Device Certificate for a Palo Alto Networks Cloud Service
Review which Palo Alto Networks cloud service requires a device certificate.
A Palo Alto Networks cloud service is a cloud-hosted service maintained and
operated by Palo Alto Networks.
You must install the appropriate device certificate on NGFW, Panorama® management server appliances, and WildFire® appliances that are using the cloud
service that is running one of the following PAN-OS® versions:
PAN-OS 11.2.0 or a later PAN-OS 11.2 version
PAN-OS 11.1.0 or a later PAN-OS 11.1 version
PAN-OS 11.0.2 or a later PAN-OS 11.0 version
PAN-OS 10.2.5 or a later PAN-OS 10.2 version
PAN-OS 10.1.10 or alater PAN-OS 10.1 version
PAN-OS 9.1.8 or a later PAN-OS 9.1 version
Review the Palo Alto Networks cloud services listed below that require you to install a device
certificate before it will function as expected. Panorama management of NGFW, Dedicated Log Collectors, and WildFire appliances or downloading
content and software updates from the Palo Alto Networks update server does not require
a device certificate. You also do not need to install a device certificate to establish
communication between a NGFW and a WildFire appliance.
Cloud Service
Firewall
(Individual and Panorama-Managed)
Panorama
Enterprise Data Loss Prevention (E-DLP)
Yes
Yes
Advanced URL Filtering
Yes
No
Device Security
Yes
Yes
AIOps
Yes
Yes
App-ID Cloud Engine (ACE)
Yes
Yes
Cloud Services (Prisma® Access)
N/A
No
Device Telemetry
Yes
Yes
Inline Cloud Analysis
Also requires an Advanced Threat Protection license