> For the complete documentation index, see [llms.txt](https://cortex-docs.paloaltonetworks.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure.md).

# Onboard and configure

- [Plan and prepare](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/plan-and-prepare.md)
- [Deployment checklist](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist.md)
- [Activation](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/activation.md)
- [Supported regions](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/activation/supported-regions.md)
- [Enable access to required PANW resources](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/activation/enable-access-to-required-panw-resources.md)
- [Regional egress resources](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/activation/enable-access-to-required-panw-resources/regional-egress-resources.md)
- [Engines IP addresses (outbound) - fix tables](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/activation/enable-access-to-required-panw-resources/engines-ip-addresses-outbound-fix-tables.md)
- [Inbound source resources - fix tables](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/activation/enable-access-to-required-panw-resources/inbound-source-resources-fix-tables.md)
- [FedRAMP and the US Federal Government required resources](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/activation/enable-access-to-required-panw-resources/fedramp-and-the-us-federal-government-required-resources.md)
- [Set up users, groups, and roles](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/set-up-users-and-roles.md): Learn how to set up users and roles in Cortex Data Security.
- [User group management](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/set-up-users-and-roles/user-group-management.md): Create and manage user groups, roles, and scopes.
- [Assign user roles and groups](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/set-up-users-and-roles/assign-user-roles-and-groups.md): Assign roles and group memberships to users.
- [Manage API keys](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/manage-api-keys.md)
- [Set up authentication](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/set-up-authentication.md): Authenticate Cortex Data Security users using SAML 2.0 or Customer Support Portal (CSP).
- [Authenticate users through the Customer Support Portal](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/set-up-authentication/authenticate-users-through-the-customer-support-portal.md): Authenticate users through the Customer Support Portal.
- [Authenticate users using SSO](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/set-up-authentication/authenticate-users-using-sso.md): Configure SAML single sign-on for Cortex Data Security users.
- [Set up Okta as the Identity Provider Using SAML 2.0](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/set-up-authentication/set-up-okta-as-the-identity-provider-using-saml-2.0.md): Configure Okta as a SAML 2.0 identity provider.
- [Set up Microsoft Entra ID as the Identity Provider Using SAML 2.0](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/deployment-checklist/set-up-authentication/set-up-microsoft-entra-id-as-the-identity-provider-using-saml-2.0.md): Configure Microsoft Entra ID as a SAML 2.0 identity provider.
- [Cloud service provider (CSP) onboarding](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding.md)
- [Amazon Web Services cloud onboarding](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/amazon-web-services-cloud-onboarding.md): Follow the AWS onboarding wizard, and Cortex Data Security creates a custom authentication template to be deployed in AWS.
- [AWS security capabilities and deployment planning](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/amazon-web-services-cloud-onboarding/aws-security-capabilities-and-deployment-planning.md)
- [AWS resource inventory](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/amazon-web-services-cloud-onboarding/aws-resource-inventory.md)
- [AWS security model and authentication](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/amazon-web-services-cloud-onboarding/aws-security-model-and-authentication.md)
- [Cortex Data Security and AWS audit log collection architecture](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/amazon-web-services-cloud-onboarding/cortex-cloud-and-aws-audit-log-collection-architecture.md)
- [Onboard Amazon Web Services](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/amazon-web-services-cloud-onboarding/onboard-amazon-web-services.md): Follow the AWS onboarding wizard, and Cortex Data Security creates a custom authentication template to be executed in AWS.
- [Prerequisites for onboarding AWS](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/amazon-web-services-cloud-onboarding/prerequisites-for-onboarding-aws.md): Before you begin onboarding AWS, you must review the following prerequisites.
- [How to onboard Amazon Web Services](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/amazon-web-services-cloud-onboarding/how-to-onboard-amazon-web-services.md): Follow the AWS onboarding wizard and Cortex Data Security creates a custom authentication template to be deployed in AWS CloudFormation.
- [Deploy the authentication template in AWS](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/amazon-web-services-cloud-onboarding/deploy-the-authentication-template-in-aws.md): Learn how to deploy the Terraform or CloudFormation authentication template in Amazon Web Services.
- [Post-deployment: Custom (BYOB) and Control Tower audit log collection](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/amazon-web-services-cloud-onboarding/post-deployment-custom-byob-audit-log-collection.md)
- [Grant cross-account KMS key access for Control Tower BYOB log collection](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/amazon-web-services-cloud-onboarding/grant-cross-account-kms-key-access-for-control-tower-byob-log-collection.md): Learn how to configure cross-account AWS KMS key permissions for Cortex Control Tower BYOB log collection. Step-by-step guide to updating KMS key policies.
- [AWS post-deployment verification](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/amazon-web-services-cloud-onboarding/aws-post-deployment-verification.md): After you have completed the AWS onboarding wizard and you have deployed the authentication template in AWS (using CloudFormation or Terraform), verify that the deployment succeeded.
- [Microsoft Azure cloud onboarding](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/microsoft-azure-cloud-onboarding.md)
- [Onboard Microsoft Azure](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/microsoft-azure-cloud-onboarding/onboard-microsoft-azure.md): Follow the Azure onboarding wizard, and Cortex Data Security creates a custom authentication template to be executed in Azure.
- [Prerequisites for onboarding Azure](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/microsoft-azure-cloud-onboarding/prerequisites-for-onboarding-azure.md): Before you begin onboarding Microsoft Azure, you must review the following prerequisites.
- [How to onboard Microsoft Azure](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/microsoft-azure-cloud-onboarding/how-to-onboard-microsoft-azure.md): Follow the Azure onboarding wizard, and Cortex creates a custom authentication template to be executed in Azure.
- [Finalize Microsoft Azure onboarding by executing the authentication template](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/microsoft-azure-cloud-onboarding/finalize-microsoft-azure-onboarding-by-executing-the-authentication-template.md): Learn how to execute the authentication template file in Microsoft Azure for subscriptions, tenants, and management groups. We provide instructions both for applying the Terraform template's configura
- [Microsoft Azure offboarding overview](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/microsoft-azure-cloud-onboarding/microsoft-azure-offboarding-overview.md): This section contains the technical procedures required to safely decommission and offboard your Cortex Data Security resources in Microsoft Azure.
- [Offboard Terraform-based Azure deployments (all scopes)](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/microsoft-azure-cloud-onboarding/microsoft-azure-offboarding-overview/offboard-terraform-based-azure-deployments-all-scopes.md): How to offboard all Terraform-based Microsoft Azure scopes from Cortex Data Security: A step-by-step technical guide to safely running Terraform destroy and cleaning up policy-deployed resources.
- [Offboard Azure subscription (ARM)](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/microsoft-azure-cloud-onboarding/microsoft-azure-offboarding-overview/offboard-azure-subscription-arm.md): How to offboard a Microsoft Azure subscription scope that was onboarded using ARM: A step-by-step technical guide to safely running the interactive offboarding script and cleaning up all resources.
- [Offboard Azure management group or tenant scope (ARM)](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/microsoft-azure-cloud-onboarding/microsoft-azure-offboarding-overview/offboard-azure-management-group-or-tenant-scope-arm.md): How to offboard Microsoft Azure management group or tenant scopes from Cortex Cloud: A step-by-step technical guide to safely removing all Azure resources deployed by Cortex onboarding templates.
- [Offboard Azure tenant with Entra ID only](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/microsoft-azure-cloud-onboarding/microsoft-azure-offboarding-overview/offboard-azure-tenant-with-entra-id-only.md): How to offboard a Microsoft Azure tenant onboarded with the Entra ID only option from Cortex Data Security: A step-by-step technical guide to safely removing deployed resources.
- [Google Cloud Platform cloud onboarding](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/google-cloud-platform-cloud-onboarding.md)
- [Onboard Google Cloud Platform](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/google-cloud-platform-cloud-onboarding/onboard-google-cloud-platform.md): Follow the GCP onboarding wizard, and Cortex creates a custom authentication template to be executed in GCP.
- [Prerequisites for onboarding GCP](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/google-cloud-platform-cloud-onboarding/prerequisites-for-onboarding-gcp.md): Before you begin onboarding GCP, you must review the following prerequisites.
- [How to onboard Google Cloud Platform](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/google-cloud-platform-cloud-onboarding/how-to-onboard-google-cloud-platform.md): Follow the GCP onboarding wizard, and Cortex Data Security creates a custom authentication template to be applied in GCP.
- [Deploy the Terraform authentication template in GCP](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/google-cloud-platform-cloud-onboarding/deploy-the-terraform-authentication-template-in-gcp.md): Learn how to deploy the Terraform authentication template in Google Cloud Console.
- [Connect Google Workspace with your GCP cloud instance](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/google-cloud-platform-cloud-onboarding/connect-google-workspace-with-your-gcp-cloud-instance.md)
- [Monitor GCP resources inside service perimeters](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/google-cloud-platform-cloud-onboarding/monitor-gcp-resources-inside-service-perimeters.md): Learn how to grant authorization to Cortex Data Security to scan within your GCP service perimeter.
- [Oracle Cloud Infrastructure cloud onboarding](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/oracle-cloud-infrastructure-cloud-onboarding.md): Follow the Oracle Cloud Infrastructure onboarding wizard and Cortex Data Security creates a custom Terraform authentication template to be deployed in Oracle Cloud Infrastructure.
- [Onboard Oracle Cloud Infrastructure](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/oracle-cloud-infrastructure-cloud-onboarding/onboard-oracle-cloud-infrastructure.md): Follow the OCI onboarding wizard, and Cortex creates a custom authentication template to be executed in OCI.
- [Prerequisites for onboarding OCI](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/oracle-cloud-infrastructure-cloud-onboarding/prerequisites-for-onboarding-oci.md): Before you begin onboarding Oracle Cloud Infrastructure, you must review the following prerequisites.
- [How to onboard Oracle Cloud Infrastructure](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/oracle-cloud-infrastructure-cloud-onboarding/how-to-onboard-oracle-cloud-infrastructure.md): Follow the OCI onboarding wizard and Cortex Data Security creates a custom authentication template to be applied in OCI.
- [Deploy the Terraform authentication template in OCI](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/oracle-cloud-infrastructure-cloud-onboarding/deploy-the-terraform-authentication-template-in-oci.md): Learn how to deploy the Terraform authentication template in Oracle Cloud Infrastructure.
- [Outpost onboarding](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding.md): Learn about outposts, which are a dedicated set of infrastructure resources that extends the reach of Cortex Data Security into your environment.
- [Outpost fundamentals and planning](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/outpost-fundamentals-and-planning.md): An outpost enables you to have security scans performed on infrastructure in a cloud account owned by you. Learn about outpost fundamentals and what to consider when planning your outpost.
- [Outpost creation workflow](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/outpost-creation-workflow.md): Learn about the creation process for an outposts, which facilitate security scanning performed on infrastructure in a cloud account owned by you.
- [Working with standard outposts](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/working-with-standard-outposts.md): Standard outposts are the recommended way to create dedicated set of infrastructure resources that extends the reach of Cortex Data Security into your environment.
- [Create a standard outpost](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/working-with-standard-outposts/create-a-standard-outpost.md): Instructions for creating a standard outpost while onboarding your CSP.
- [Working with Bringing your own Azure app (BYOA) outposts](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/working-with-bringing-your-own-azure-app-byoa-outposts.md): Using advanced settings while creating your outpost, you can deploy a Cortex Data Security Azure outpost using your own pre-created Entra ID app registration.
- [Task 1: Meet the prerequisites for Azure BYOA outposts](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/working-with-bringing-your-own-azure-app-byoa-outposts/task-1-meet-the-prerequisites-for-azure-byoa-outposts.md): You can customize your own Azure outpost by bringing your own app (BYOA). This page lists the prerequisites that must be met before customizing your outpost in this way.
- [Task 2: Create the app registration for the Azure BYOA outpost](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/working-with-bringing-your-own-azure-app-byoa-outposts/task-2-create-the-app-registration-for-the-azure-byoa-outpost.md): You can customize your own outpost for Azure by bringing your own app (BYOA). This page describes the steps for creating the app registration.
- [Task 3: Deploy the Azure BYOA outpost](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/working-with-bringing-your-own-azure-app-byoa-outposts/task-3-deploy-the-azure-byoa-outpost.md): You can customize your own outpost by bringing your own app (BYOA). This page describes the steps for deploying the Azure BYOA outpost.
- [Task 4: Verify the BYOA outpost deployment](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/working-with-bringing-your-own-azure-app-byoa-outposts/task-4-verify-the-byoa-outpost-deployment.md): You can customize your own Azure outpost by bringing your own app (BYOA). This page describes the steps for verifying your BYOA outpost deployment.
- [The shell script for Azure app registration](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/working-with-bringing-your-own-azure-app-byoa-outposts/the-shell-script-for-azure-app-registration.md)
- [Outpost troubleshooting](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/outpost-troubleshooting.md): Check here for solutions to issues that might occur while configuring, deploying, and operating outposts.
- [Outpost Cloud Service Provider (CSP) permissions](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/outpost-cloud-service-provider-csp-permissions.md): This page lists and explains the various roles and permissions needed for working with resources for outposts by CSP.
- [Amazon Web Services (AWS) outpost permissions](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/outpost-cloud-service-provider-csp-permissions/amazon-web-services-aws-outpost-permissions.md): List of Amazon Web Services (AWS) permissions for use during Cortex Data Security outpost onboarding to enable continuous monitoring in your cloud environment.
- [Microsoft Azure outpost permissions](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/outpost-cloud-service-provider-csp-permissions/microsoft-azure-outpost-permissions.md): List of Microsoft Azure provider outpost permissions for Cortex Data Security.
- [Google Cloud Platform (GCP) outpost permissions](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/outpost-onboarding/outpost-cloud-service-provider-csp-permissions/google-cloud-platform-gcp-outpost-permissions.md): List of Google Cloud Platform (GCP) permissions for use during Cortex Data Security onboarding outposts to enable continuous monitoring in your cloud environment.
- [Manually connect a cloud instance](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/manually-connect-a-cloud-instance-fix-tables.md)
- [Manage cloud instances](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/manage-cloud-instances.md)
- [Pending cloud instances](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/pending-cloud-instances.md)
- [Edit your onboarded CSP configuration](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/edit-your-onboarded-csp-configuration.md)
- [Update cloud permissions after Cortex release updates](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/update-cloud-permissions-after-cortex-release-updates.md)
- [Troubleshoot errors on cloud instances](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/troubleshoot-errors-on-cloud-instances.md)
- [Introduction to Terraform for Cloud service provider (CSP) onboarding](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/introduction-to-terraform-for-cloud-service-provider-csp-onboarding.md)
- [Cloud service provider permissions](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/cloud-service-provider-permissions.md)
- [Amazon Web Services (AWS) provider permissions](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/cloud-service-provider-permissions/amazon-web-services-provider-permissions.md): List of Amazon Web Services (AWS) permissions for use during Cortex Data Security onboarding to enable continuous monitoring in your cloud environment.
- [Microsoft Azure provider permissions](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/cloud-service-provider-permissions/microsoft-azure-provider-permissions.md): List of Microsoft Azure permissions for use during Cortex Data Security onboarding to enable continuous monitoring in your cloud environment.
- [Google Cloud Platform (GCP) provider permissions](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/cloud-service-provider-permissions/google-cloud-platform-gcp-provider-permissions.md): List of Google Cloud Platform (GCP) permissions for use during Cortex Data Security onboarding to enable continuous monitoring in your cloud environment.
- [Oracle Cloud Infrastructure provider permissions](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/csp-onboarding/cloud-service-provider-permissions/oracle-cloud-infrastructure-provider-permissions.md): List of Oracle Cloud Infrastructure (OCI) permissions for use during Cortex Data Security onboarding to enable continuous monitoring in your cloud environment.
- [FedRAMP onboarding](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/fedramp-onboarding.md)
- [Cortex Data Security federal compliance](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/fedramp-onboarding/cortex-cloud-federal-compliance.md)
- [Onboarding & configuration](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/fedramp-onboarding/onboarding-and-configuration.md)
- [Limitations & supported regions](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/fedramp-onboarding/limitations-and-supported-regions.md)
- [Post-onboarding](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/post-onboarding.md)
- [How to configure the scanning settings for supported services](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/post-onboarding/how-to-configure-the-scanning-settings-for-supported-services.md)
- [How to review errors in Cortex Data Security](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/post-onboarding/how-to-review-errors-in-cortex-data-security.md)
- [Cortex MCP Server](https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure/post-onboarding/cortex-mcp-server.md)


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://cortex-docs.paloaltonetworks.com/data-security-documentation/onboard-and-configure.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
