pan-python
Multi-tool set for Palo Alto Networks PAN-OS, Panorama, WildFire and AutoFocus
Decision gist · record as of 2026-08-14
Yes, if you manage Palo Alto Networks infrastructure. The package is actively maintained, has no external dependencies, and provides the standard Python interface to a widely-used firewall platform. No known vulnerabilities. Install it if you need to automate PAN-OS, Panorama, WildFire, or AutoFocus operations; skip it if you don't use Palo Alto Networks products.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires Python 3.9 or later.
- Target firewall or Panorama instance must be accessible and have API access enabled.
- Low friction installation with no external runtime dependencies.
License · maintenance · safety
ISC (permissive) — ISC license is permissive, allowing commercial and private use with minimal restrictions—suitable for most deployment scenarios.
last release 2026-06-18 (57 days) · last repo commit 2026-06-18 · 285 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 216,285 downloads/mo, #9,382 on PyPI
Alternatives
Verify before relying
pip install pan-python
from pan.xapi import PanXapi
xapi = PanXapi(hostname='firewall.example.com', api_key='your-api-key')
xapi.op(cmd='show system info')- Whether the package supports all current PAN-OS versions and API endpoints beyond what the description lists.
- Performance characteristics and rate-limiting behavior when working with large configurations or high-volume API calls.
- Whether command-line tools are fully featured or have limitations compared to the Python API.
What it is and what it does
pan-python is a multi-interface toolkit for interacting with Palo Alto Networks security appliances and services. It wraps the XML APIs of PAN-OS firewalls, Panorama (centralized management), WildFire (malware analysis), AutoFocus (threat intelligence), and the licensing service into both Python libraries and standalone command-line tools. The package has no external dependencies, making it lightweight to deploy in automation scripts, CI/CD pipelines, or interactive management workflows.
Developers use it to automate firewall configuration, retrieve operational status, submit files for malware analysis, query threat data, and manage licenses—all without building raw HTTP requests or parsing XML by hand. The dual interface (Python API and CLI) means you can integrate it into larger Python applications or call it directly from shell scripts and orchestration platforms.
Use it for
- Automate firewall configuration changes and policy updates across multiple PAN-OS instances via Python scripts.
- Query WildFire to analyze suspicious files and retrieve malware verdicts programmatically.
- Build command-line dashboards or monitoring tools that pull operational metrics from Panorama or individual firewalls.
- Integrate threat intelligence from AutoFocus into security workflows or SIEM systems.
- Manage firewall licenses and licensing operations as part of infrastructure-as-code deployments.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes, if you manage Palo Alto Networks infrastructure.
The package is actively maintained, has no external dependencies, and provides the standard Python interface to a widely-used firewall platform. No known vulnerabilities. Install it if you need to automate PAN-OS, Panorama, WildFire, or AutoFocus operations; skip it if you don't use Palo Alto Networks products.
Install
pan-python on PyPI
Before you install
Low friction installation with no external runtime dependencies. Last release was 57 days ago; repository is active with recent commits and moderate community engagement (285 stars).
Requires Python 3.9 or later. Target firewall or Panorama instance must be accessible and have API access enabled.
License in practice
ISC license is permissive, allowing commercial and private use with minimal restrictions—suitable for most deployment scenarios.
Quickstart
pip install pan-python
from pan.xapi import PanXapi
xapi = PanXapi(hostname='firewall.example.com', api_key='your-api-key')
xapi.op(cmd='show system info')
Verify before relying
- Whether the package supports all current PAN-OS versions and API endpoints beyond what the description lists.
- Performance characteristics and rate-limiting behavior when working with large configurations or high-volume API calls.
- Whether command-line tools are fully featured or have limitations compared to the Python API.
Package facts
| License | ISC permissive |
| Python support | Supports the current Python release >=3.9 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | None |
| Maintenance | Actively maintained 57 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 216,285 / month, #9,382 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Programming Language :: Python :: 3 |
Evidence: pan_python-0.26.0-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “pan-os firewall management”
- pan-pythonProvides Python and command-line interfaces to Palo Alto Networks…
- pan-os-pythonFramework for programmatically configuring and managing Palo Alto…
- scc-firewall-manager-sdkProvides a Python SDK for interacting with Cisco Security Cloud…
Give your agent the search over MCP, or paste the wish link into any chat.
More Networking packages
h11 is a pure-Python HTTP/1.1 protocol implementation that handles parsing and serializing HTTP messages without any built-in I/O, letting you integrate it with any network layer you choose.
psutil retrieves real-time information about running processes and system resources (CPU, memory, disks, network, sensors) across multiple operating systems, enabling system monitoring, process profiling, and resource management.
pyOpenSSL wraps OpenSSL's SSL/TLS functionality for Python, providing high-level connection objects and certificate handling through a Python-friendly interface around OpenSSL's cryptographic operations.
uvloop is a drop-in replacement for Python's built-in asyncio event loop, implemented in Cython and using libuv, that accelerates async I/O operations.
execnet lets you spawn and communicate with Python interpreters across local processes, remote hosts, and different platforms, using a simple API for task distribution and inter-process messaging.
However, the aging maintenance status (275 days since last release) means you should verify it meets your concurrency and performance needs before committing to a…
PyZMQ provides Python bindings for ZeroMQ (ØMQ), a lightweight messaging library that enables fast, asynchronous communication between distributed processes and applications.
See also pan-os-python · prisma-sase · azure-mgmt-network · scc-firewall-manager-sdk · scrapli · sshtunnel · wafw00f · netaddr · aiopnsense · azure-mgmt-datalake-store