I tested for you.
It counts num. of profiles under "set profiles ...." cmd.
My testbed is PA-VM v11.1.3 and maximum number of profile is 375 (0x177)
===
admin@PA-VM> show system state filter cfg.general.max-profile
cfg.general.max-profile: 0x177
===
TEST Scenario and RESULT
After I configure bunch of dummy anti-virus profile and reaches to 375, add 376th profile and try to commit.
If it fails, the device is counting it as "profile". I marked it as "fail" in the table below
So, you should check following profiles
# set profiles ?
predefined
custom
add 376th
> custom-url-category custom-url-category
0
0
ok
> data-filtering data-filtering
0
0
fail
> data-objects data-objects
0
0
ok
> decryption decryption
1
0
fail
> dos-protection dos protection profile
0
0
ok
> file-blocking file-blocking
2
0
fail
> gtp gtp
0
0
fail**
> hip-objects hip-objects
0
0
ok
> hip-profiles hip profiles
0
0
fail
> sctp sctp
1
0
fail**
> sdwan-error-correction sdwan error correction profile
0
0
ok
> sdwan-path-quality sdwan path quality profile
20
0
ok
> sdwan-saas-quality sdwan saas quality profile
0
0
ok
> sdwan-traffic-distribution sdwan traffic distribution profile
0
0
ok
> spyware spyware
2
1
fail
> url-filtering url-filtering
1
0
fail
> virus virus
1
363
fail
> vulnerability vulnerability
1
1
fail
> wildfire-analysis wildfire-analysis
1
0
fail
TOTAL NUMBER OF PROFILES (all profiles)
30
365
TOTAL NUMBER OF PROFILES (only with failed profiles)
10
365
=375
** the feature is disabled by default, but predefined profiles are counted.
ADDITIONAL INFO
I could commit followings as 376th profile (means device does not count them as "security profile")
predefined
custom
add 1
Profile Group
ok
Log Forwarding
ok
Authentication
ok
Schedule
ok
SD-WAN Interface Profile
ok
... View more