Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.
About Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.

Discussions

Welcome to the Prisma Access Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 2668 Views
  • 0 replies
  • 1 Likes

Allowlisting your Prisma Access Tenant

Hi all, I've found that this is a frequent question that comes up for new and existing Prisma Access customers. Long story short there are a couple of ways to go about this. The most advanced and scalable option would be to use a solution like Cortex XSOAR to automate things. For example, if you were to deploy a new Mobile User location, Cortex...

KPawlak by L1 Bithead
  • 4169 Views
  • 0 replies
  • 3 Likes

Prisma Gateway Cert Expiration

Has anyone else noticed that the Prisma Access gateway certs expired today? A large majority of our users are unable to connect since GP sees the certs aren't valid. Trying to determine if this is isolated to us (which I doubt).

infrastructure subnet sizing prisma access ?

What are the sizing guidelines for the infrastructure subnet for prisma access? I've read the below, and I know it's for services to talk to each other on the backend for prisma/use services. But what are the sizing guidelines, and what does one base this off of? It states "large number of IP address will be required" - but I have yet to fi...

Sec101 by L4 Transporter
  • 4214 Views
  • 1 replies
  • 0 Likes

Resolved! FW at branch with SASE

Hello , We have a customer having branches all across the globe but very very less MPLS . 95 % they are con,nected via IPSEC VPN Tunnels They have Fortinet Fortigate FWs at their Branches and DCs Does Prisma Access need Palo Alto FW at each Branch ? I believe only thing needed is to make an IPSEC Connection from Branch to the SASE cloud which e...

Prisma Access & pre-logon

We are trying to make Prisma Access pre-login work and are having no luck. We have had support on-line looking at the config and we just do not see the pre-login user in the logs. Currently we are at a standstill. We are using our own certificates, not ones generated on the firewall. If you have this working and wouldn't mind us taking a peek at...

New to Prisma access - Cisco to Prisma VPN question

Hi,Any pointers appreciated on this. We have connectivity to Prisma via IPsec without a Cisco VTI/tunnel interface. I would like to change this so that we use Cisco VTI/tunnel at the remote access site. How do I create a VTI in Prisma access for an IPsec tunnel to a remote access network Cisco site? I am expecting somewhere to apply ip address 1...

Group Mapping

Hi,The Prisma Documentation is not clear. Can I get group mapping working with just defining group mapping on the template or do I need directory sync? If I can get group mapping working without directory sync what is the value of directory sync other than not having to connect back to on perm?Thanks

junior_r by L3 Networker
  • 2302 Views
  • 0 replies
  • 0 Likes

Prisma Access - Verify Connection through proxy server

Hello, We are trying to deploy Prisma Acess but are stuck on the step where you need to verify the connection from the Panorama plugin. We get an error on the cortex data lake status. We are able to fetch the logging service certificate. So certificate retrieval is ok but the customer information fails with following error: Result: Failed to val...

Minimum Password Complexity for Prisma Access Local DB users

In the default template available for Mobile users this feature option is not available. But you can configure minimum password complexity options for Local DB users in Prisma access with a workaround. You can enable this feature for Local users by using another template. Create new template in Panorama Panorama -> Templates Attach the n...

Screenshot 2020-10-30 at 19.45.52.png

Prisma Access 1.7 Post-Launch !

Palo Alto Networks has been working hard on expanding Prisma Access capabilities. About a month ago, Prisma Access Cloud Services plugin 1.7 was released including support for PAN-OS 9.1, new traffic steering functionality, adding a new compute location, and other enhancements! In case you missed it, you can read up on it and check all the de...

kiwi by Community Team Member
  • 3348 Views
  • 0 replies
  • 0 Likes

Not connecting to nearest gateway

Hi All,We are testing Prisma access and user is not connecting to nearest gateway. We have selected 3 locations India west east and south, user is close to south region but always connect to India west. When I check the GPA logs it shows priority for India west has priority 5 but in the portal configuration portal>agent>external we have se...

Prisma access verification warning message

Hi All, On cloud service tab, we are getting warning message as mentioned below. Also if we verify OTP it is not accepting. And we are able to configure our prisma access settings without any issue."your account needs to be verfied within X days" Any idea how to resolve this issue??

RamBalaji_0-1599478858460.png

firewall could not connect the panorama

Hi: I config vm-300 and vm-panormama on kvm Environmental。the license have install normal on vm-300 and panorama. and correct config on firewall and panorama (the version all 10.0),but the fireall could not connect the panorama . i sniffer packet on panorma mgt interfaer , vm-300:10.186.100.162,panorama:10.186.100.163 we see the vm-300...

Felixcao by L3 Networker
  • 3619 Views
  • 1 replies
  • 0 Likes
  • 389 Posts
  • 79 Subscriptions
Top Solution Authors
Top Liked Authors