Palo Alto Networks is migrating Discovery services to a new infrastructure. When
migrating consider the following:
- Add the following new perimeter firewall public IP addresses to your Azure
storage account allow list. Failure to update the allow list will result in
the cloud account being disabled following migration.
- After the infrastructure migration, existing Azure accounts will be
automatically disabled. To re-enable your account, add the new perimeter
firewall public IPs to your allow list, then re-enable the account in the
portal. These IP addresses are included below.
- Consider that the Cloud IP Tag (CIPT) continues to function during and after
migration even if the Azure account is temporarily disabled. Once re-enabled
after updating the IP allow list, CIPT resumes normal polling.
The CIPT enable-account API call is a no-op if CIPT
is already enabled.