Next-Generation Firewall
Activate AIOps for NGFW
Table of Contents
Expand All
|
Collapse All
Next-Generation Firewall Docs
-
-
- Cloud Management of NGFWs
- PAN-OS 10.0 (EoL)
- PAN-OS 10.1
- PAN-OS 10.2
- PAN-OS 11.0
- PAN-OS 11.1
- PAN-OS 9.1
-
- PAN-OS 10.1
- PAN-OS 10.2
- PAN-OS 11.0
- PAN-OS 11.1
-
-
-
- Cloud Management and AIOps for NGFW
- PAN-OS 10.0 (EoL)
- PAN-OS 10.1
- PAN-OS 10.2
- PAN-OS 11.0
- PAN-OS 11.1
- PAN-OS 8.1 (EoL)
- PAN-OS 9.0 (EoL)
- PAN-OS 9.1
How to Activate AIOps for NGFW
Learn about how to activate AIOps for NGFW.
This content is for the cloud management of
Next-Generation Firewalls with
AIOps for NGFW
and Strata Cloud Manager
. To get
started managing Next-Generation Firewalls with PAN-OS
, click here.Where Can I Use This? | What Do I Need? |
---|---|
|
|
FedRAMP accounts cannot use . If you see
AIOps for NGFW
. To check if this applies to
you, sign in to your Customer Support Portal account and
select Account Management
Account Details
FedRamp Account
listed, then you
cannot use AIOps for NGFW
.
Here are the different scenarios for activating
AIOps for NGFW
:Scenario | Plan |
---|---|
Activating AIOps for NGFW Free | |
Activating AIOps for NGFW Premium (use Strata Cloud
Manager app) | |
Onboarding new devices to the activated AIOps for NGFW
Free instance | |
Onboarding new devices to the activated AIOps for NGFW
Premium (use Strata Cloud Manager app) |
Additionally,
AIOps for NGFW
supports the following licenses:- Activate Enterprise License Agreement (ELA) AIOps for NGFW Premium: The add-on for ELA is a consumption model for large enterprises to assign subscriptions in bulk to assets purchased from Palo Alto Networks. ELA offers the flexibility to enable licenses that are supported for a tenant or TSG.
- Activate a VM Flex License Agreement: The VM Flex is a VM series flexible consumption model based on tokens, compatible withAIOps for NGFWand is supported for a tenant or TSG.
Activate AIOps for NGFW (Free)
AIOps for NGFW
(Free) Activation requires the Account Administrator or App Administrator role.
- FindAIOps for NGFWand selectActivate.
- Complete the form.TenantSelect the tenant where the AIOps for NGFW instance will be activated. If you don’t have an existing tenant, selectCreate New.Customer Support AccountYour Customer Support Portal account ID.RegionThe deployment region and the region where your data logs are stored. See Regions for AIOps for NGFW.Cortex Data LakeTheCortex Data Lakefrom which you want to send data to AIOps for NGFW. If you have a logging CDL, you can associate it with AIOps for NGFW. Otherwise, you can skip it.If AIOps for NGFW is the first application being activated for the selected tenant, then you need to populate these fields. Otherwise, they will be auto populated.
- Agree to the Terms and ConditionsandActivate.
- AIOps for NGFW is ready afterStatusshowsComplete.
- Associate devices to a tenant containing your AIOps for NGFW instance.You need to associate Panorama to the tenant containing AIOps for NGFW if you are onboarding Panorama-managed deployments. Make sure to individually associate all the firewalls managed by Panorama as well.The devices that you associated with the tenant will be automatically added to AIOps for NGFW.
- For AIOps for NGFW Free activation, associating apps with devices is not required.
- You can associate devices to a tenant at the beginning of activation if you already have an existing tenant.
- You can remove device associations if, for example, you are retiring or returning a firewall or Panorama appliance, or if you want to associate it with another tenant service group (TSG).
- Log in to AIOps for NGFW by clicking on its icon in the hub.