All Palo Alto Networks next-generation firewalls can generate logs that provide an audit trail of firewall activities. For
Centralized Logging and Reporting, you must forward the logs generated on the firewalls to Panorama. You can then configure Panorama to aggregate the logs and forward them to remote logging destinations. If you forward logs to a Panorama virtual appliance, you don’t need to perform any additional tasks to enable logging. If you will forward logs to an M-Series appliance in Panorama mode or Log Collector mode, you must add the Log Collectors as managed collectors and assign them to Collector Groups to access, manage, and update the Log Collectors using Panorama. To determine which deployment best suits your needs, see
Plan a Log Collection Deployment.