Skip to main content

Palo Alto GlobalProtect

This guide walks you through creating a Palo Alto GlobalProtect connector profile.

1. Prerequisites

  • Access to Palo Alto firewall (PAN-OS) with admin rights.
  • A user / admin account that will be used for creating API access.
  • Firewall management IP / hostname.

2. Create a User for API Access

  • Log in to the Palo Alto firewall (Web GUI).

  • Navigate to: Device → Administrators

    • Click Add.

    • Enter the following details:

      • Name: Choose a username.

      • Password: Set a strong password.

      • Role: Choose either:

        • Superuser (full access, not recommended for production), or
        • Custom role with at least API and GlobalProtect permissions.
    • Click OK and Commit the configuration.