This document describes how to create an admin role in Palo Alto Networks Panorama and push this role to managed devices. The example screenshots below represent a Panorama and devices running PAN-OS 8.0.x but also applies to previous and later versions
Steps
Under Panorama > Templates, create a template group and add the desired devices.
Under Device > Admin Roles, select the new template from the "Template" drop-down list and create a new admin role for the template group.
Click commit and select Panorama to simply save the changes to Panorama, if you want to continue preparing other configuration parts
Hit commit again and select the Commit and Push option to choose your group and device once you are ready to save your configuration to Panorama and commit the changes to the firewalls
Once the commit is complete your admin role will exist on the device