AI Runtime Security Setup Prerequisites and Limitations
Focus
Focus
AI Runtime Security

AI Runtime Security Setup Prerequisites and Limitations

Table of Contents

AI Runtime Security Setup Prerequisites and Limitations

A list of AI Runtime Security prerequisites and limitations.
Where Can I Use This?What Do I Need?
  • AI Runtime Security

Prerequisites

  • AI Runtime Security License.
  • Review the AI Models on Public Clouds Support Table.
  • Terraform version > 1.3 and < 2.
  • Each AI Runtime Security: Network intercept (firewall) requires a minimum of 4 vCPUs.
  • Helm (optional) if you want to protect the Kubernetes clusters.
  • Enable Cloud Management for AI Runtime Security: Network intercept using Strata Cloud Manager.
    Contact Palo Alto Networks support or your account team and provide the following information: tenant service group (TSG) ID, tenant name, and region.

Limitations

  • Licensing Capacity Limit: Limited to processing up to 10K AI transactions per day per vCPU of AI Runtime Security: Network intercept.
  • The following regions are supported:
    • Strata Cloud Manager and tenant service group (TSG): US region only.
    • Cloud Service Providers (AWS, Azure, and GCP): Any region supported.
    • Log Storage and AI Traffic Processing:
      • All logs are stored in the US region.
      • All AI traffic is sent to the US region for threat inspection.
  • AI Runtime Security is only supported for public clusters on GCP, Azure, and AWS cloud platforms.