Edit the Cloud Content Settings to specify the server used by the firewall to handle
inline cloud analysis service requests for Advanced Threat Prevention.
To take advantage of inline cloud analysis, you must have a persistent, active cloud
connection used by the firewall to handle inline cloud analysis service requests.
When the Advanced Threat Prevention license is enabled, the firewall performs PAN-DB
URL categorization lookups as part of its internal processing, independent of any URL
Filtering license or explicit cloud inline configuration. This is facilitated by the
Cloud Content FQDN.
The default FQDN connects to
hawkeye.services-edge.paloaltonetworks.com and then
resolves to the closest cloud services server. You can override the automatic server
selection by specifying a regional cloud content server that best meets your data
residency and performance requirements.
The Cloud Content FQDN is a globally used resource and affects how other services
that rely on this connection send traffic payloads.