Maintained with ☕️ by
IcePanel logo

Amazon Route 53 Resolver DNS Firewall support for Palo Alto Networks Advanced DNS Security is now Generally Available (GA)

Share

Services

​​Amazon Route 53 Resolver DNS Firewall support for Palo Alto Networks (PANW) Advanced DNS Security is now generally available across 32 AWS Regions, allowing security teams to detect and block malicious DNS traffic directly from their VPCs using PANW Advanced DNS Security rules without deploying separate firewalls or modifying VPC configurations.​ ​​[Previewed](https://aws.amazon.com/about-aws/whats-new/2026/06/amazon-route-53-resolver-dns/) at AWS Summit New York City, the feature enables security administrators to enforce DNS threat protections (Command and Control, Malware, Phishing, Newly Registered Domains, etc.) from Palo Alto Networks directly using Route 53 DNS Firewall rules to inspect and block malicious DNS query traffic from Amazon VPCs and hybrid cloud (via Route 53 Resolver Endpoints).​ ​​With general availability, PANW Advanced DNS Security on DNS Firewall is now supported in all AWS Regions where DNS Firewall is offered. Customers can subscribe to and enable the feature directly via the Route 53 DNS Firewall console, share licenses across organization accounts via AWS License Manager, and associate DNS Firewall rule groups containing PANW rules with VPCs using AWS Resource Access Manager, Route 53 Profiles, or AWS Firewall Manager.​ ​​​To learn more and get started, see Route 53 DNS Firewall [documentation](https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/firewall-partner-panw.html). To view Route 53 DNS Firewall pricing, visit Route 53 [pricing page](https://aws.amazon.com/route53/pricing/). To learn more about the AWS Marketplace listing and pricing for PANW Advanced DNS Security, see the AWS Marketplace [listing](https://aws.amazon.com/marketplace/pp/prodview-lrceyvgks3z6o?sr=0-19&ref%5F=beagle&applicationId=AWSMPContessa).​​