Route 53 Resolver DNS Firewall adds Palo Alto Networks Advanced DNS Security (Preview)
Amazon Route 53 Resolver DNS Firewall now offers Palo Alto Networks Advanced DNS Security in preview, allowing administrators to enforce threat protections directly within Route 53 rules. This integration simplifies security operations by eliminating the need for separate firewalls and provides unified threat protection across AWS and on-premises environments. Customers can subscribe to PANW threat intelligence through the AWS Marketplace within the Route 53 console. The feature is available in preview across several AWS regions.
- →Integrate Palo Alto Networks Advanced DNS Security into Route 53 Resolver DNS Firewall
- →Streamline security operations and centralize visibility
- →Preview availability and cost details
Features (1) ›
- Integrate Palo Alto Networks Advanced DNS Security into Route 53 Resolver DNS Firewall
This preview feature allows security administrators to enforce Palo Alto Networks' DNS threat protections directly within Route 53 DNS Firewall rules. It integrates PANW threat intelligence, including fast-flux and DNS tunneling detection, directly into the DNS Firewall workflow, simplifying security operations.
Enhancements (1) ›
- Streamline security operations and centralize visibility
The integration eliminates the need to deploy separate PANW firewalls per VPC or account and supports multi-account management via AWS RAM, Route 53 Profiles, and AWS Firewall Manager. Centralized visibility is provided through AWS Security Hub findings and query logs.
Notes (1) ›
- Preview availability and cost details
Palo Alto Networks Advanced DNS Security on Route 53 DNS Firewall is available in preview in multiple AWS regions. DNS Firewall Advanced customers can add PANW rules to existing rule groups at no additional DNS Firewall charge, and the Palo Alto Networks subscription is free during the preview period.
https://aws.amazon.com/about-aws/whats-new/2026/06/amazon-route-53-resolver-dns/
