I'm leaning towards B and D. The VM Orchestration Policy Editor would be a key tool for managing security policies as part of the provisioning process.
Options B and C seem the most relevant to the question. Palo Alto's support for Dynamic Address Groups and a fully instrumented API would definitely help with automated provisioning.
Yes, I agree with Valentin. Support for Dynamic Address Groups is also important for automatically provisioning security instances and policies on demand.
Elouise
19 days agoAlesia
21 days agoRosina
24 days agoMinna
24 days agoValentin
28 days ago