100
•
Panorama
6.1
Administrator’s
Guide
©
Palo
Alto
Networks,
Inc.
Use
Case:
Configure
Firewalls
Using
Panorama
Manage
Firewalls
Templates
When
grouping
devices
for
templates,
we
must
take
into
account
the
differences
in
the
networking
configuration.
For
example,
if
the
interface
configuration
is
not
the
same—the
interfaces
are
unlike
in
type,
or
the
interfaces
used
are
not
alike
in
the
numbering
scheme
and
link
capacity,
or
the
zone
to
interface
mappings
are
different
—the
devices
must
be
in
separate
templates.
Further,
the
way
the
devices
are
configured
to
access
network
resources
might
be
different
because
the
devices
are
spread
geographically;
for
example,
the
DNS
server,
syslog
servers
and
gateways
that
they
access
might
be
different.
So,
to
allow
for
an
optimal
base
configuration,
you
must
place
the
devices
in
separate
templates
as
follows:
T_Branch
for
the
branch
office
devices
T_Regional
for
the
regional
office
devices
T_DataCenter
for
the
devices
at
the
datacenter