Home
EN
Location
Documentation Home
Palo Alto Networks
Support
Live Community
Knowledge Base
MENU
Home
Security Operations
Cortex XSOAR
Cortex XSOAR Administrator’s Guide
Distributed Database Deployment
Sizing Requirements for Distributed Database Deployment
Document:
Cortex XSOAR Administrator’s Guide
Sizing Requirements for Distributed Database Deployment
Download PDF
Last Updated:
Mon Jul 04 23:14:26 PDT 2022
Current Version:
5.5 (EoL)
Version 6.0 (EoL)
Version 5.5 (EoL)
Table of Contents
Search the Table of Contents
Cortex XSOAR Overview
Cortex XSOAR Licenses
Add a License
Product Support Lifecycle
Cortex XSOAR Telemetry
Cortex XSOAR Concepts
Use Cases
Keyboard Shortcuts
How to Search in Cortex XSOAR
Configure System Notifications
Install DBot for Slack
Single Server Deployment
System Requirements
Performance Benchmark
Install Cortex XSOAR for a Single Server Deployment
Installer Flags
Install Cortex XSOAR Offline
Dependencies for Offline Installation
Post-Installation Checklist
Server Post-Installation Health Check
Monitor Cortex XSOAR Components
HTTPS with a Signed Certificate
Create a Private Key and Certificate Signing Request (CSR)
AWS EC2 Deployment Guidelines
Upgrade the Cortex XSOAR Server
Uninstall Cortex XSOAR
Distributed Database Deployment
Distributed Database Deployment
Sizing Requirements for Distributed Database Deployment
Install Cortex XSOAR for a Distributed Database Deployment
Install a Distributed Database Node
Configure a Live Backup for a Distributed Database Overview
Configure the Live Backup Environment for a Distributed Database
Transition a Standby Server to Active Mode
Transition an Active Server to Standby Mode for a Distributed Database
Change the Node Admin Password
Delete a User from a Node
Convert a Single Server Deployment to a Distributed Database Deployment
Reindex Databases in a Distributed Database Deployment
Restore Databases in a Distributed Database Deployment
Upgrade the Cortex XSOAR Server for a Distributed Database
Proxy
Configure Proxy Settings
Use NGINX as a Reverse Proxy to the Cortex XSOAR Server
Install NGINX on Cortex XSOAR
Generate a Certificate for NGINX
Configure NGINX
Manage Data
Reindex the Entire Database
Reindex a Specific Index Database
Reindex the Entire Database for a Distributed Database
Reindex a Specific Index for a Distributed Database
Free up Disk Space with Data Archiving
Migrate Data to Another Server
Move Data Folders to Another Location on the Server
Restore an Archived Folder
Users and Roles
Users and Roles Overview
Roles in Cortex XSOAR
Define a Role
Default Admin
Self-Service Read-Only Users
Configure the Server for Self Service Read-Only Users
Create the Self Service Read-Only Users
Create the Read-Only Dashboard
Create the Read-Only Incident Type and Layout
User Settings and Preferences
Shift Management
Managing Shifts
User Invitations
Invite a User
Integration Permissions
Password Policy
Create a Password Policy
Edit a Default Password Policy
Default Password Policy Keys
Change the Administrator Password
Authenticate Users with SAML 2.0
Set up Okta as the Identity Provider Using SAML 2.0
Create Okta Groups for Cortex XSOAR Users
Define the Okta Application to authenticate Cortex XSOAR
SAML Settings for the Okta Application
Configure the SAML 2.0 Integration for Okta
SAML 2.0 Okta Parameters
Map Okta Groups to Cortex XSOAR Roles
Set up Microsoft Azure as the Identity Provider
Create a Non-Gallery Application in Azure
Define Azure to authenticate Cortex XSOAR
Configure the SAML 2.0 Integration for Azure
SAML 2.0 Azure Parameters
Map Azure Groups to Cortex XSOAR Roles
Set up ADFS as the Identity Provider Using SAML 2.0
Create Relying Party Trust in ADFS
Define the Claim Issuance Policy
Configure the SAML 2.0 Integration for ADFS
SAML 2.0 ADFS Parameters
Map ADFS Groups to Cortex XSOAR Roles
Configure User Notifications
Set the Default Theme for New Users
Disaster Recovery and Live Backup
Disaster Recovery and Live Backup Overview
Host Names, DNS, and Disaster Recovery
Configure the Live Backup Environment
Configure Live Backup for Multiple SAMLs
DR Scenario: Testing the DR Environment
DR Scenario: Unrecoverable Active Server Failure
DR Scenario: Unrecoverable Standby Server Failure
Transition an Active Server to Standby Mode
Transition a Standby Server to Active Mode
Transition Between DR States Through the Configuration File
Upgrade the Live Backup Environment
Cortex XSOAR Engines and Disaster Recovery
Backup the Database
Restore the Database
Remote Repositories in Cortex XSOAR
Remote Repositories Overview
Configure a Remote Repository on a Development Machine
Configure a Remote Repository on the Production Machine
Edit and Push Content to a Remote Repository
Troubleshoot a Remote Repository Configuration
Troubleshoot a Remote Repository Definition
Troubleshoot Editing and Pushing Content
Troubleshoot Content Issues
Engines
Cortex XSOAR Engines Overview
Install Cortex XSOAR Engines
Run the Engine as a Service on Windows
Use an Engine in an Integration
Manage Engines
Configure Engines
Edit the Engine Configuration
Common Properties When Editing an Engine Configuration
Configure the Engine to Use a Web Proxy
Configure the Engine to Call the Server Without Using a Proxy
Configure the Number of Workers for the Server and Engine
Configure Access to Communication Tasks through an Engine
Notify Users When an Engine Disconnects
Remove the Cortex XSOAR Server From the Load-Balancing Group
Remove an Engine
Troubleshoot Cortex XSOAR Engines
Troubleshoot Engine Upgrades
Docker
Docker Installation
Install Docker Enterprise Edition on Cortex XSOAR
Install Docker Community Edition on Cortex XSOAR
Update Container-Selinux
Install Docker Distribution for Red Hat on Cortex XSOAR
Install Docker Images Offline
Configure Python Docker Integrations to Trust Custom Certificates
Docker Images in Cortex XSOAR
Manage Docker Images
Create a Docker Image In Cortex XSOAR
Docker Hardening Guide
Configure Memory Limit Support Without Swap Limit Capabilities
Run Docker with Non-Root Internal Users
Use a Docker Image for Python Scripts
Configure the Memory Limitation
Test the Memory Limit
Limit Available CPU
Configure the PIDs Limit
Configure the Open File Descriptors Limit
Troubleshoot Docker Networking Issues
Run Docker with Non-Root Internal Users
Dashboards
Dashboard Overview
Create a Dashboard