Palo Alto Networks Cortex XDR Pro

Samurai [Local] CollectorSamurai [Cloud] CollectorSamurai [Cloud Native] Collector
Picture1.svg

To complete this Integration you will need to:

1) From your Cortex XDR Gateway:

2) From the Samurai MDR portal:

Configure an API Key to allow us to collect telemetry

Follow Steps 1-3 outlined within the Palo Alto Networks documentation:

Use the following parameters when completing the steps:

Field NameParameter
Security LevelStandard
Enable Expiration Datenot required (do not select)
RolesViewer

mceclip0.png Be sure to save a copy of the following information as it required to complete the integration:

  • API key (as noted in the documentation you will not be able to view it again!)
  • API KeyID
  • FQDN (for the Base URL e.g https://api-{fqdn}

Complete the Palo Alto Cortex XDR Pro Integration

  1. Login to the Samurai MDR portal
  2. Click Telemetry and select Integrations from the main menu
  3. Select Create
  4. Locate and click Palo Alto Networks Cortex XDR Pro
  5. Click Next (we leverage a Samurai Cloud Collector)
  6. Enter a Name of Integration
  7. Enter a Description (Optional)
  8. Enter your Device Name
  9. Enter the URL, API KeyID and API Key created in Configure an API Key to allow us to collect telemetry
  10. Click Finish

mceclip0.png For general information on Integrations refer to the Integrations article.

Our Integration guide was accurate at the time of writing but vendors change things frequently! If you find errors or anything is outdated, let us know by raising a request in the Samurai MDR application and we shall get it updated.