    Physical Firewalls and Multitenancy

    TheVMinator Master

      If your company currently has a big investment in physical firewall security such as Palo Alto, to what extent can / should the physical firewall and its software be involved in a secure multi-tenant cloud infrastructure design?  This is assuming you don't have NSX, and so can't take advantage of Palo Alto VM-1000 and NSX integration.


      Should you do all of your firewalling for tenants with dedicated virtual appliances for each tenant?  Is connecting tenant-specific virtual appliances to the physical firewall a gain or a hindrance to a scalable multi-tenant design?