Integrate with a Palo Alto firewall
In this topic, you will learn how to set up Portnox™ Cloud to send user-to-IP mappings to a Palo Alto Networks firewall.
This integration lets the Palo Alto firewall apply policies and log activity by user identity instead of IP address. Portnox Cloud sends the mappings through the firewall identity mapper Docker container, which uses the Palo Alto User-ID XML API.
Configure the Palo Alto firewall
In this section, you will create an administrator account on the Palo Alto firewall and generate an API key for it.
Add and deploy a Docker container
In this section, you will add a firewall identity mapper container in Portnox Cloud and run it on your Docker host.
Result: The container appears in the User-ID mapping section.

Add the firewall connection
In this section, you will connect the container to your Palo Alto firewall.
Result: Portnox Cloud sends user-to-IP mappings to the Palo Alto firewall when users authenticate.







