- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
03-23-2026 11:03 AM
I would like to deploy an XDR
For IP address ranges in Google Cloud Platform (GCP), refer to these lists for IP address coverage for your deployment:
https://www.gstatic.com/ipranges/goog.json: IP address subnet ranges
https://www.gstatic.com/ipranges/cloud.json: IP address ranges associated with your region
Should I use all the IP address range in the region for example if I choose to use US Central region.
Should I include all the IP ranges data centers in US Central region for example : us-central1, us-central2, us-central3 all that belongs to us-central
or just us-central1 should be fine ?
Regards,
Vishwanath
03-23-2026 11:25 AM
Hello @KVishwan ,
Greetings for the day.
When deploying Cortex XDR, the preferred firewall configuration method is to allow traffic using FQDNs or Palo Alto Networks App-IDs rather than static IP addresses. This is because cloud IPs (especially in GCP) are dynamic and frequently change, making IP-based rules harder to maintain.
(If IP-Based Whitelisting Is Required)
If your environment strictly requires IP allowlisting, follow these best practices:
goog.jsoncloud.jsonIf your Cortex XDR tenant is hosted in a region like US Central, you should:
us-central1us-central2us-central3 (and any future expansions)us-central1) can cause disruptionsRestricting firewall rules too tightly (e.g., to a single IP range or sub-region) can lead to:
Best practice is to allow all documented GCP ranges relevant to Cortex XDR.
panw-xdr-installers-prod-us.storage.googleapis.com → agent installation/updatesglobal-content-profiles-policy.storage.googleapis.com → content updates
If this resolves your query, please consider marking the response as a solution and clicking "Like."
Thanks & Regards,
S. Subashkar Sekar
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!

