For Palo Alto Networks next-generation CN-Series firewall, the IoT Security
solution uses machine learning (ML) to provide visibility of discovered IoT devices
based on the meta-data in the logs it receives from the firewall. IoT Security also
identifies vulnerabilities and assess risk in devices based on their network traffic
behaviors and dynamically updated threat feeds.
You can use the policy rule recommendations that IoT Security generates as
a reference when manually adding rules to your CN-Series firewall. IoT Security
always generates Security policy rule recommendations regardless of the PAN-OS
version.
IoT Security, an integral component of Palo Alto Networks' Cloud
Delivered Security Services, extends robust machine learning (ML) capabilities to
protect your CN-Series next-generation firewalls. This solution provides deep
visibility into discovered IoT devices by analyzing metadata within the logs
received from the firewall. IoT Security proactively assesses risks and identifies
vulnerabilities in devices by continuously monitoring network traffic behaviors and
integrating dynamically updated threat intelligence feeds. The core value is
achieving comprehensive security posture management across your containerized
environments.
You receive automated Security policy rule recommendations, which you use
as a critical reference when securing your CN-Series deployment. These
recommendations are generated consistently, providing immediate actionable guidance.
To activate this service, your IoT Security subscription utilizes Strata Logging
Service, which stores the necessary device data. Therefore, you require one
Strata Logging Service license per account, and you must ensure that your
CN-Series firewall is fully integrated with the Strata logging infrastructure.