
Overview
Video 1
Video 1

Product video
Panorama network security management enables you to control your distributed network of our firewalls from one central location. View all your firewall traffic, manage all aspects of device configuration, push global policies, and generate reports on traffic patterns or security incidents - all from a single console.
Highlights
- Greater visibility, tighter control, less effort
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Vendor refund policy
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Additional details
Usage instructions
General Usage instructions: https://docs.paloaltonetworks.com/panorama/9-0/panorama-admin.html
Resources
Vendor resources
Support
Vendor support
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products
Customer reviews
Comprehensive Security Visibility with Efficient Centralized Logging
Seamless Management Across Palo Alto Devices with Panorama
Intuitive, Powerful Centralized Firewall Management with Excellent Performance and Support
UI/UX is where Panorama really stands out. The web interface is clean, logically organized, and responsive, and moving between device groups, policy rule sets, and log viewers feels natural and deliberate. Compared with older management consoles like Cisco’s ASDM, the difference in day-to-day usability is night and day. Administrators with different experience levels can become productive quickly without needing extensive, platform-specific training.
From an integrations perspective, Panorama ties in smoothly with Palo Alto’s broader security ecosystem. Cortex XDR, WildFire sandboxing, AutoFocus threat intelligence, and Prisma Cloud feed into Panorama in a way that feels cohesive, creating a more unified security operations experience. SIEM integrations via syslog and the Panorama REST API have also been reliable in my experience, making it straightforward to forward enriched firewall telemetry into platforms like IBM QRadar or Splunk for deeper correlation.
Performance under real-world enterprise workloads has been consistently strong. Log ingestion, policy pushes across multiple devices, and real-time dashboard updates all complete with minimal latency. Even in deployments managing a large number of firewalls at the same time, Panorama handles the operational load without noticeable degradation.
On pricing and ROI, Panorama licensing is a meaningful investment, but the return is easy to justify in multi-firewall environments. The time saved on policy management, enforcing consistency, and centralized incident investigation can offset the cost significantly for any security team managing more than a handful of devices.
Support and onboarding from Palo Alto have been excellent. The documentation is comprehensive and well maintained, the Live Community forums are actively monitored, and Palo Alto TAC support is responsive and technically strong when critical issues need escalation. Onboarding is also helped by Palo Alto’s extensive library of deployment guides and YouTube-based training content, which gets new administrators productive quickly.
Finally, AI and intelligence are genuine differentiators for Panorama. WildFire’s machine learning-based malware analysis, combined with Palo Alto’s DNS Security and Advanced Threat Prevention services, brings AI-driven threat detection into the management workflow. The platform surfaces actionable intelligence rather than just raw alerts, helping security teams prioritize responses based on actual risk instead of noise.
Licensing cost is the biggest pain point. Panorama licensing stacks on top of per-device NGFW costs, and capabilities like WildFire, Advanced Threat Prevention, and URL Filtering each require separate subscriptions. The total cost escalates quickly and can be difficult to justify for budget-conscious teams.
The Device Group and Template Stack hierarchy also comes with a steep learning curve. The inheritance model isn’t very intuitive, and new administrators often misconfigure policies because the console offers limited contextual guidance during initial setup.
Log query performance can degrade noticeably in larger deployments, especially with aggressive logging policies. Panorama may become a bottleneck if it isn’t sized correctly upfront, and Palo Alto’s capacity-planning guidance during deployment feels lacking.
Integrations with third-party tools outside the Palo Alto ecosystem typically require substantial custom REST API work, which adds engineering overhead in mixed-vendor environments.
Finally, AI-driven features like WildFire are cloud-dependent. In air-gapped or highly regulated environments, their effectiveness drops significantly, which is a real limitation for government or critical infrastructure deployments.
Policy deployment is the biggest practical benefit. Changes that previously required touching multiple devices one by one—updating security rules, modifying address objects, or pushing software updates—can now be completed as a single operation from one console. This cuts down the time spent on routine administration and reduces the chance of human error leading to policy drift or inconsistencies between devices.
Incident investigation has also improved significantly. The centralized Log Viewer brings together firewall events from all managed devices into one searchable interface, so threat hunting and root cause analysis no longer require jumping between multiple management consoles or waiting for log exports. As a result, response times during security incidents are noticeably faster.
Compliance and audit workflows benefit as well. Having a single source of truth for firewall policies makes it much easier to generate audit-ready documentation and demonstrate policy consistency across the environment, instead of relying on a manual, time-consuming process.
One dashboard, many trades-offs
Centralized management has streamlined configuration and daily operations across hundreds of firewalls
What is our primary use case?
My main use case for Palo Alto Networks Panorama is to manage our firewalls. We have around 450 firewalls, and we manage them through Panorama. Configuration entry is the primary focus of our use.
What is most valuable?
The best features Palo Alto Networks Panorama offers include the ability to manage multiple firewalls at one time. This was our main concern, as we previously had to manage a couple of firewalls with one template, and this capability is the best feature they have.
This feature has impacted my daily workflow positively. We can change our template at the same time and apply it for all the firewalls because most of the firewalls have the same configuration from our side, which is better for us and makes our work easier.
The main feature that stands out to me is the ability to manage multiple firewalls easily. Palo Alto Networks Panorama has positively impacted our organization by allowing a couple of network engineers to use Panorama simultaneously with different templates or device groups, which helps us save time and reduce the complexity of the network.
What needs improvement?
From a monitoring perspective, if we could improve on data retention and keep it for quite a long time, such as 90 days of data retention, that would be good for us to manage our CPU usage, as we can see CPU usage from Palo Alto Networks Panorama. Better improvements in monitoring would be beneficial for us.
I would like to see improvements in monitoring. For example, if a firewall has been disconnected, having a dashboard or a monitoring tab for that would be beneficial without using third-party tools.
For how long have I used the solution?
I have been using Palo Alto Networks Panorama for more than one year.
What do I think about the stability of the solution?
Palo Alto Networks Panorama is stable in my experience.
What do I think about the scalability of the solution?
In terms of scalability, Palo Alto Networks Panorama handles growth and increased demands well for now.
How are customer service and support?
My experience with customer support has been good, as most of the TAC cases are handled by me, and they are very good.
Which solution did I use previously and why did I switch?
I did not switch solutions, but I previously used FortiManager at a different company.
How was the initial setup?
My experience with pricing, setup cost, and licensing has been good.
What was our ROI?
I do not have any statistics about the return on investment since we did not conduct any kind of survey regarding configuration or time saved.
What's my experience with pricing, setup cost, and licensing?
We did not purchase Palo Alto Networks Panorama through the Azure Marketplace. We purchased it directly through Palo Alto.
Which other solutions did I evaluate?
Before choosing Palo Alto Networks Panorama, I did not evaluate other options, as it was already deployed before I joined this company.
What other advice do I have?
My advice for others looking into using Palo Alto Networks Panorama is that if you have more than 10 firewalls, you should use Panorama as it saves your time. My company is a partner with the vendor. I would rate this product a 10 out of 10.