Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.
About Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.

Discussions

Welcome to the Prisma Access Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 2754 Views
  • 0 replies
  • 1 Likes

Prisma Browser with E-DLP configure OCR

Hello Team, I'm currently testing with Prisma Browser Standalone with an Eval license. I want to enable OCR settings in E-DLP and test them, but I don't see the OCR setting in the Detection method. Is this because my account was issued through Eval? I confirmed in the documentation that OCR is available in PB. Referred to Link : https://docs...

Prisma Access Service Connection to Palo Alto FW in HA-AA

Hi, We were able to make the tunnels up under 1 Service Connection (with 2 tunnels, primary and secondary) in Prisma Access and 2 tunnels in Palo Alto FW with Active-Active HA setup. If both tunnels are up, loopback IP in FW1 is accessible from GP user. But when the primary went down and secondary tunnel is still up, GP user in unable to reach...

IBalaro by L1 Bithead
  • 826 Views
  • 1 replies
  • 0 Likes

Prisma Access Explicit Proxy — Anti‑Spyware behavior when DNS bypasses Prisma (logging subtype + test methodology)

Attention: JAPAC TPM TeamHello Team, I have a question about the Anti-Spyware profile behavior in a Prisma Access (Explicit Proxy) environment. Scenario- Clients use Explicit Proxy to reach Prisma Access for web traffic.- DNS resolution does not traverse Prisma Access (it is resolved by a local resolver / another path).- An Anti-Spyware prof...

Imas4to by L2 Linker
  • 767 Views
  • 0 replies
  • 0 Likes

China mainland Mobile users questions

Hi expert, If we do not have Prisma Access China license, but still want to connect China mainland mobile users to closed MU-SPN overseas, say Japan pop. If this will be blocked by Greate FW, and if it is, if any workaround. Also, can connect to the overseas SC and then send traffic to Prisma Access Cloud ? If can do that, how to achieve it. ...

PAB Stuck while installation

I’m working on a Windows machine and have already tried every possible troubleshooting step I could think of, but unfortunately I haven’t had any success. I raised a support ticket, but so far there’s been no response, which has been a disappointing experience. If anyone in the community can guide me on an easier way to reach support or suggest ...

Error when calling “Get number of users at location(s)” API in Prisma SASE Aggregate Monitoring APIs

Attention: JAPAC TPM TeamHello Team, I am testing the Prisma SASE Aggregate Monitoring APIs(https://pan.dev/sase/api/mt-monitor/) and encountered an issue. When calling the “Get number of users at location(s)” endpoint:https://api.sase.paloaltonetworks.com/mt/monitor/v1/agg/locationsUsersusing the “User Count across Locations” operation, I co...

Imas4to by L2 Linker
  • 959 Views
  • 1 replies
  • 0 Likes

Prisma Access CIE and User-ID mapping not working for groups

Hi, all, thanks in advance for any help about an issue we are facing with User-ID agent on on-prem and EntraID with CIE integration.Let me explain our topology a bit deeper: On the one hand, we have a Remote Network with some Windows servers without GP or Prisma Access agent. We use User-ID agent for username-to-IP mapping. This is sent to loc...

Unable to establish tunnel during Service Connection configuration (Details Added with Screenshot)

Dear Community Expert Team, This my first post in Community. I really enjoy the Palo Alto Prisma Access SASE. Find the below details: Before I am going to production configuration I plan to test in my LAB environment for multiple of POC. Requirement: Service Connection configuration Setup: Palo Alto NGFW hosted in GCP (Google Cloud Plat...

chinmayanaik_0-1768299362753.png
chinmayanaik_1-1768299362754.png
chinmayanaik_2-1768299362758.png
chinmayanaik_3-1768299362759.png

GloablProtect + Explicit Proxy blocks WSL traffic.

Hello everyone, We’re facing an issue with WSL2 where traffic from WSL is unable to route to Prisma when GlobalProtect (GP) is running on the host Windows machine with an explicit proxy. Environment / SetupGlobalProtect enabled with Explicit ProxyProxy PAC listening on 127.0.0.1:9999WSL2 traffic appears to use the Windows Hyper-V loopback inte...

Prisma Access with ECMP

Hi Everyone, We are trying to troubleshoot an issue where enabling ECMP on the Virtual Router breaks Prisma Access. We have 3 circuits configured (see pic) to load balance internet traffic. This firewall is also a service connection back to Prisma. When enabling the 3 link we loose routing from Prisma to the subnet advertised on the service co...

Prisma Browser conditional access issue with outlook app

Hello all, I'm facing an issue after trying to enable conditional access policy on Azure entra id in order to prevent the use of other browser except from Prisma Browser. Although the conditional access works for all the applications (SharePoint, in house apps using entra id, etc) as I wish, I'm facing a problem with outlook app and teams app (n...

Argyris by L1 Bithead
  • 8217 Views
  • 3 replies
  • 0 Likes

New global protect install for Windows x64 v6.3.3c828 has broken MSI

Hi, We have just downloaded the latest GP for Windows x64 v6.3.3c828. The MSI properties indicate that the product code is {B316DC7F-EB20-4A36-AA0A-96099FA142DB} however when it installs it installs as the previous version product code {CD809CD6-9D01-417E-9E76-D19EEE77E74F}. We have verified that the version installed and running is the c828 ver...

Resolved! Please advise on upgrading GlobalProtect using Intune.

Attention: JAPAC TPM teamHello Team, We are considering upgrading GlobalProtect using Intune.Under GlobalProtect Setup > GlobalProtect App > App Settings > Upgrade GlobalProtect,if Disallow is selected, will this affect upgrading GlobalProtect via Intune? My understanding is that Disallow only prevents users from upgrading manually,...

y.saitou by L3 Networker
  • 9608 Views
  • 1 replies
  • 0 Likes
  • 395 Posts
  • 80 Subscriptions
Top Liked Authors