PLUG-7780 - When the monitoring definition service principle for VM monitoring in Azure is configured correctly on the Panorama plugin for Azure 3.0.x with PAN-OS 10.0.x, the service principal validation check displays as failed under Panorama > Azure > Setup > Service Principal . Please find the list of actions/permissions required to support monitoring for the Azure 3.0.1 plugin below: The list of permissions required to enable monitoring are as below: "actions": [ "Microsoft.Compute/virtualMachines/read", "Microsoft.Network/networkInterfaces/read", "Microsoft.Network/virtualNetworks/read", "Microsoft.Network/locations/serviceTags/read", "Microsoft.Network/loadBalancers/read", "Microsoft.Resources/subscriptions/resourcegroups/read", "Microsoft.Network/publicIPAddresses/read" ] With these permissions assigned to a service principal, validation will fail but the monitoring functionality is not affected and the 3.0.1 plugin will continue to function as designed.
... View more