Edit Telemetry Settings
What is telemetry and how to edit the telemetry settings from the tenant management
page
| Where Can I Use This? | What Do I Need? |
- Strata Cloud Manager
- The Activation Console
- Strata Multitenant Cloud Manager
- Commercial or FedRAMP deployments
|
IAM role of Superuser,
Multitenant Superuser, Multitenant IAM Admin
|
Telemetry refers to the
device data collected from your
Next-Generation Firewall (NGFW) or Panorama and sent to Palo Alto Networks. This data
enables cloud-based applications to monitor and manage your devices efficiently.
Telemetry data improves visibility into device health and performance, supports capacity
planning and configuration management, and helps share threat intelligence across
platforms. It also enhances intrusion prevention capabilities and allows for the
evaluation and continuous improvement of threat signatures.
Telemetry settings are configured only at the tenant level. This means that all devices
associated with a specific tenant automatically inherit the telemetry configuration
defined for that tenant.
What is the default telemetry configuration?
By default, when you activate a product, telemetry is auto-enabled and the telemetry tier
is set to full. This default setting ensures that the most comprehensive set of
telemetry data is collected from the start, enabling robust monitoring, diagnostics, and
threat analysis.
You can modify the telemetry tier at any time through the Tenant Management page
to suit your data collection preferences.
What are the available telemetry tiers?
There are two telemetry tiers available, depending on the level of data you want to
transmit:
Full-This tier sends a complete set of telemetry data, including extensive
device health metrics, configuration summaries, threat activity, and performance
data for in-depth monitoring and analysis.
Diagnostic-This tier limits the scope of data collected and focuses on
basic diagnostic information required for troubleshooting and analysis.
Where is the Telemetry Data Stored?
Telemetry data is stored in a specific data residency region, which you can configure
during product activation or tenant creation.
If the tenant already includes Strata Logging Service, Strata Cloud Manager, or IoT
Security, the data region defaults to the region assigned to that product. In such
cases, you can’t manually select or change the data region.
The telemetry data from the PAN-OS and Panorama devices are transmitted to the data
residency region at fixed
transmission intervals.
Edit Telemetry Tier and Region
You can modify the telemetry configuration, such as the telemetry tier and data
residency region, at any time from the
Tenant Management page.
Changes made at the tenant level automatically apply to all devices associated
with that tenant, ensuring consistent telemetry behavior across your deployment.
If the data residency region is configurable, you have the flexibility to update
it to meet your organization’s data governance requirements.