About Palo Alto Networks integrations
Stream data directly from other Palo Alto Networks products to Cortex XDR.
Cortex XDR supports streaming data directly from Prisma Access accounts, Next-Generation Firewalls (NGFW), and Panorama devices to your Cortex XDR tenants using the Strata Logging Service.
Ensure you have deployed Panorama and NGFW, and hold Super User permissions to your Customer Support Account (CSP).
Once your tenant has been activated, navigate to the Collection Integrations page to configure your integrations. All devices and accounts allocated to your CSP accounts are available to integrate.
Note
For Palo Alto Networks Integrations there is an option to turn on or off the collection of URL and File log types. For more information, see Collecting URL and File log types.
New tenants (and tenants upgraded from XDR to XSIAM) will work with the new direct integration of Next-Generation Firewall and Panorama into Cortex. For such tenants, there’s no option to use the Strata Logging Service integration.
For tenants where customers have integrated directly with Strata Logging Service, the configured integrations, such as Next-Generation Firewall and Prisma Access, can be migrated to Cortex XDR in either of the following ways before the license expires:
More than two weeks before the license for existing integrations with Strata Logging Service expires, manually migrate the integrations, using the corresponding Migrate Devices buttons on the Collection Integrations page. Make sure you select all your devices to connect directly to Cortex XDR.
Last updated
Was this helpful?
