Gaining Internet activity insights and keeping abreast about security events is a challenging task as the security appliance generates a huge quantity of security and traffic logs. With a package of features, Firewall Analyzer's reporting capability for Palo Alto firewall appliance fit like a glove enabling you to strengthen the network security. Firewall Analyzer lets you to collect, archive, analyze Palo Alto device logs and generate security and forensic reports.
With Firewall Analyzer, you can access pre-defined reports that help in analyzing bandwidth usage and understanding security and network activities. These reports helps you to study the security vulnerability with top denied hosts, blocked URL hits, attacks, targets, virus, affected hosts, spam, receiving hosts.
Trend reports in Firewall Analyzer trace patterns in network behavior and bandwidth usage over time. Analysis of trend reports gives better insight into the nature of web site traffic or network traffic, and helps you make decisions on capacity planning, business risk assessment, bandwidth management, traffic shaping, and network security posture.
VPN trend reports show trends in the number of VPN connections accessed through the Palo Alto firewall on a historical and current basis. VPN trends are especially useful in troubleshooting VPN connections, and identifying security risks.
Firewall Change Management report keeps track of all changes in Firewall configuration from time to time. It fetches Firewall device configuration using SSH / TFTP protocols.
Firewall Analyzer's data repository keeps a record of every change to the firewall, including who made it, what was modified, and when it was done. Track who changed what with an easy-to-use interface that shows you what you need to see in a line-by-line format.
Search and report instantly on implementation details for any change happened. This report includes information on who implemented the change, when it was implemented, and on which firewall.
Firewall Analyzer for Palo Alto monitors the device and captures all changes, planned or unplanned, and alerts the right people. Notifications can be sent to team members in easy-to-read emails, or to other monitoring systems via syslog.
With Firewall Analyzer for Palo Alto, you can ensure that all the configurations and subsequent changes made in the Palo Alto Firewall device are captured periodically and stored in the database. The configuration data is used to generate various reports. With Firewall Analyzer's Configuration Change Management for Palo Alto firewall Appliance you can find out 'who' made 'what' changes, 'when' and 'why'. Not only that, it alerts you in real-time on your mobile phone when changes happen.
With Firewall Analyzer, Firewall policy anomaly reporting allows to capture and rectify anomalies in firewall policies and thereby secure the networks from external IT attacks. These reports empower you to optimize policies and plug all security holes as well as optimize the performance of your firewalls. The less complex you can make the rule set, the faster traffic will be evaluated by the system and the easier it will be for network engineers to manage access on a day-to-day basis.
Once Rule access has been requested and granted removing it can be difficult. You can tackle this problem pro-actively by monitoring which rules are being used and removing the unused ones when needed.
Firewall Analyzer's analysis engine drills down and determines which objects in that rule are unused. Top Unused Rules report provides the list of rules/ policies/ ACLs not used by the traffic of your enterprise network through the firewall thereby you can delete unnecessary rules and optimize the efficiency.
Firewall Analyzer's integrated compliance management system automates your compliance audits with its out-of-the-box reports on Regulatory Mandates such as PCI-DSS, ISO 27001, NIST, SANS and NERC-CIP.
With Firewall Analyzer, you can create a customized alert to determine when the firewall is not complaint and you can take immediate action and ensure that your network is secure.
Firewall Analyzer provides you a unique way to monitor the Internet traffic of the network in near real-time. Firewall traffic data is collected and analyzed to get granular details about the traffic across each firewall. There is no requirement for any probes or collection agents to get these details on the traffic.
Firewall Analyzer measures network traffic based on the analysis of logs received from different network firewalls. Firewall logs are collected, archived, and analyzed to get granular details about traffic across Palo Alto firewall devices.
With Firewall Analyzer for Palo Alto, you can maximize the business usage of Internet bandwidth using employee Internet monitoring. You can fine-tune the Firewall policies to block or restrict bandwidth guzzling web sites and in turn effectively control the employee Internet usage. This will ensure that the bandwidth is available for smooth functioning of the business.
|Palo Alto||PA 5000 and 5200 series|
|PA 7000 series|
|PANOS 4.1.0 to 7.1|
For detailed steps about how to configure Firewall Anlayzer with Palo Alto's firewall appliance you can refer this link here