Precision AI
Focus
Focus
Device Security

Precision AI

Table of Contents


Precision AI

Learn how to activate Device Security for your Precision AI subscription license.
If you purchased a Precision AI bundling license, follow these steps to activate your license.
The Precision AI subscription license is available only for PAN-OS hardware firewalls. You can't use the Precision AI subscription license with PAN-OS software firewalls.
To activate the Precision AI subscription license, you must associate Device Security with your firewalls and tenants. The other Precision AI features won't be available until you associate Device Security.
  1. Click the activation link in the email you received from to go to the Hub activation page.
  2. Choose the Customer Support Account that you want to use.
    If you only have one Customer Support Portal account associated with your username, the Customer Support Account is prepopulated.
  3. Allocate the product to the Recipient of your choice.
    Multiple Customer Support Portal accounts You can allocate your entire license to one recipient or you can share it with multiple recipients in a tenant hierarchy. What is a tenant?
    If you have an existing Strata Cloud Manager Essential or Pro license and want to use that Strata Cloud Manager instance, select the same TSG as your Strata Cloud Manager instance.
    If you don't have an existing Strata Cloud Manager instance, then the Precision AI activation process automatically creates a Strata Cloud Manager Essential instance in the same TSG for you.
    1. If you need just one tenant, use or rename the tenant provided. The name provided matches your Customer Support Portal account for convenience.
    2. (Optional) This step applies if you're a managed security service provider (MSSP), a distributed enterprise customer, or need multiple tenants. After you create the first tenant, you can Allocate to subtenant and use or rename the tenant provided.
      A subscription gets allocated on a tenant or a subtenant. This step is for choosing a tenant where you want to allocate a license, not for building a complete tenant hierarchy. You can create only a tenant and subtenant here, and you can choose to allocate a license to that subtenant.
      After activation, you can build out your tenant hierarchy as needed through tenant management. You can create your tenant hierarchy to reflect your existing organizational structure. You can also consider identity and access inheritance when creating the hierarchy, in addition to tenant hierarchy limits.
    3. Select Done.
  4. Choose the data ingestion Region, which is the region where Strata Logging Service is receiving data from firewalls.
  5. Optional Add Strata Logging Service.
    If you have Strata Logging Service and want to store the logs streamed to Device Security, add Strata Logging Service.
    1. Select a Strata Logging Service instance.
    2. Enter the amount of data log storage.
    3. The region is grayed out, but is autopopulated with the same region that you used for Strata Logging Service.
  6. Agree to the terms and conditions, and Activate.
    The activation process auto creates a single default tenant behind the scenes, and the product is activated in the tenant.
    This tenant, and any others created by this Customer Support Portal account, will have the Superuser role.
  7. Go to the Common ServicesDevice Associations tab to add firewalls to the tenant, associate them with the Device Security application, and then apply the Device Security subscription to them: Device Associations.