Setup steps
1) Create an API admin account with least-privilege role on the firewall or Panorama. 2) Add firewall management IP and API key to DTA Mind. 3) Configure Panorama for multi-device management if applicable. 4) Set approval policies for config changes. 5) Test with VPN tunnel status and policy hit count checks.