Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.
About Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.

Discussions

Welcome to the Prisma Access Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 2755 Views
  • 0 replies
  • 1 Likes

What are the exact steps to increase bandwidth over 500mbps bandwidth allocation for a compute location.

Hi, I would like to know if the steps we are following to increase the bandwidth allocation of a compute location is correct. Current bandwidth assigned to location : 300mbps Increase in bandwidth : 250mbps ( so in total 300 + 250 mbps ). This will generate a new SPN for us. Steps we plan to follow 1. Inside the Panorama cloud services plug...

Resolved! Prisma Access and Cyberark

Hi I have a requirement to register a connection-specific DNS Suffix through Prisma Access for the remote users, this is to facilitate some communication initiated by CyberArk, I understand that this through option 015 in DHCP and can do this easily when using my firewall as a DHCP, but is there any way of doing this in Prisma Access that anyb...

Zones in Remote Networks

Hi, we are onboarding the first remote network sites and we tried to map the preexisting zones from our shared internet-policies to the trust and untrust zones. But inside the traffic logs, we can see, that traffic from the remote networks are coming from a zone, with the name of the remote network. I would have guest, that these are all in th...

Mobile User IP Pool functionality

We have an existing deployed Prisma Access solution with MUs using a worldwide pool as deployed during the POC, although all MUs are located in Europe. We wish to change the MU pool without impacting existing users, although limited to europe users require 24 hour access due to shift patterns. After reading https://docs.paloaltonetworks.com/...

Feature request - Check Prisma Access backbone routing table

Hello, Can I request the devs to build some feature to check the infrastructure (Prisma Access backbone) routing table? Something similar to Looking Glass but for the Prisma Access backbone. Currently it is possible to check the BGP information from the Service Connections and Remote Networks side, but not from the Service Infrastructure poi...

PedroG by L0 Member
  • 2537 Views
  • 1 replies
  • 0 Likes

Prisma Access IPSEC tunnel timeout IKE phase-1/phase-2 negotiation is failed as responder....Due to timeout

Hello to All, I see a lot of failed IKE phase-1 negotiations or even IKE phase-2 negotiations Due to timeout even when I am looking the Panorama logs as the Prisma Access is the Responder. What I see in common is that many Remote Networks are using the same Service IP address. This shouldn't be an issue as in the article below shows but mayb...

Resolved! About BGP table of Prisma Access

Hello. I have a question about Service Connection of Prisma Access. We have configured the Prisma Access Service Connection.SSH login is not allowed, so I need to check the status using WebGUI, API, or some other method. I would like to check the routing table and BGP table. Is there any way? Regards. Yoshida

Yoshida by L0 Member
  • 5616 Views
  • 4 replies
  • 0 Likes

Resolved! 405 Error when spinning up Terraform Prismacloud producer

We're getting a 405 Error "405 not allowed" when running "terraform apply" to invoke a Terraform prismacloud producer. Anyone seen this? This is most likely a simple Terraform syntax error.Thanks. Notes:1) "terraform init", "fmt", and "validate" all return without error2) vpn disabled, but still no success3) main.tf references a separate Prism...

d-schatz by L1 Bithead
  • 4536 Views
  • 2 replies
  • 0 Likes

Prisma Access enable the option "IKE Passive Mode" for extra security as only outbound IPSEC need to be allowed from the private data center

The option "IKE Passive Mode" makes the Prisma Access cloud to be only a VPN responder to the IPSEC traffic, iniated by the on-prem router/firewall or the ZTNA connector and this allows only outbound connections to be permitted. This is similar to some other ZTNA solutions that emphasize that only outbound connections are allowed. The VPN soluti...

Pre-logon issues for users - windows widgets

Hello, I have been having an issue over 2022 in that some users when logging on remotely via Prisma cant connect. I have tracked it down and it seems to be a fairly new windows widget in windows10 where a weather and location widget loads. To get around it i had to create a prelogon rule to allow access to external internet services, the logon ...

User ID doesn´t work with 2 domains

Hi, Prisma access is cloud-managed and I have integrated Azure AD and On-Premise directories in cloud identity engine. One domain for Azure -> example.comOne domain for on-premise directories that contains the previous --> example1.example.com The Netbios configured is:Azure AD --> exampleOn-premise --> example1 The group mapping in...

  • 395 Posts
  • 80 Subscriptions
Top Liked Authors