Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.
About Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.

Discussions

Welcome to the Prisma Access Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 2711 Views
  • 0 replies
  • 1 Likes

Mobile User IP Pool functionality

We have an existing deployed Prisma Access solution with MUs using a worldwide pool as deployed during the POC, although all MUs are located in Europe. We wish to change the MU pool without impacting existing users, although limited to europe users require 24 hour access due to shift patterns. After reading https://docs.paloaltonetworks.com/...

Feature request - Check Prisma Access backbone routing table

Hello, Can I request the devs to build some feature to check the infrastructure (Prisma Access backbone) routing table? Something similar to Looking Glass but for the Prisma Access backbone. Currently it is possible to check the BGP information from the Service Connections and Remote Networks side, but not from the Service Infrastructure poi...

PedroG by L0 Member
  • 2511 Views
  • 1 replies
  • 0 Likes

Prisma Access IPSEC tunnel timeout IKE phase-1/phase-2 negotiation is failed as responder....Due to timeout

Hello to All, I see a lot of failed IKE phase-1 negotiations or even IKE phase-2 negotiations Due to timeout even when I am looking the Panorama logs as the Prisma Access is the Responder. What I see in common is that many Remote Networks are using the same Service IP address. This shouldn't be an issue as in the article below shows but mayb...

Resolved! About BGP table of Prisma Access

Hello. I have a question about Service Connection of Prisma Access. We have configured the Prisma Access Service Connection.SSH login is not allowed, so I need to check the status using WebGUI, API, or some other method. I would like to check the routing table and BGP table. Is there any way? Regards. Yoshida

Yoshida by L0 Member
  • 5564 Views
  • 4 replies
  • 0 Likes

Resolved! 405 Error when spinning up Terraform Prismacloud producer

We're getting a 405 Error "405 not allowed" when running "terraform apply" to invoke a Terraform prismacloud producer. Anyone seen this? This is most likely a simple Terraform syntax error.Thanks. Notes:1) "terraform init", "fmt", and "validate" all return without error2) vpn disabled, but still no success3) main.tf references a separate Prism...

d-schatz by L1 Bithead
  • 4509 Views
  • 2 replies
  • 0 Likes

Prisma Access enable the option "IKE Passive Mode" for extra security as only outbound IPSEC need to be allowed from the private data center

The option "IKE Passive Mode" makes the Prisma Access cloud to be only a VPN responder to the IPSEC traffic, iniated by the on-prem router/firewall or the ZTNA connector and this allows only outbound connections to be permitted. This is similar to some other ZTNA solutions that emphasize that only outbound connections are allowed. The VPN soluti...

Pre-logon issues for users - windows widgets

Hello, I have been having an issue over 2022 in that some users when logging on remotely via Prisma cant connect. I have tracked it down and it seems to be a fairly new windows widget in windows10 where a weather and location widget loads. To get around it i had to create a prelogon rule to allow access to external internet services, the logon ...

User ID doesn´t work with 2 domains

Hi, Prisma access is cloud-managed and I have integrated Azure AD and On-Premise directories in cloud identity engine. One domain for Azure -> example.comOne domain for on-premise directories that contains the previous --> example1.example.com The Netbios configured is:Azure AD --> exampleOn-premise --> example1 The group mapping in...

Prisma Access User-ID mappings verification

Hi, We have configured prisma access to retrieve user-id info from a firewall on premise in the Remote Network device template.Is there a way to verify the user-ip mappings on prisma access?Like you have on on-prem firewall?show user ip-user-mapping ip

zGomez by L3 Networker
  • 2549 Views
  • 1 replies
  • 0 Likes

Prisma Access Use Cases

Im really new to Prisma Access as I am still learning. From what I gathered so far though, the use cases seem to be very niche if Im understanding correctly. Much of Prisma Access advantages seems to be in gaining standard PA features/security while maintaining minimal Internet latency based on the users location. Please help me if my assumpti...

smarcyes by L1 Bithead
  • 5344 Views
  • 1 replies
  • 0 Likes
  • 392 Posts
  • 79 Subscriptions
Top Solution Authors