Supported Platforms
Focus
Focus
Advanced IP Defense

Supported Platforms

Table of Contents


Supported Platforms

Review the enforcement point platforms and logging platforms that support Advanced IP Defense.
All Palo Alto Networks next-generation enforcement points running PAN-OS 12.2.3 or later support Advanced IP Defense, including high availability (HA) configurations.
In HA deployments, the Advanced IP Defense local cache does not synchronize between HA peers. After a failover, the newly active enforcement point starts with a cold cache and queries the Advanced IP Defense cloud service for all IP attribute lookups until the cache is repopulated. During this period, cache-miss behavior (default: skip to next rule) applies to all sessions until the cloud returns verdicts.
Direct-to-IP detection requires network and DNS traffic to traverse the same network firewall. Direct-to-IP detection is not supported on Active-Active HA deployments where DNS and network traffic is split between two firewalls.
Platforms
PA-440, PA-450, PA-460
PA-445, PA-455
PA-450R
PA-455-5G
PA-501, PA-505, PA-510, PA-520, PA-540, PA-550, PA-560
PA-545-POE, PA-555-POE
PA-1410, PA-1420
PA-3410, PA-3420, PA-3430, PA-3440
PA-5410, PA-5420, PA-5430, PA-5440, PA-5445
PA-5450
PA-5540, PA-5550, PA-5560, PA-5570, PA-5580
PA-7500
VM-50, VM-50 Lite, VM-100, VM-200, VM-300, VM-500, VM-700, VM-1000-HV
The following table lists the logging platforms that support Advanced IP Defense threat logs through Panorama and log collectors.
Logging PlatformSupported
Strata Logging ServiceYes
M-600Yes
WF-500Yes