[NextGenerationFirewallVirtualNetworkPanoramaDestinationNatArgs]] = None,
                                                     dns_settings: Optional[NextGenerationFirewallVirtualNetworkPanoramaDnsSettingsArgs] = None,
                                                     location: Optional[str] = None,
                                                     name: Optional[str] = None,
                                                     tags: Optional[Mapping[str, str]] = None)
    func NewNextGenerationFirewallVirtualNetworkPanorama(ctx *Context, name string, args NextGenerationFirewallVirtualNetworkPanoramaArgs, opts ...ResourceOption) (*NextGenerationFirewallVirtualNetworkPanorama, error)
    public NextGenerationFirewallVirtualNetworkPanorama(string name, NextGenerationFirewallVirtualNetworkPanoramaArgs args, CustomResourceOptions? opts = null)
    public NextGenerationFirewallVirtualNetworkPanorama(String name, NextGenerationFirewallVirtualNetworkPanoramaArgs args)
    public NextGenerationFirewallVirtualNetworkPanorama(String name, NextGenerationFirewallVirtualNetworkPanoramaArgs args, CustomResourceOptions options)
    type: azure:paloalto:NextGenerationFirewallVirtualNetworkPanorama
    properties: # The arguments to resource properties.
    options: # Bag of options to control resource's behavior.


    name string
    The unique name of the resource.
    args NextGenerationFirewallVirtualNetworkPanoramaArgs
    The arguments to resource properties.
    opts CustomResourceOptions
    Bag of options to control resource's behavior.
    resource_name str
    The unique name of the resource.
    args NextGenerationFirewallVirtualNetworkPanoramaArgs
    The arguments to resource properties.
    opts ResourceOptions
    Bag of options to control resource's behavior.
    ctx Context
    Context object for the current deployment.
    name string
    The unique name of the resource.
    args NextGenerationFirewallVirtualNetworkPanoramaArgs
    The arguments to resource properties.
    opts ResourceOption
    Bag of options to control resource's behavior.
    name string
    The unique name of the resource.
    args NextGenerationFirewallVirtualNetworkPanoramaArgs
    The arguments to resource properties.
    opts CustomResourceOptions
    Bag of options to control resource's behavior.
    name String
    The unique name of the resource.
    args NextGenerationFirewallVirtualNetworkPanoramaArgs
    The arguments to resource properties.
    options CustomResourceOptions
    Bag of options to control resource's behavior.

    Constructor example

    The following reference example uses placeholder values for all input properties.

    var nextGenerationFirewallVirtualNetworkPanoramaResource = new Azure.PaloAlto.NextGenerationFirewallVirtualNetworkPanorama("nextGenerationFirewallVirtualNetworkPanoramaResource", new()
        NetworkProfile = new Azure.PaloAlto.Inputs.NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileArgs
            PublicIpAddressIds = new[]
            VnetConfiguration = new Azure.PaloAlto.Inputs.NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileVnetConfigurationArgs
                VirtualNetworkId = "string",
                IpOfTrustForUserDefinedRoutes = "string",
                TrustedSubnetId = "string",
                UntrustedSubnetId = "string",
            EgressNatIpAddressIds = new[]
            EgressNatIpAddresses = new[]
            PublicIpAddresses = new[]
            TrustedAddressRanges = new[]
        PanoramaBase64Config = "string",
        ResourceGroupName = "string",
        DestinationNats = new[]
            new Azure.PaloAlto.Inputs.NextGenerationFirewallVirtualNetworkPanoramaDestinationNatArgs
                Name = "string",
                Protocol = "string",
                BackendConfig = new Azure.PaloAlto.Inputs.NextGenerationFirewallVirtualNetworkPanoramaDestinationNatBackendConfigArgs
                    Port = 0,
                    PublicIpAddress = "string",
                FrontendConfig = new Azure.PaloAlto.Inputs.NextGenerationFirewallVirtualNetworkPanoramaDestinationNatFrontendConfigArgs
                    Port = 0,
                    PublicIpAddressId = "string",
        DnsSettings = new Azure.PaloAlto.Inputs.NextGenerationFirewallVirtualNetworkPanoramaDnsSettingsArgs
            AzureDnsServers = new[]
            DnsServers = new[]
            UseAzureDns = false,
        Location = "string",
        Name = "string",
        Tags = 
            { "string", "string" },
    example, err := paloalto.NewNextGenerationFirewallVirtualNetworkPanorama(ctx, "nextGenerationFirewallVirtualNetworkPanoramaResource", &paloalto.NextGenerationFirewallVirtualNetworkPanoramaArgs{
    	NetworkProfile: &paloalto.NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileArgs{
    		PublicIpAddressIds: pulumi.StringArray{
    		VnetConfiguration: &paloalto.NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileVnetConfigurationArgs{
    			VirtualNetworkId:              pulumi.String("string"),
    			IpOfTrustForUserDefinedRoutes: pulumi.String("string"),
    			TrustedSubnetId:               pulumi.String("string"),
    			UntrustedSubnetId:             pulumi.String("string"),
    		EgressNatIpAddressIds: pulumi.StringArray{
    		EgressNatIpAddresses: pulumi.StringArray{
    		PublicIpAddresses: pulumi.StringArray{
    		TrustedAddressRanges: pulumi.StringArray{
    	PanoramaBase64Config: pulumi.String("string"),
    	ResourceGroupName:    pulumi.String("string"),
    	DestinationNats: paloalto.NextGenerationFirewallVirtualNetworkPanoramaDestinationNatArray{
    			Name:     pulumi.String("string"),
    			Protocol: pulumi.String("string"),
    			BackendConfig: &paloalto.NextGenerationFirewallVirtualNetworkPanoramaDestinationNatBackendConfigArgs{
    				Port:            pulumi.Int(0),
    				PublicIpAddress: pulumi.String("string"),
    			FrontendConfig: &paloalto.NextGenerationFirewallVirtualNetworkPanoramaDestinationNatFrontendConfigArgs{
    				Port:              pulumi.Int(0),
    				PublicIpAddressId: pulumi.String("string"),
    	DnsSettings: &paloalto.NextGenerationFirewallVirtualNetworkPanoramaDnsSettingsArgs{
    		AzureDnsServers: pulumi.StringArray{
    		DnsServers: pulumi.StringArray{
    		UseAzureDns: pulumi.Bool(false),
    	Location: pulumi.String("string"),
    	Name:     pulumi.String("string"),
    	Tags: pulumi.StringMap{
    		"string": pulumi.String("string"),
    var nextGenerationFirewallVirtualNetworkPanoramaResource = new NextGenerationFirewallVirtualNetworkPanorama("nextGenerationFirewallVirtualNetworkPanoramaResource", NextGenerationFirewallVirtualNetworkPanoramaArgs.builder()
        .tags(Map.of("string", "string"))
    next_generation_firewall_virtual_network_panorama_resource = azure.paloalto.NextGenerationFirewallVirtualNetworkPanorama("nextGenerationFirewallVirtualNetworkPanoramaResource",
            "string": "string",
    const nextGenerationFirewallVirtualNetworkPanoramaResource = new azure.paloalto.NextGenerationFirewallVirtualNetworkPanorama("nextGenerationFirewallVirtualNetworkPanoramaResource", {
        networkProfile: {
            publicIpAddressIds: ["string"],
            vnetConfiguration: {
                virtualNetworkId: "string",
                ipOfTrustForUserDefinedRoutes: "string",
                trustedSubnetId: "string",
                untrustedSubnetId: "string",
            egressNatIpAddressIds: ["string"],
            egressNatIpAddresses: ["string"],
            publicIpAddresses: ["string"],
            trustedAddressRanges: ["string"],
        panoramaBase64Config: "string",
        resourceGroupName: "string",
        destinationNats: [{
            name: "string",
            protocol: "string",
            backendConfig: {
                port: 0,
                publicIpAddress: "string",
            frontendConfig: {
                port: 0,
                publicIpAddressId: "string",
        dnsSettings: {
            azureDnsServers: ["string"],
            dnsServers: ["string"],
            useAzureDns: false,
        location: "string",
        name: "string",
        tags: {
            string: "string",
    type: azure:paloalto:NextGenerationFirewallVirtualNetworkPanorama
            - backendConfig:
                port: 0
                publicIpAddress: string
                port: 0
                publicIpAddressId: string
              name: string
              protocol: string
                - string
                - string
            useAzureDns: false
        location: string
        name: string
                - string
                - string
                - string
                - string
                - string
                ipOfTrustForUserDefinedRoutes: string
                trustedSubnetId: string
                untrustedSubnetId: string
                virtualNetworkId: string
        panoramaBase64Config: string
        resourceGroupName: string
            string: string

    NextGenerationFirewallVirtualNetworkPanorama Resource Properties

    To learn more about resource properties and how to use them, see Inputs and Outputs in the Architecture and Concepts docs.


    The NextGenerationFirewallVirtualNetworkPanorama resource accepts the following input properties:

    NetworkProfile NextGenerationFirewallVirtualNetworkPanoramaNetworkProfile
    A network_profile block as defined below.
    PanoramaBase64Config string
    The base64 encoded configuration registration string as defined by your Panorama Server for your Cloud Device Group.
    ResourceGroupName string
    The name of the Resource Group where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    DestinationNats List<NextGenerationFirewallVirtualNetworkPanoramaDestinationNat>
    One or more destination_nat blocks as defined below.
    DnsSettings NextGenerationFirewallVirtualNetworkPanoramaDnsSettings
    A dns_settings block as defined below.
    Location string
    The Azure Region where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    Name string
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    Tags Dictionary<string, string>
    A mapping of tags which should be assigned to the Palo Alto Next Generation Firewall Virtual Network Panorama.
    NetworkProfile NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileArgs
    A network_profile block as defined below.
    PanoramaBase64Config string
    The base64 encoded configuration registration string as defined by your Panorama Server for your Cloud Device Group.
    ResourceGroupName string
    The name of the Resource Group where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    DestinationNats []NextGenerationFirewallVirtualNetworkPanoramaDestinationNatArgs
    One or more destination_nat blocks as defined below.
    DnsSettings NextGenerationFirewallVirtualNetworkPanoramaDnsSettingsArgs
    A dns_settings block as defined below.
    Location string
    The Azure Region where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    Name string
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    Tags map[string]string
    A mapping of tags which should be assigned to the Palo Alto Next Generation Firewall Virtual Network Panorama.
    networkProfile NextGenerationFirewallVirtualNetworkPanoramaNetworkProfile
    A network_profile block as defined below.
    panoramaBase64Config String
    The base64 encoded configuration registration string as defined by your Panorama Server for your Cloud Device Group.
    resourceGroupName String
    The name of the Resource Group where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    destinationNats List<NextGenerationFirewallVirtualNetworkPanoramaDestinationNat>
    One or more destination_nat blocks as defined below.
    dnsSettings NextGenerationFirewallVirtualNetworkPanoramaDnsSettings
    A dns_settings block as defined below.
    location String
    The Azure Region where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    name String
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    tags Map<String,String>
    A mapping of tags which should be assigned to the Palo Alto Next Generation Firewall Virtual Network Panorama.
    networkProfile NextGenerationFirewallVirtualNetworkPanoramaNetworkProfile
    A network_profile block as defined below.
    panoramaBase64Config string
    The base64 encoded configuration registration string as defined by your Panorama Server for your Cloud Device Group.
    resourceGroupName string
    The name of the Resource Group where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    destinationNats NextGenerationFirewallVirtualNetworkPanoramaDestinationNat[]
    One or more destination_nat blocks as defined below.
    dnsSettings NextGenerationFirewallVirtualNetworkPanoramaDnsSettings
    A dns_settings block as defined below.
    location string
    The Azure Region where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    name string
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    tags {[key: string]: string}
    A mapping of tags which should be assigned to the Palo Alto Next Generation Firewall Virtual Network Panorama.
    network_profile NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileArgs
    A network_profile block as defined below.
    panorama_base64_config str
    The base64 encoded configuration registration string as defined by your Panorama Server for your Cloud Device Group.
    resource_group_name str
    The name of the Resource Group where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    destination_nats Sequence[NextGenerationFirewallVirtualNetworkPanoramaDestinationNatArgs]
    One or more destination_nat blocks as defined below.
    dns_settings NextGenerationFirewallVirtualNetworkPanoramaDnsSettingsArgs
    A dns_settings block as defined below.
    location str
    The Azure Region where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    name str
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    tags Mapping[str, str]
    A mapping of tags which should be assigned to the Palo Alto Next Generation Firewall Virtual Network Panorama.
    networkProfile Property Map
    A network_profile block as defined below.
    panoramaBase64Config String
    The base64 encoded configuration registration string as defined by your Panorama Server for your Cloud Device Group.
    resourceGroupName String
    The name of the Resource Group where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    destinationNats List<Property Map>
    One or more destination_nat blocks as defined below.
    dnsSettings Property Map
    A dns_settings block as defined below.
    location String
    The Azure Region where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    name String
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    tags Map<String>
    A mapping of tags which should be assigned to the Palo Alto Next Generation Firewall Virtual Network Panorama.


    All input properties are implicitly available as output properties. Additionally, the NextGenerationFirewallVirtualNetworkPanorama resource produces the following output properties:

    Id string
    The provider-assigned unique ID for this managed resource.
    Panoramas List<NextGenerationFirewallVirtualNetworkPanoramaPanorama>
    A panorama block as defined below.
    Id string
    The provider-assigned unique ID for this managed resource.
    Panoramas []NextGenerationFirewallVirtualNetworkPanoramaPanorama
    A panorama block as defined below.
    id String
    The provider-assigned unique ID for this managed resource.
    panoramas List<NextGenerationFirewallVirtualNetworkPanoramaPanorama>
    A panorama block as defined below.
    id string
    The provider-assigned unique ID for this managed resource.
    panoramas NextGenerationFirewallVirtualNetworkPanoramaPanorama[]
    A panorama block as defined below.
    id str
    The provider-assigned unique ID for this managed resource.
    panoramas Sequence[NextGenerationFirewallVirtualNetworkPanoramaPanorama]
    A panorama block as defined below.
    id String
    The provider-assigned unique ID for this managed resource.
    panoramas List<Property Map>
    A panorama block as defined below.

    Look up Existing NextGenerationFirewallVirtualNetworkPanorama Resource

    Get an existing NextGenerationFirewallVirtualNetworkPanorama resource’s state with the given name, ID, and optional extra properties used to qualify the lookup.

    public static get(name: string, id: Input<ID>, state?: NextGenerationFirewallVirtualNetworkPanoramaState, opts?: CustomResourceOptions): NextGenerationFirewallVirtualNetworkPanorama
    def get(resource_name: str,
            id: str,
            opts: Optional[ResourceOptions] = None,
            destination_nats: Optional[Sequence[NextGenerationFirewallVirtualNetworkPanoramaDestinationNatArgs]] = None,
            dns_settings: Optional[NextGenerationFirewallVirtualNetworkPanoramaDnsSettingsArgs] = None,
            location: Optional[str] = None,
            name: Optional[str] = None,
            network_profile: Optional[NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileArgs] = None,
            panorama_base64_config: Optional[str] = None,
            panoramas: Optional[Sequence[NextGenerationFirewallVirtualNetworkPanoramaPanoramaArgs]] = None,
            resource_group_name: Optional[str] = None,
            tags: Optional[Mapping[str, str]] = None) -> NextGenerationFirewallVirtualNetworkPanorama
    func GetNextGenerationFirewallVirtualNetworkPanorama(ctx *Context, name string, id IDInput, state *NextGenerationFirewallVirtualNetworkPanoramaState, opts ...ResourceOption) (*NextGenerationFirewallVirtualNetworkPanorama, error)
    public static NextGenerationFirewallVirtualNetworkPanorama Get(string name, Input<string> id, NextGenerationFirewallVirtualNetworkPanoramaState? state, CustomResourceOptions? opts = null)
    public static NextGenerationFirewallVirtualNetworkPanorama get(String name, Output<String> id, NextGenerationFirewallVirtualNetworkPanoramaState state, CustomResourceOptions options)
    Resource lookup is not supported in YAML
    The unique name of the resulting resource.
    The unique provider ID of the resource to lookup.
    Any extra arguments used during the lookup.
    A bag of options that control this resource's behavior.
    The unique name of the resulting resource.
    The unique provider ID of the resource to lookup.
    The unique name of the resulting resource.
    The unique provider ID of the resource to lookup.
    Any extra arguments used during the lookup.
    A bag of options that control this resource's behavior.
    The unique name of the resulting resource.
    The unique provider ID of the resource to lookup.
    Any extra arguments used during the lookup.
    A bag of options that control this resource's behavior.
    The unique name of the resulting resource.
    The unique provider ID of the resource to lookup.
    Any extra arguments used during the lookup.
    A bag of options that control this resource's behavior.
    The following state arguments are supported:
    DestinationNats List<NextGenerationFirewallVirtualNetworkPanoramaDestinationNat>
    One or more destination_nat blocks as defined below.
    DnsSettings NextGenerationFirewallVirtualNetworkPanoramaDnsSettings
    A dns_settings block as defined below.
    Location string
    The Azure Region where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    Name string
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    NetworkProfile NextGenerationFirewallVirtualNetworkPanoramaNetworkProfile
    A network_profile block as defined below.
    PanoramaBase64Config string
    The base64 encoded configuration registration string as defined by your Panorama Server for your Cloud Device Group.
    Panoramas List<NextGenerationFirewallVirtualNetworkPanoramaPanorama>
    A panorama block as defined below.
    ResourceGroupName string
    The name of the Resource Group where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    Tags Dictionary<string, string>
    A mapping of tags which should be assigned to the Palo Alto Next Generation Firewall Virtual Network Panorama.
    DestinationNats []NextGenerationFirewallVirtualNetworkPanoramaDestinationNatArgs
    One or more destination_nat blocks as defined below.
    DnsSettings NextGenerationFirewallVirtualNetworkPanoramaDnsSettingsArgs
    A dns_settings block as defined below.
    Location string
    The Azure Region where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    Name string
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    NetworkProfile NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileArgs
    A network_profile block as defined below.
    PanoramaBase64Config string
    The base64 encoded configuration registration string as defined by your Panorama Server for your Cloud Device Group.
    Panoramas []NextGenerationFirewallVirtualNetworkPanoramaPanoramaArgs
    A panorama block as defined below.
    ResourceGroupName string
    The name of the Resource Group where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    Tags map[string]string
    A mapping of tags which should be assigned to the Palo Alto Next Generation Firewall Virtual Network Panorama.
    destinationNats List<NextGenerationFirewallVirtualNetworkPanoramaDestinationNat>
    One or more destination_nat blocks as defined below.
    dnsSettings NextGenerationFirewallVirtualNetworkPanoramaDnsSettings
    A dns_settings block as defined below.
    location String
    The Azure Region where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    name String
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    networkProfile NextGenerationFirewallVirtualNetworkPanoramaNetworkProfile
    A network_profile block as defined below.
    panoramaBase64Config String
    The base64 encoded configuration registration string as defined by your Panorama Server for your Cloud Device Group.
    panoramas List<NextGenerationFirewallVirtualNetworkPanoramaPanorama>
    A panorama block as defined below.
    resourceGroupName String
    The name of the Resource Group where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    tags Map<String,String>
    A mapping of tags which should be assigned to the Palo Alto Next Generation Firewall Virtual Network Panorama.
    destinationNats NextGenerationFirewallVirtualNetworkPanoramaDestinationNat[]
    One or more destination_nat blocks as defined below.
    dnsSettings NextGenerationFirewallVirtualNetworkPanoramaDnsSettings
    A dns_settings block as defined below.
    location string
    The Azure Region where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    name string
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    networkProfile NextGenerationFirewallVirtualNetworkPanoramaNetworkProfile
    A network_profile block as defined below.
    panoramaBase64Config string
    The base64 encoded configuration registration string as defined by your Panorama Server for your Cloud Device Group.
    panoramas NextGenerationFirewallVirtualNetworkPanoramaPanorama[]
    A panorama block as defined below.
    resourceGroupName string
    The name of the Resource Group where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    tags {[key: string]: string}
    A mapping of tags which should be assigned to the Palo Alto Next Generation Firewall Virtual Network Panorama.
    destination_nats Sequence[NextGenerationFirewallVirtualNetworkPanoramaDestinationNatArgs]
    One or more destination_nat blocks as defined below.
    dns_settings NextGenerationFirewallVirtualNetworkPanoramaDnsSettingsArgs
    A dns_settings block as defined below.
    location str
    The Azure Region where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    name str
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    network_profile NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileArgs
    A network_profile block as defined below.
    panorama_base64_config str
    The base64 encoded configuration registration string as defined by your Panorama Server for your Cloud Device Group.
    panoramas Sequence[NextGenerationFirewallVirtualNetworkPanoramaPanoramaArgs]
    A panorama block as defined below.
    resource_group_name str
    The name of the Resource Group where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    tags Mapping[str, str]
    A mapping of tags which should be assigned to the Palo Alto Next Generation Firewall Virtual Network Panorama.
    destinationNats List<Property Map>
    One or more destination_nat blocks as defined below.
    dnsSettings Property Map
    A dns_settings block as defined below.
    location String
    The Azure Region where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    name String
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    networkProfile Property Map
    A network_profile block as defined below.
    panoramaBase64Config String
    The base64 encoded configuration registration string as defined by your Panorama Server for your Cloud Device Group.
    panoramas List<Property Map>
    A panorama block as defined below.
    resourceGroupName String
    The name of the Resource Group where the Palo Alto Next Generation Firewall Virtual Network Panorama should exist. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    tags Map<String>
    A mapping of tags which should be assigned to the Palo Alto Next Generation Firewall Virtual Network Panorama.

    Supporting Types

    NextGenerationFirewallVirtualNetworkPanoramaDestinationNat, NextGenerationFirewallVirtualNetworkPanoramaDestinationNatArgs

    Name string
    The name which should be used for this Destination NAT.
    Protocol string
    The Protocol for this Destination NAT configuration. Possible values include TCP and UDP.
    BackendConfig NextGenerationFirewallVirtualNetworkPanoramaDestinationNatBackendConfig
    A backend_config block as defined above.
    FrontendConfig NextGenerationFirewallVirtualNetworkPanoramaDestinationNatFrontendConfig
    A frontend_config block as defined below.
    Name string
    The name which should be used for this Destination NAT.
    Protocol string
    The Protocol for this Destination NAT configuration. Possible values include TCP and UDP.
    BackendConfig NextGenerationFirewallVirtualNetworkPanoramaDestinationNatBackendConfig
    A backend_config block as defined above.
    FrontendConfig NextGenerationFirewallVirtualNetworkPanoramaDestinationNatFrontendConfig
    A frontend_config block as defined below.
    name String
    The name which should be used for this Destination NAT.
    protocol String
    The Protocol for this Destination NAT configuration. Possible values include TCP and UDP.
    backendConfig NextGenerationFirewallVirtualNetworkPanoramaDestinationNatBackendConfig
    A backend_config block as defined above.
    frontendConfig NextGenerationFirewallVirtualNetworkPanoramaDestinationNatFrontendConfig
    A frontend_config block as defined below.
    name string
    The name which should be used for this Destination NAT.
    protocol string
    The Protocol for this Destination NAT configuration. Possible values include TCP and UDP.
    backendConfig NextGenerationFirewallVirtualNetworkPanoramaDestinationNatBackendConfig
    A backend_config block as defined above.
    frontendConfig NextGenerationFirewallVirtualNetworkPanoramaDestinationNatFrontendConfig
    A frontend_config block as defined below.
    name str
    The name which should be used for this Destination NAT.
    protocol str
    The Protocol for this Destination NAT configuration. Possible values include TCP and UDP.
    backend_config NextGenerationFirewallVirtualNetworkPanoramaDestinationNatBackendConfig
    A backend_config block as defined above.
    frontend_config NextGenerationFirewallVirtualNetworkPanoramaDestinationNatFrontendConfig
    A frontend_config block as defined below.
    name String
    The name which should be used for this Destination NAT.
    protocol String
    The Protocol for this Destination NAT configuration. Possible values include TCP and UDP.
    backendConfig Property Map
    A backend_config block as defined above.
    frontendConfig Property Map
    A frontend_config block as defined below.

    NextGenerationFirewallVirtualNetworkPanoramaDestinationNatBackendConfig, NextGenerationFirewallVirtualNetworkPanoramaDestinationNatBackendConfigArgs

    Port int
    The port number to send traffic to.
    PublicIpAddress string
    The IP Address to send the traffic to.
    Port int
    The port number to send traffic to.
    PublicIpAddress string
    The IP Address to send the traffic to.
    port Integer
    The port number to send traffic to.
    publicIpAddress String
    The IP Address to send the traffic to.
    port number
    The port number to send traffic to.
    publicIpAddress string
    The IP Address to send the traffic to.
    port int
    The port number to send traffic to.
    public_ip_address str
    The IP Address to send the traffic to.
    port Number
    The port number to send traffic to.
    publicIpAddress String
    The IP Address to send the traffic to.

    NextGenerationFirewallVirtualNetworkPanoramaDestinationNatFrontendConfig, NextGenerationFirewallVirtualNetworkPanoramaDestinationNatFrontendConfigArgs

    Port int
    The port on which to receive traffic.
    PublicIpAddressId string

    The ID of the Public IP Address on which to receive traffic.

    Note: This must be an Azure Public IP address ID also specified in the public_ip_address_ids list.

    Port int
    The port on which to receive traffic.
    PublicIpAddressId string

    The ID of the Public IP Address on which to receive traffic.

    Note: This must be an Azure Public IP address ID also specified in the public_ip_address_ids list.

    port Integer
    The port on which to receive traffic.
    publicIpAddressId String

    The ID of the Public IP Address on which to receive traffic.

    Note: This must be an Azure Public IP address ID also specified in the public_ip_address_ids list.

    port number
    The port on which to receive traffic.
    publicIpAddressId string

    The ID of the Public IP Address on which to receive traffic.

    Note: This must be an Azure Public IP address ID also specified in the public_ip_address_ids list.

    port int
    The port on which to receive traffic.
    public_ip_address_id str

    The ID of the Public IP Address on which to receive traffic.

    Note: This must be an Azure Public IP address ID also specified in the public_ip_address_ids list.

    port Number
    The port on which to receive traffic.
    publicIpAddressId String

    The ID of the Public IP Address on which to receive traffic.

    Note: This must be an Azure Public IP address ID also specified in the public_ip_address_ids list.

    NextGenerationFirewallVirtualNetworkPanoramaDnsSettings, NextGenerationFirewallVirtualNetworkPanoramaDnsSettingsArgs

    AzureDnsServers List<string>
    DnsServers List<string>
    Specifies a list of DNS servers to use. Conflicts with dns_settings[0].use_azure_dns.
    UseAzureDns bool
    Should the Firewall use Azure Supplied DNS servers. Conflicts with dns_settings[0].dns_servers. Defaults to false.
    AzureDnsServers []string
    DnsServers []string
    Specifies a list of DNS servers to use. Conflicts with dns_settings[0].use_azure_dns.
    UseAzureDns bool
    Should the Firewall use Azure Supplied DNS servers. Conflicts with dns_settings[0].dns_servers. Defaults to false.
    azureDnsServers List<String>
    dnsServers List<String>
    Specifies a list of DNS servers to use. Conflicts with dns_settings[0].use_azure_dns.
    useAzureDns Boolean
    Should the Firewall use Azure Supplied DNS servers. Conflicts with dns_settings[0].dns_servers. Defaults to false.
    azureDnsServers string[]
    dnsServers string[]
    Specifies a list of DNS servers to use. Conflicts with dns_settings[0].use_azure_dns.
    useAzureDns boolean
    Should the Firewall use Azure Supplied DNS servers. Conflicts with dns_settings[0].dns_servers. Defaults to false.
    azure_dns_servers Sequence[str]
    dns_servers Sequence[str]
    Specifies a list of DNS servers to use. Conflicts with dns_settings[0].use_azure_dns.
    use_azure_dns bool
    Should the Firewall use Azure Supplied DNS servers. Conflicts with dns_settings[0].dns_servers. Defaults to false.
    azureDnsServers List<String>
    dnsServers List<String>
    Specifies a list of DNS servers to use. Conflicts with dns_settings[0].use_azure_dns.
    useAzureDns Boolean
    Should the Firewall use Azure Supplied DNS servers. Conflicts with dns_settings[0].dns_servers. Defaults to false.

    NextGenerationFirewallVirtualNetworkPanoramaNetworkProfile, NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileArgs

    PublicIpAddressIds List<string>
    Specifies a list of Azure Public IP Address IDs.
    VnetConfiguration NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileVnetConfiguration
    A vnet_configuration block as defined below.
    EgressNatIpAddressIds List<string>
    Specifies a list of Azure Public IP Address IDs that can be used for Egress (Source) Network Address Translation.
    EgressNatIpAddresses List<string>
    PublicIpAddresses List<string>
    TrustedAddressRanges List<string>
    Specifies a list of trusted ranges to use for the Network.
    PublicIpAddressIds []string
    Specifies a list of Azure Public IP Address IDs.
    VnetConfiguration NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileVnetConfiguration
    A vnet_configuration block as defined below.
    EgressNatIpAddressIds []string
    Specifies a list of Azure Public IP Address IDs that can be used for Egress (Source) Network Address Translation.
    EgressNatIpAddresses []string
    PublicIpAddresses []string
    TrustedAddressRanges []string
    Specifies a list of trusted ranges to use for the Network.
    publicIpAddressIds List<String>
    Specifies a list of Azure Public IP Address IDs.
    vnetConfiguration NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileVnetConfiguration
    A vnet_configuration block as defined below.
    egressNatIpAddressIds List<String>
    Specifies a list of Azure Public IP Address IDs that can be used for Egress (Source) Network Address Translation.
    egressNatIpAddresses List<String>
    publicIpAddresses List<String>
    trustedAddressRanges List<String>
    Specifies a list of trusted ranges to use for the Network.
    publicIpAddressIds string[]
    Specifies a list of Azure Public IP Address IDs.
    vnetConfiguration NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileVnetConfiguration
    A vnet_configuration block as defined below.
    egressNatIpAddressIds string[]
    Specifies a list of Azure Public IP Address IDs that can be used for Egress (Source) Network Address Translation.
    egressNatIpAddresses string[]
    publicIpAddresses string[]
    trustedAddressRanges string[]
    Specifies a list of trusted ranges to use for the Network.
    public_ip_address_ids Sequence[str]
    Specifies a list of Azure Public IP Address IDs.
    vnet_configuration NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileVnetConfiguration
    A vnet_configuration block as defined below.
    egress_nat_ip_address_ids Sequence[str]
    Specifies a list of Azure Public IP Address IDs that can be used for Egress (Source) Network Address Translation.
    egress_nat_ip_addresses Sequence[str]
    public_ip_addresses Sequence[str]
    trusted_address_ranges Sequence[str]
    Specifies a list of trusted ranges to use for the Network.
    publicIpAddressIds List<String>
    Specifies a list of Azure Public IP Address IDs.
    vnetConfiguration Property Map
    A vnet_configuration block as defined below.
    egressNatIpAddressIds List<String>
    Specifies a list of Azure Public IP Address IDs that can be used for Egress (Source) Network Address Translation.
    egressNatIpAddresses List<String>
    publicIpAddresses List<String>
    trustedAddressRanges List<String>
    Specifies a list of trusted ranges to use for the Network.

    NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileVnetConfiguration, NextGenerationFirewallVirtualNetworkPanoramaNetworkProfileVnetConfigurationArgs

    VirtualNetworkId string
    The ID of the Virtual Network.
    IpOfTrustForUserDefinedRoutes string
    TrustedSubnetId string
    The ID of the Trust subnet.
    UntrustedSubnetId string
    The ID of the UnTrust subnet.
    VirtualNetworkId string
    The ID of the Virtual Network.
    IpOfTrustForUserDefinedRoutes string
    TrustedSubnetId string
    The ID of the Trust subnet.
    UntrustedSubnetId string
    The ID of the UnTrust subnet.
    virtualNetworkId String
    The ID of the Virtual Network.
    ipOfTrustForUserDefinedRoutes String
    trustedSubnetId String
    The ID of the Trust subnet.
    untrustedSubnetId String
    The ID of the UnTrust subnet.
    virtualNetworkId string
    The ID of the Virtual Network.
    ipOfTrustForUserDefinedRoutes string
    trustedSubnetId string
    The ID of the Trust subnet.
    untrustedSubnetId string
    The ID of the UnTrust subnet.
    virtual_network_id str
    The ID of the Virtual Network.
    ip_of_trust_for_user_defined_routes str
    trusted_subnet_id str
    The ID of the Trust subnet.
    untrusted_subnet_id str
    The ID of the UnTrust subnet.
    virtualNetworkId String
    The ID of the Virtual Network.
    ipOfTrustForUserDefinedRoutes String
    trustedSubnetId String
    The ID of the Trust subnet.
    untrustedSubnetId String
    The ID of the UnTrust subnet.

    NextGenerationFirewallVirtualNetworkPanoramaPanorama, NextGenerationFirewallVirtualNetworkPanoramaPanoramaArgs

    DeviceGroupName string
    The Device Group Name to which this Firewall Resource is registered.
    HostName string
    The Host Name of this Firewall Resource.
    Name string
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    PanoramaServer1 string
    The name of the First Panorana server.
    PanoramaServer2 string
    The name of the Second Panorana server.
    TemplateName string
    The name of the Panorama Template applied to this Firewall Resource.
    VirtualMachineSshKey string
    The SSH Key to connect to the Firewall Resource.
    DeviceGroupName string
    The Device Group Name to which this Firewall Resource is registered.
    HostName string
    The Host Name of this Firewall Resource.
    Name string
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    PanoramaServer1 string
    The name of the First Panorana server.
    PanoramaServer2 string
    The name of the Second Panorana server.
    TemplateName string
    The name of the Panorama Template applied to this Firewall Resource.
    VirtualMachineSshKey string
    The SSH Key to connect to the Firewall Resource.
    deviceGroupName String
    The Device Group Name to which this Firewall Resource is registered.
    hostName String
    The Host Name of this Firewall Resource.
    name String
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    panoramaServer1 String
    The name of the First Panorana server.
    panoramaServer2 String
    The name of the Second Panorana server.
    templateName String
    The name of the Panorama Template applied to this Firewall Resource.
    virtualMachineSshKey String
    The SSH Key to connect to the Firewall Resource.
    deviceGroupName string
    The Device Group Name to which this Firewall Resource is registered.
    hostName string
    The Host Name of this Firewall Resource.
    name string
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    panoramaServer1 string
    The name of the First Panorana server.
    panoramaServer2 string
    The name of the Second Panorana server.
    templateName string
    The name of the Panorama Template applied to this Firewall Resource.
    virtualMachineSshKey string
    The SSH Key to connect to the Firewall Resource.
    device_group_name str
    The Device Group Name to which this Firewall Resource is registered.
    host_name str
    The Host Name of this Firewall Resource.
    name str
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    panorama_server1 str
    The name of the First Panorana server.
    panorama_server2 str
    The name of the Second Panorana server.
    template_name str
    The name of the Panorama Template applied to this Firewall Resource.
    virtual_machine_ssh_key str
    The SSH Key to connect to the Firewall Resource.
    deviceGroupName String
    The Device Group Name to which this Firewall Resource is registered.
    hostName String
    The Host Name of this Firewall Resource.
    name String
    The name which should be used for this Palo Alto Next Generation Firewall Virtual Network Panorama. Changing this forces a new Palo Alto Next Generation Firewall Virtual Network Panorama to be created.
    panoramaServer1 String
    The name of the First Panorana server.
    panoramaServer2 String
    The name of the Second Panorana server.
    templateName String
    The name of the Panorama Template applied to this Firewall Resource.
    virtualMachineSshKey String
    The SSH Key to connect to the Firewall Resource.


    Palo Alto Next Generation Firewall Virtual Network Panoramas can be imported using the resource id, e.g.

    $ pulumi import azure:paloalto/nextGenerationFirewallVirtualNetworkPanorama:NextGenerationFirewallVirtualNetworkPanorama example /subscriptions/00000000-0000-0000-0000-000000000000/resourceGroups/mygroup1/providers/PaloAltoNetworks.Cloudngfw/firewalls/myVNetPanoramaFW

    To learn more about importing existing cloud resources, see Importing resources.

    Package Details

    Azure Classic pulumi/pulumi-azure
    This Pulumi package is based on the azurerm Terraform Provider.
    azure logo

    We recommend using Azure Native.

    Azure Classic v5.81.0 published on Monday, Jun 24, 2024 by Pulumi