Workflows: Device Management
Focus
Focus
Strata Cloud Manager

Workflows: Device Management

Table of Contents

Workflows: Device Management

Learn about how to manage your onboarded firewalls.
Where Can I Use This?What Do I Need?
  • NGFW (Managed by Strata Cloud Manager)
  • AIOps for NGFW Premium
A Palo Alto Networks NGFW that is managed by Strata Cloud Manager is called a Cloud Managed Device. Strata Cloud Manager can manage firewalls running PAN-OS 10.2.3 or newer.
For more information about prerequisites for Strata Cloud Manager, click here.
With the Device Management dashboard (WorkflowsNGFW SetupDevice Management) you can review important device and version details about all your managed devices and select which devices to move to cloud management.

See All Cloud Managed NGFWs Details

The Cloud Managed Devices tab (WorkflowsNGFW SetupDevice ManagementCloud Managed Devices) displays all of your SCM onboarded firewalls, the folders they are assigned to, and important details about them.
Device InformationDescription
NameThe name of the NGFW and the folder(s) it is organized under.
LabelsAny labels attached to the NGFW.
Config Sync Status
The synchronization status of the NGFW:
  • Synced
  • Out of Sync
HA Status
The HA Status of the onboarded NGFW:
  • Active—Normal traffic-handling operational state.
  • Passive—Normal backup state.
  • Initiating—The firewall is in this state for up to 60 seconds after bootup.
  • Non-functional—Error state.
  • Suspended—An administrator disabled the firewall.
  • Tentative—For a link or path monitoring event in an active/active configuration.
Serial NumberThe serial number of the onboarded NGFW.
ModelThe model number of the onboarded NGFW.
Type
They type of the onboarded NGFW:
  • VM
  • PA
AddressThe IP Address of the onboarded NGFW.
License
The license information for the onboarded NGFW
  • Matched
  • Mismatched
Software Version | App and Threat | Antivirus | URL FilteringDisplays the software and content versions that are currently installed on the firewall. For details, see Firewall Software and Content Updates.
Device DictionaryA file for firewalls to import. The dictionary file provides the Strata Cloud Manager and firewall administrator with a list of device attributes for selection when importing recommended security policy rules.
Actions
The actions for the onboarded firewall:
  • Fetch License Info
  • Reboot
  • Change Routing Mode
  • Local Config Management
  • Force Boot Strap

Remove a NGFW from the Cloud Managed Devices

The Available Devices tab displays all of your NGFWs available to onboard to SCM and NGFWs already managed by Strata Cloud Manager.
For more information about the onboarding process for Strata Cloud Manager, click here.
You can use the available devices tab to move devices in and out of Strata Cloud Manager.
  1. Log in to Strata Cloud Manager.
  2. Select WorkflowsNGFW SetupDevice ManagementAvailable Devices.
    1. Select Back to Available Devices to move a firewall out of Strata Cloud Manager.

Restore a Local Configuration Version Snapshot on the Firewall

Follow these steps to restore any version of the local configuration on your firewall and download the configuration details in XML format.
  1. Log in to Strata Cloud Manager.
  2. Select WorkflowsNGFW SetupDevice Management, then select Local Configuration Management from the available Actions.
  3. Load the version to restore the local configuration.
  4. Click Yes to replace the current local configuration on the firewall with the selected version
    You can use the Jobs view to troubleshoot failed operations, investigate warnings associated with completed commits, or cancel pending commits.
  5. Download configuration details for the selected version.