Platform, element, and license requirements
This reference provides the specific requirements for hosting platforms, managed elements, and licensing necessary to deploy and operate Threat Intelligence Director in your environment.
Hosting platforms
You can host Threat Intelligence Director on physical and virtual Cloud-Delivered Firewall Management Centers
-
running version 6.2.2 or later,
-
configured with a minimum of 15 GB of memory, and
-
configured with REST API access enabled. See Enable REST API access.
Elements
You can use any Cloud-Delivered Firewall Management Center-managed device as a Threat Intelligence Director element if the device is running version 6.2.2 or later.
Licensing
To configure the file policies for SHA-256 observable publishing, you need licensed devices with specific requirements:
-
For smart licensed devices:
-
IPS License: For IPv4, IPv6, URL, and DNS detection and observables
-
Malware Defense License: For SHA-256 detection and observables
-
-
For classic licensed devices:
-
Protect License: For IPv4, IPv6, URL, and DNS detection and observables
-
Malware License: For SHA-256 detection and observables
-
For more information, refer to Configure policies to support Threat Intelligence Director and Licenses.