Configure Palo Alto Networks Prisma Access to send logs to Arctic Wolf
You can configure Palo Alto Networks (PAN) Prisma Access® to send the necessary logs to Arctic Wolf® for security monitoring.
Note: If you are collecting firewall logs through Strata Cloud Manager and have previously integrated your Palo Alto Networks firewalls with Arctic Wolf using syslog, you may want to disable the Palo Alto Networks firewall syslog integration with Arctic Wolf. Doing so can help prevent the ingestion of duplicate log data and reduce the risk of generating duplicate alerts.
These resources are required:
- Administrator permissions for the Strata Cloud Manager
- One of these license combinations:
- Strata Cloud Manager Pro
- Strata Cloud Manager Essentials and Strata Logging Service standalone licenses
For more information, see Strata Logging Service License.
Get the webhook username, password, and URL
- Sign in to the Arctic Wolf Unified Portal.
- In the navigation menu, click .
- Click Add Account +.
- On the Add Account page, click Prisma Access.
- In the Name field, enter a unique and descriptive name for the account.
- Click Generate Token.
- Copy the Username, Password, and Webhook URL to a safe, encrypted location to provide to Palo Alto Networks in Configure log forwarding in Strata Cloud Manager.