I'm leaning towards B and D. The VM Orchestration Policy Editor would be a key tool for managing security policies as part of the provisioning process.
Options B and C seem the most relevant to the question. Palo Alto's support for Dynamic Address Groups and a fully instrumented API would definitely help with automated provisioning.
Yes, I agree with Valentin. Support for Dynamic Address Groups is also important for automatically provisioning security instances and policies on demand.
Elouise
5 days agoAlesia
7 days agoRosina
10 days agoMinna
10 days agoValentin
14 days ago