> ## Documentation Index
> Fetch the complete documentation index at: https://docs.wirespeed.co/llms.txt
> Use this file to discover all available pages before exploring further.

# Palo Alto Networks Cortex

> Import alerts, manage endpoints, and quarantine or restore files from Cortex XDR/XSIAM

## Integrate Wirespeed with Palo Alto Networks Cortex

1. Log in to your Cortex XDR/XSIAM console
2. Navigate to **Settings** > **Configurations** > **Integrations** > **API Keys**
3. Click **+ New Key** to create a new key
   * Select **Standard** for security level
   * Select the **Security Admin** role
   * (optional) Input an expiration date
   * Click **Generate**
   * Copy your **Generated Key**
4. Log in to Wirespeed and navigate to Integrations > [**Add Integration**](https://app.wirespeed.co/settings/integrations?tab=browse)
5. Select **Palo Alto Networks Cortex**
6. Enter your **API Key**
7. Back in Cortex, locate your **API ID** by finding your new key in the table and locating the **ID** column
8. Add your **API ID** to Wirespeed
9. Back in Cortex, click the **Copy API URL** button
10. Paste the copied URL in the **Domain** field
11. Click **Integrate**

<Info>On first sync, Wirespeed fetches up to the newest **1,000** alerts.</Info>
