<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Prisma Access - Global Protect: No Source NAT in Prisma Access Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/prisma-access-discussions/prisma-access-global-protect-no-source-nat/m-p/517872#M416</link>
    <description>&lt;P&gt;If you managed to get the needed answers, please flag the question as answered.&lt;/P&gt;</description>
    <pubDate>Thu, 13 Oct 2022 21:21:34 GMT</pubDate>
    <dc:creator>nikoolayy1</dc:creator>
    <dc:date>2022-10-13T21:21:34Z</dc:date>
    <item>
      <title>Prisma Access - Global Protect: No Source NAT</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-access-discussions/prisma-access-global-protect-no-source-nat/m-p/504438#M373</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am new to Prisma Access.&lt;/P&gt;&lt;P&gt;We have done the setup as per PAN.&lt;/P&gt;&lt;P&gt;My question is as follow:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How do you disable source NAT for traffic in Prisma Access for Global Protect, that is going to your internal DC`s?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kind Regards,&lt;/P&gt;&lt;P&gt;Micheal Swart&lt;/P&gt;</description>
      <pubDate>Fri, 17 Jun 2022 08:06:45 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-access-discussions/prisma-access-global-protect-no-source-nat/m-p/504438#M373</guid>
      <dc:creator>MichealSwart</dc:creator>
      <dc:date>2022-06-17T08:06:45Z</dc:date>
    </item>
    <item>
      <title>Re: Prisma Access - Global Protect: No Source NAT</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-access-discussions/prisma-access-global-protect-no-source-nat/m-p/504450#M374</link>
      <description>&lt;P&gt;Are you talking abound Inbound Access that allows access over the Internet to internal applications where you access the internal DC application using a Prisma Access Public IP address? If so then see:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;-----------&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You must&lt;/P&gt;
&lt;DIV style="display: inline;"&gt;Enable source NAT&lt;/DIV&gt;
&lt;P&gt;in the&lt;/P&gt;
&lt;DIV style="display: inline;"&gt;Inbound Access&lt;/DIV&gt;
&lt;P&gt;&lt;LI-WRAPPER&gt; tab if you select this check box. Source NAT is a requirement to allow inbound flows to other remote networks.&lt;/LI-WRAPPER&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;--------&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/prisma/prisma-access/prisma-access-panorama-admin/prisma-access-advanced-deployments/prisma-access-remote-network-advanced-deployments/provide-secure-inbound-access-to-remote-network-locations/configure-secure-inbound-access-for-remote-network-sites/configure-secure-inbound-access-for-remote-network-sites-for-locations-that-allocate-bandwidth-by-location" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/prisma/prisma-access/prisma-access-panorama-admin/prisma-access-advanced-deployments/prisma-access-remote-network-advanced-deployments/provide-secure-inbound-access-to-remote-network-locations/configure-secure-inbound-access-for-remote-network-sites/configure-secure-inbound-access-for-remote-network-sites-for-locations-that-allocate-bandwidth-by-location&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/prisma/prisma-access/prisma-access-cloud-managed-admin/secure-remote-networks-with-prisma-access/secure-inbound-access" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/prisma/prisma-access/prisma-access-cloud-managed-admin/secure-remote-networks-with-prisma-access/secure-inbound-access&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/prisma/prisma-access/prisma-access-panorama-admin/prisma-access-advanced-deployments/prisma-access-remote-network-advanced-deployments/provide-secure-inbound-access-to-remote-network-locations" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/prisma/prisma-access/prisma-access-panorama-admin/prisma-access-advanced-deployments/prisma-access-remote-network-advanced-deployments/provide-secure-inbound-access-to-remote-network-locations&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Edit:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also in many cases X-Forwarded-For &lt;SPAN&gt;(&lt;EM&gt;XFF&lt;/EM&gt;)&lt;/SPAN&gt; HTTP header insertion will help as the servers will be able to see the real client ip or for cloud applications that may use this when going to the Internet but for some reason when I talked with Palo Alto they don't think this feature is needed at all but I think it is as when going to a web site in Internet not in a Remote Network or Service location many proxy have this option as then the client ip address is always changed to the one the on-prem or cloud proxy has &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 18 Jun 2022 07:09:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-access-discussions/prisma-access-global-protect-no-source-nat/m-p/504450#M374</guid>
      <dc:creator>nikoolayy1</dc:creator>
      <dc:date>2022-06-18T07:09:50Z</dc:date>
    </item>
    <item>
      <title>Re: Prisma Access - Global Protect: No Source NAT</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-access-discussions/prisma-access-global-protect-no-source-nat/m-p/517872#M416</link>
      <description>&lt;P&gt;If you managed to get the needed answers, please flag the question as answered.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Oct 2022 21:21:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-access-discussions/prisma-access-global-protect-no-source-nat/m-p/517872#M416</guid>
      <dc:creator>nikoolayy1</dc:creator>
      <dc:date>2022-10-13T21:21:34Z</dc:date>
    </item>
  </channel>
</rss>

