- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
04-19-2021 07:23 AM
We have clients who want a Hybrid model (where some exchange mailboxes are hosted in Microsoft 365) rather than full blown integration.
Would the proposed solution (using DNAT) with the sources constrained to the Microsoft approved IP/URL list and having the Palo Alto inspect the traffic be regarded secure enough?
04-19-2021 11:15 AM - edited 04-19-2021 11:16 AM
Follow this:
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000POJACA4
If you are planning to do SSL decryption you may see some issues like for sharepoint so be prepared
For the best security for Cloud Apps CASB (Cloud Access Security Broker) is needed if you are in a health or bank company, so maybe also see Prisma SaaS or other CASB provider.
04-19-2021 01:54 PM
Hello,
Could you expand on the statement "secure enough"?
Regards,
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!