Palo Alto Firewall Fundamentals | 13.Administrator and Admin roles

Опубликовано: 29 Август 2026
на канале: ZabExplains
1,218
12

In this video you will learn how to add Users and Administrators to the Palo Alto Device and also you will learn how to restrict access to services to the administrator based on the Admin Roles.

A role defines the type of access that an administrator has to the firewall. The Administrator Types are:
Role Based—Custom roles you can configure for more granular access control over the functional areas of the web interface, CLI, and XML API. For example, you can create an Admin Role profile for your operations staff that provides access to the firewall and network configuration areas of the web interface and a separate profile for your security administrators that provides access to security policy definitions, logs, and reports. On a firewall with multiple virtual systems, you can select whether the role defines access for all virtual systems or specific virtual systems. When new features are added to the product, you must update the roles with corresponding access privileges: the firewall does not automatically add new features to custom role definitions. For details on the privileges you can configure for custom administrator roles, see Reference: Web Interface Administrator Access.
Dynamic—Built-in roles that provide access to the firewall. When new features are added, the firewall automatically updates the definitions of dynamic roles; you never need to manually update them. The following table lists the access privileges associated with dynamic roles.