Create an AI Runtime Security Deployment Profile for Panorama
Focus
Focus
AI Runtime Security

Create an AI Runtime Security Deployment Profile for Panorama

Table of Contents

Create an AI Runtime Security Deployment Profile for Panorama

Create an AI Runtime Security: Network intercept deployment profile in Customer Support Portal for Panorama support.
This page helps you to create a deployment profile in the Customer Support Portal for AI Runtime Security: Network intercept for Panorama support.
Before you begin, bring up your Panorama (Refer to Install the Panorama Virtual Appliance for bringing up Virtual Panorama).
Where Can I Use This?What Do I Need?
Panorama managed AI Runtime Security
On this page, you will:
  • Create a deployment profile in the Customer Support Portal for Panorama support.
  • Associate the deployment profile with a tenant service group (TSG).
  • (Optional) If you have an existing Panorama, associate the Panorama to Hub.
  1. Log in to the Palo Alto Networks Customer Support Portal.
  2. Select Products Software/Cloud NGFW Credits.
  3. Locate your credit pool and click Create Deployment Profile.
  4. Select AI Runtime Security (Instance) and click Next.
  5. Select PAN-OS 11.2.2 and above and click Next.
  6. Enter the AI Runtime Security details including Profile Name, Number of AI runtime security instances, and Planned vCPU per instance. (Review the AI Runtime Security Setup Prerequisites and Limitations page).
  7. Enable Panorama for Management (with Log Collector) to manage the firewall by Panorama. (Strata Cloud Manager is auto-selected by default).
  8. Create Deployment Profile.

Associate a Deployment Profile to a Tenant Service Group (TSG)

After creating your deployment profile, associate the deployment profile with a TSG.
  1. Log in to Palo Alto Networks Customer Support Portal.
  2. Select Products Software/Cloud NGFW Credits.
  3. Locate the credit pool you used to create the deployment profile and click Details.
  4. Locate your AI Runtime Security deployment profile for Panorama and click Finish Setup (Record the AUTH CODE).
    You're redirected to Hub to Activate Subscriptions based on Deployment Profile(s) and associate the deployment profile with a TSG.
  5. Select the customer support account used to create your deployment profile from the Customer Support Account drop-down.
  6. Select the tenant where you want the product to be activated.
    Verify that the Strata Logging Service is enabled for this tenant.
  7. Select the Region.
  8. Select the deployment profile you created previously.
    If you have any existing deployment profiles associated with your tenant, don't uncheck them. Doing so will disassociate them from the tenant.
  9. Select a Data Loss Prevention (DLP) instance. If you don't have one, select Create New.
  10. Enter a Description.
  11. Agree to the Terms and Conditions.
  12. Click Activate and record the Auth Code.
  13. To verify the successful TSG association, log in to Hub, select Common Services → Tenant Management and then select your tenant. (Panorama may take around 30 minutes to connect to the TSG).
    The deployment profile for Panorama support includes the following subscriptions:

Add Panorama to Hub as a Managed Device

  1. Log in to Hub.
  2. Navigate to Common Services → Device Associations.
  3. Select your tenant and click Add Devices.
  4. Select the devices and Save.
  5. Verify that your device is listed under the Device Associations tab.
    This step ensures that Panorama is recognized as a management device for your AI Runtime Security: Network intercept.
    Next, onboard a cloud account in Strata Cloud Manager for cloud assets discovery.