Streamlined Device Onboarding

Assign new devices to a device group, template stack, Collector Group, or Log Collector when adding them to the Panorama™.
When adding new firewalls to be managed from a Panorama™ management server, you must assign firewalls to a device group and template stack in order to push the firewall configuration, and you must specify a Collector Group and a Log Collector to collect logs. PAN-OS 9.0 introduces the ability to associate new firewalls with a device group, template stack, Collector Group, and Log Collector during the initial firewall deployment. Additionally, you can enable the Panorama management server to automatically push the firewall configuration to the firewalls when they first connect to the Panorama management server. Automatically pushing the firewall configuration on the first connection to Panorama is supported only on firewalls not previously managed by a Panorama management server.
Streamlined Device Onboarding is supported on firewalls with a single virtual system and helps you to streamline and automate the device deployment procedure by allowing you to assign the new firewalls to their various configuration components as you add them. By enabling Panorama to automatically push the firewall configuration as soon as the firewall has connected to Panorama, you ensure that the firewall is configured correctly and promptly, which helps reduce firewall deployment downtime and quickly secures your network.
  1. Configure the firewall to connect to the Panorama management server.
    Repeat this step for all firewalls you want to manage using the Panorama management server.
    1. Select
      Device
      Setup
      Management
      and edit the
      Panorama Settings
      .
    2. Enter the IP address of the Panorama management server and click
      OK
      .
    3. Click
      Commit
      and then
      Commit
      again to commit your changes.
  2. Add your managed devices.
    • Add one or more managed devices.
      1. Add
        a new managed device (
        Panorama
        Managed Devices
        Summary
        ).
      2. Enter the firewall
        Serial
        number. If you are adding multiple firewalls, enter each serial number on a separate line.
      3. Select
        Associate Devices
        and click
        OK
        .
      4. Assign the
        Device Group
        ,
        Template Stack
        ,
        Collector Group
        , and
        Log Collector
        as needed from the drop-down for each column.
      5. Enable
        Auto Push on 1st connect
        check box to automatically push the device group and template stack configuration to new devices when they successfully connect to Panorama.
        The
        Auto Push on 1st Connect
        option is only supported only on firewalls running PAN-OS 8.1 or later releases. The
        commit all
        job executes from Panorama to managed devices running PAN-OS 8.1 and later releases.
      6. Click
        OK
        to add the devices.
    • Bulk import multiple devices using a comma-separated values (CSV) file.
      1. Add
        a new managed device (
        Panorama
        Managed Devices
        Summary
        ).
      2. Click
        Import
        .
      3. Download Sample CSV
        and edit the downloaded CSV file with the firewalls you are adding. Save the CSV after you have finished editing it.
      4. Browse
        and select the CSV file you edited in the previous step.
      5. If not already assigned in the CSV, assign the firewalls a
        Device Group
        ,
        Template Stack
        ,
        Collector Group
        , and
        Log Collector
        as needed from the drop-down for each column.
      6. If not already enabled in the CSV, enable
        Auto Push on 1st connect
        to automatically push the device group and template stack configuration to the new devices when they successfully connect to Panorama.
      7. Click
        OK
        to add the devices.
  3. Click
    Commit
    Commit to Panorama
    and
    Commit
    your changes.
  4. Select
    Panorama
    Managed Devices
    Summary
    and verify that the new managed devices successfully
    Connected
    to the Panorama management server.

Recommended For You