This document describes how to allow specific IP addresses to access the Palo Alto Networks device through the Management and Dataplane Interface.
Steps
The following is the Management Interface configuration:
From the WebUI, go to Device > Setup > Interfaces and click Management. As shown below, configure Management Interface IP address, on the right-hand side are Services to be allowed on the Interface and add permitted IP address:
Click "OK" and perform a commit on the device
The following is the Dataplane Interface with Interface Management Profile configuration:
From the WebGUI, go to Network > Interface Mgmt (Under Network Profile)
Create a new profile and configure the permitted IP address and allowed services
Go to Network > Interfaces > Ethernet and click the desired Interface to map the profile as shown below.
Now only IP "10.0.0.100" can access the device through Management Interface and Ethernet Interface.