Muutke küpsiste eelistusi

Palo Alto Networks from Policy to Code: Create robust firewall policies and automate deployment efficiently [Pehme köide]

  • Formaat: Paperback / softback, kõrgus x laius: 235x191 mm
  • Ilmumisaeg: 25-Aug-2025
  • Kirjastus: Packt Publishing Limited
  • ISBN-10: 1835881297
  • ISBN-13: 9781835881286
Teised raamatud teemal:
  • Formaat: Paperback / softback, kõrgus x laius: 235x191 mm
  • Ilmumisaeg: 25-Aug-2025
  • Kirjastus: Packt Publishing Limited
  • ISBN-10: 1835881297
  • ISBN-13: 9781835881286
Teised raamatud teemal:
Develop and implement automated security policies for Palo Alto Networks firewalls, and turn manual configurations into scalable, efficient, and code-based security solutions

Key Features

Streamline security policy deployment with Python and automation tools Learn how PAN-OS processes and secures enterprise network traffic Implement automated security actions for real-time threat mitigation Purchase of the print or Kindle book includes a free PDF eBook

Book DescriptionPalo Alto Networks firewalls lead in enterprise security and advanced threat prevention. However, IT teams struggle with manual policy configurations, error-prone processes, and maintaining consistency across deployments. Written by two seasoned cybersecurity professionals with decades of industry experience, including at Palo Alto Networks, this book transforms firewall security management into a streamlined, automated, and code-driven approach bridging the gap between powerful technology and efficient implementation. This book helps you understand everything from Next-Generation Firewall fundamentals to designing robust security policies and automating them using Python. While most other resources focus on theory or vendor documentation, this book provides a hands-on approach, best practices, and automation strategies. You'll learn how to integrate security policies with IT workflows, leverage automation frameworks like PAN-OS SDKs, and deploy policies efficiently using Infrastructure-as-Code methodologies. By the end of this Palo Alto book, youll have the expertise to optimize security configurations, improve compliance, and leverage Python-driven automation to manage policies at scale.What you will learn

Design enterprise-grade security policies for Palo Alto firewalls Automate firewall policy deployment using Python and PAN-OS APIs Test firewall policies using manual and automated QA techniques Integrate Palo Alto firewalls with IT Help Desk and external systems Optimize firewall performance while maintaining strong security controls Understand Next-Gen Firewall fundamentals and traffic processing Manage firewall configurations using CLI, APIs, and automation tools

Who this book is forThis book is for firewall engineers, security engineers, consultants, technical architects, and CISOs who want to enhance their network security skills with Policy as Code on Palo Alto Networks firewalls. It's also perfect for those with a working knowledge of Python programming along with hands-on experience with Palo Alto Networks' Next-Gen firewalls, whether it's in a business, government, or educational setting. This book equips network engineers, security architects, and DevSecOps professionals with the skills to simplify firewall management and reduce operational overhead.
Table of Contents

Next-Gen Firewall Fundamentals
Navigating Real-World Firewall Management and Cyber Risks
PAN-OS at your Rescue
PAN-OS security policy features: connection processing
Setting Up Your Software Development Environment
Firewall Automation and Management Choices
Policy to Code: Advanced
Quality Assurance and Testing
Your First Cutover and Next Steps
Policy to Code: Foundations
Security Policy Design
Nikolay Matveev graduated from a technical university with a degree in Information Systems in Nuclear Power Engineering. He has worked in IT for over 25 years, including 12 years of experience with Palo Alto Networks technologies. Currently based in London, UK, he is a Principal Security Engineer at a large American investment firm. Before this, Nikolay worked as a Professional Services Consultant at Palo Alto Networks, and he has held technical positions in companies in various sectors such as Financial Services, Consulting, and Manufacturing. Nikolay is a Certified Information Systems Security Professional (CISSP) with (ISC)². He formerly held certifications as a Palo Alto Networks Certified Network Security Consultant (PCNSC), a Palo Alto Networks Certified Network Security Engineer (PCNSE), a Microsoft Certified Systems Engineer (MCSE), a VMware Certified Professional Data Center Virtualization (VCP-DCV), and a Cisco Certified Network Associate (CCNA). Migara Ekanayake is a seasoned cybersecurity professional with over a decade of experience in cloud security, network automation, and professional services. Currently serving as a Global Solutions Architect for Cloud Security Automation at Palo Alto Networks, Migara has been instrumental in helping organizations worldwide secure their digital transformations. With a career spanning roles at industry leaders like Palo Alto Networks and F5 Networks, Migara has developed a deep understanding of cloud platforms, application security, and network infrastructure. Migara's diverse background, which includes roles in software development and network security, provides him with a unique perspective on the intersections of technology, business, and security.