I'm evaluating the UDT module (2019.4) and was looking at the Palo Alto CLI poller integration. Supposedly this is able to pull Layer2/Layer3 information. I have added the Palo Alto as a "node" and have tested that the CLI poller is able to access the node.
A large portion of our company are currently using VPN. Although they can be discovered in UDT and show up as a node, they do not show up as a "device" and are not trackable. It doesn't seem that the Palo Alto CLI poller actually does anything.
I was look at UDT to be able to track "online" devices within our organization so we can keep an accurate inventory of what we should be expecting for our devices other "agents" that run on the endpoints, using a count of user endpoint devices to reconcile other vendor services for accuracy.
Does anyone else have a similar experience with Palo Altos and UDT?