get_address_groups
Retrieve all multi-object address groups from Palo Alto firewalls to inspect existing group definitions and support policy analysis.
Instructions
[READ-ONLY] Retrieves all address groups that contain multiple address objects. Reads config at: /config/.../vsys/entry/address-group.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| firewall | No | Target firewall name (from firewalls.json). Required when multiple firewalls are configured; optional otherwise. |