: Panorama CloudConnector Plugin 3.0.2
Focus
Focus

Panorama CloudConnector Plugin 3.0.2

Table of Contents

Panorama CloudConnector Plugin 3.0.2

What is new for Panorama CloudConnector Plugin 3.0.2 (For AIOps and Cloud NGFW for AWS)
Panorama® CloudConnector Plugin 3.0.2 introduces support for Strata Cloud Manager-Panorama Configuration Sync, which enables Strata Cloud Manager to synchronize snippet-based configurations directly to Panorama device groups and templates. This feature keeps your on-premises and cloud-managed policies synchronized without manual intervention.
In addition to the existing synchronization support for Policy Optimizer and Config Cleanup features, Strata Cloud Manager-Panorama Configuration Sync uses a Thermite device certificate to authenticate all traffic between Panorama and Strata Cloud Manager.
After installing the CloudConnector Plugin, enable the plugin using the following command:
> request plugins cloudconnector enable basic
To enable the Strata Cloud Manager-Panorama Configuration Sync feature, use the following command:
> request plugins cloudconnector scm-panorama-config-sync enable yes
Use the following command to enable or disable the synchronization after you enable the CloudConnector plugin:
> request plugins cloudconnector sync disable Disable cloud connector sync functionality enable Enable cloud connector sync functionality > request plugins cloudconnector sync enable
For instructions on preparing your Panorama for Strata Cloud Manager-Panorama Configuration Sync, including configuring the Strata Cloud Manager Service URL and fetching the Thermite device certificate, see Prepare Panorama for SCM-Panorama Configuration Sync.
  • You must install CloudConnector Plugin version 3.0.2 to use the Strata Cloud Manager-Panorama Configuration Sync feature if your Panorama is running a PAN-OS version earlier than 12.1. If you want to use PAN-OS 12.*, you must upgrade to 12.1.9, which includes CloudConnector Plugin 3.0.2 bundled into it.
  • If you have already installed both the AIOps plugin and the CloudConnector plugin, uninstall the AIOps plugin, as they are identical and only the name has changed. Ensure that you have only one plugin installed, which is the latest version of the CloudConnector plugin.
If you installed the AIOps plugin on PAN-OS 10.2.3 and then upgraded to PAN-OS 11.0.1 or later, a default version of a plugin is installed with the new PAN-OS version. This results in both plugins being present on Panorama. In this case, follow these steps:
  1. In the Panorama web interface, select Panorama > Plugins and Uninstall the AIOps plugin.
  2. Enable the CloudConnector plugin:
    > request plugins cloudconnector enable basic
If you upgrade to PAN-OS 11.0.* or 11.1.* without the CloudConnector plugin installed, you can receive an incorrect plugin version by default. To resolve this, uninstall the incorrect version and install the latest CloudConnector plugin.
The following table shows the support for CloudConnector Plugin 3.0.2.
CloudConnector Plugin 3.0.2 Support and Installation
Panorama Version RangeInstallation Method
10.2.x10.2.3 and later
Manual Download
Download via Customer Support Portal or Panorama > Plugins.
11.xAll Versions
Manual Download
Download via Customer Support Portal or Panorama > Plugins.
12.1.x12.1.4
CloudConnector Plugin 3.0.0 is preinstalled.
12.1.7
CloudConnector Plugin 3.0.1 is preinstalled.
12.1.9 and later
CloudConnector Plugin 3.0.2 is preinstalled.