<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PrismaAccess: Maximum limit for tunnel settings in the GlobalProtect app in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/prismaaccess-maximum-limit-for-tunnel-settings-in-the/m-p/1228920#M124264</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/89140311"&gt;@H.Tsuboi&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The firewall can handle up to 100 excluded routes in a split tunnel setup. But if you're using GlobalProtect app version 4.1 or newer, you can have up to 200 excluded routes instead.&lt;/P&gt;
&lt;P&gt;Source:&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/globalprotect/10-1/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-access-route?utm_source=chatgpt.com" target="_blank"&gt;https://docs.paloaltonetworks.com/globalprotect/10-1/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-access-route?utm_source=chatgpt.com&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Prisma Access allows for the creation of up to 10,000 IP address pools per tenant. Each pool can be linked with specific match criteria such as user ID, user group, or location group.&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;Source:&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/prisma-access/administration/prisma-access-mobile-users/mobile-users-globalprotect/ip-address-pools-for-a-globalprotect-mobile-users-deployment/static-ip-address-allocation?utm_source=chatgpt.com" target="_blank"&gt;https://docs.paloaltonetworks.com/prisma-access/administration/prisma-access-mobile-users/mobile-users-globalprotect/ip-address-pools-for-a-globalprotect-mobile-users-deployment/static-ip-address-allocation?utm_source=chatgpt.com&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="" data-start="194" data-end="384"&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;As for the maximum number of tunnel settings profiles... I was unable to find the exact number in the documentation. That being said,&lt;/SPAN&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;&amp;nbsp;as mentioned, Prisma Access supports up to 10,000 IP address pool profiles per tenant and e&lt;/SPAN&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;ach profile can contain up to 10 IP prefixes and support up to 256 users.&lt;/SPAN&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="" data-start="386" data-end="464"&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;This provides some insight into the scalability of IP address assignments but I would recommended reaching out to TAC&amp;nbsp;for precise limits on tunnel settings profiles.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="" data-start="386" data-end="464"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="" data-start="386" data-end="464"&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;Kind regards,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="" data-start="386" data-end="464"&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;-Kim.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 13 May 2025 07:23:46 GMT</pubDate>
    <dc:creator>kiwi</dc:creator>
    <dc:date>2025-05-13T07:23:46Z</dc:date>
    <item>
      <title>PrismaAccess: Maximum limit for tunnel settings in the GlobalProtect app</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/prismaaccess-maximum-limit-for-tunnel-settings-in-the/m-p/1228889#M124259</link>
      <description>&lt;P&gt;Hello&lt;BR /&gt;I would like to know the upper limits for tunnel settings in the GlobalProtect app in PrismaAccess.&lt;BR /&gt;① Upper limit for tunnel settings profiles&lt;BR /&gt;② Upper limit for IP address matches&lt;BR /&gt;③ Upper limit for routes to exclude&lt;/P&gt;
&lt;P&gt;The background is that we plan to use GP with PrismaAccess at 30 companies with over 100 locations, and we would like to route as much traffic as possible through Prisma. * We will also set up MU and VPN within the company.&lt;/P&gt;
&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Tue, 13 May 2025 02:42:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/prismaaccess-maximum-limit-for-tunnel-settings-in-the/m-p/1228889#M124259</guid>
      <dc:creator>H.Tsuboi</dc:creator>
      <dc:date>2025-05-13T02:42:56Z</dc:date>
    </item>
    <item>
      <title>Re: PrismaAccess: Maximum limit for tunnel settings in the GlobalProtect app</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/prismaaccess-maximum-limit-for-tunnel-settings-in-the/m-p/1228920#M124264</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/89140311"&gt;@H.Tsuboi&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The firewall can handle up to 100 excluded routes in a split tunnel setup. But if you're using GlobalProtect app version 4.1 or newer, you can have up to 200 excluded routes instead.&lt;/P&gt;
&lt;P&gt;Source:&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/globalprotect/10-1/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-access-route?utm_source=chatgpt.com" target="_blank"&gt;https://docs.paloaltonetworks.com/globalprotect/10-1/globalprotect-admin/globalprotect-gateways/split-tunnel-traffic-on-globalprotect-gateways/configure-a-split-tunnel-based-on-the-access-route?utm_source=chatgpt.com&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Prisma Access allows for the creation of up to 10,000 IP address pools per tenant. Each pool can be linked with specific match criteria such as user ID, user group, or location group.&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;Source:&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/prisma-access/administration/prisma-access-mobile-users/mobile-users-globalprotect/ip-address-pools-for-a-globalprotect-mobile-users-deployment/static-ip-address-allocation?utm_source=chatgpt.com" target="_blank"&gt;https://docs.paloaltonetworks.com/prisma-access/administration/prisma-access-mobile-users/mobile-users-globalprotect/ip-address-pools-for-a-globalprotect-mobile-users-deployment/static-ip-address-allocation?utm_source=chatgpt.com&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="" data-start="194" data-end="384"&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;As for the maximum number of tunnel settings profiles... I was unable to find the exact number in the documentation. That being said,&lt;/SPAN&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;&amp;nbsp;as mentioned, Prisma Access supports up to 10,000 IP address pool profiles per tenant and e&lt;/SPAN&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;ach profile can contain up to 10 IP prefixes and support up to 256 users.&lt;/SPAN&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="" data-start="386" data-end="464"&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;This provides some insight into the scalability of IP address assignments but I would recommended reaching out to TAC&amp;nbsp;for precise limits on tunnel settings profiles.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="" data-start="386" data-end="464"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="" data-start="386" data-end="464"&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;Kind regards,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="" data-start="386" data-end="464"&gt;&lt;SPAN class="relative -mx-px my-[-0.2rem] rounded px-px py-[0.2rem] transition-colors duration-100 ease-in-out"&gt;-Kim.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 13 May 2025 07:23:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/prismaaccess-maximum-limit-for-tunnel-settings-in-the/m-p/1228920#M124264</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2025-05-13T07:23:46Z</dc:date>
    </item>
  </channel>
</rss>

