- FireNet
- Firewall
Purpose
The FireNet page provides centralized management for firewall insertion into Aviatrix Transit architecture, enabling advanced security inspection across multicloud environments.Controller version 9.0 extends IPv6 FireNet vendor support to Fortinet and
Check Point, in addition to Palo Alto Networks (supported from Controller
version 8.2).
Elements

- + FireNet split button: Opens the Add FireNet to Transit Gateway dialog. Its dropdown offers Add Egress Transit FireNet and Add AWS TGW FireNet as alternate FireNet types to create.
- Select columns button: Button to customize visible columns. VPC/VNet and Cloud Load Balancer are hidden by default.
- Show filters / Export buttons: Filter and export the table.
- FireNet table: Lists Transit Gateways with FireNet configured, along with their firewall attachment and inspection status.
Actions
View FireNet
View FireNet
To view FireNet instances and their status:
- Go to Security > FireNet > FireNet.
- The FireNet page appears with the table of Transit Gateways configured for FireNet.
- Click a Transit Gateway name to open its FireNet detail page.
Parameter Details
Create a FireNet
Create a FireNet
Before creating a FireNet, ensure the target Transit Gateway exists and (for
AWS TGW FireNet) the AWS TGW is attached.To create a FireNet:
- Go to Security > FireNet > FireNet.
- Click + FireNet to create a Transit FireNet, or use the dropdown to choose Add Egress Transit FireNet or Add AWS TGW FireNet.
- In the dialog, select the Transit Gateway, configure the firewall instance size, and complete the remaining fields for the selected FireNet type.
- Click Add.
Manage Firewall Attachment
Manage Firewall Attachment
To attach or detach firewall instances from a FireNet:
- Go to Security > FireNet > FireNet.
- In the row’s action menu, click Manage Firewall Attachment.
The Manage Firewall Attachment dialog appears. - In Firewall, add or remove firewall instances to attach or detach them.
- Click Save.
View FireNet Details
View FireNet Details
To view or manage the details of a FireNet:
- Go to Security > FireNet > FireNet.
- Click the Transit Gateway name for the FireNet.
Vendor Integration through Firewall Manager
Vendor Integration through Firewall Manager
Before configuring vendor integration through Firewall Manager, ensure you have:
- A Transit FireNet gateway with firewall instances attached
- (For Palo Alto Networks Panorama) Panorama management IP address and administrator credentials
- (For Palo Alto Networks Panorama) Panorama template and template stack names to assign to each firewall
- Go to Security > FireNet > FireNet.
- Click the Transit Gateway name for the FireNet, then open its Vendor Integration tab.
- Click Through Firewall Manager as the integration path.
- In Firewall Manager Vendor, click the Firewall Manager Vendor dropdown. Select Palo Alto Networks Panorama to configure Custom Firewall Mapping.
- In Management IP Address, enter the management IP address of the Panorama instance.
- In Username, enter the Panorama administrator username.
- In Password, enter the corresponding password.
- In FireNet Instance Template Name, select or enter the template to assign
to this firewall.
Enable Custom Firewall Mapping to configure more than one firewall template. - Click Save.
Remove a FireNet
Remove a FireNet
To remove a FireNet:
- Go to Security > FireNet > FireNet.
- In the row’s action menu, click Remove.
- Confirm the removal.
Removing a FireNet is available only for AWS. For other clouds, Remove is
disabled with a tooltip explaining that the FireNet must be removed through
Terraform or the Controller.
Use FireNet Diagnostics
Use FireNet Diagnostics
To run FireNet diagnostics for troubleshooting:
- Go to Security > FireNet > FireNet.
- In the row’s action menu, click FireNet Diagnostics.
- Run Ping, Traceroute, or view logs for the selected FireNet.
