Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.
About Prisma Access Discussions
Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.

Discussions

Welcome to the Prisma Access Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 2637 Views
  • 0 replies
  • 1 Likes

Resolved! Can I manipulate routes from Prisma to a data center using BGP MED values

Our HQ currently uses dual ISPs for internet access and has VPN tunnels to Prisma configured across both ISP circuits as primary and secondary VPN tunnels for a single service connection. At HQ both tunnels terminate at a Palo Alto 1420 NGFW HA pair. We are using BGP to exchange routing information between Prisma and the 1420. On the 1420 we h...

About Service Connection with AWS

hello I am using AWS by connecting to service connection. (using prisma cloud) Is there anyone who runs both primary and secondary tunnel connecting AWS? In my case, bgp neighbor setup was not possible due to the 169.254.0.0/16 band. It was running statically, but the secondary tunnel was not live, so even if I ran a tunnel monitor, the 169.254....

sujichoi by L1 Bithead
  • 1359 Views
  • 2 replies
  • 0 Likes

Resolved! Better way to block cloud storage uploading by app-id

Hello, we would like to block cloud storage uploading by app-ID. So you can go to dropbox and download files, but security wants us to block our users ability to upload files. Our solution is go create a custom application group, like the attached photo, and go in and manually add known cloud storage app-id's for uploading. Then create a secur...

Global Protect/Prisma Cloud not working for travelers

Anyone else facing issues with travelers using Global Protect (with enforcement on) who have a terrible time connecting to captive portals? This seems to be especially problematic at Marriott Hotels and Regus spaces. From what I gather, if you're not connected to Global Protect you can't realize the protections of web content filtering and D...

cwcaron by L0 Member
  • 2134 Views
  • 2 replies
  • 0 Likes

Resolved! Prisma Access Mobile Users - User-id data redistribution to on-prem NGFWs

Hi All, I have a problem with user-id data redistribution from Prisma Access to on-prem (panorama). I have 13 globalprotect gateways globally, I see the usernames in traffic logs for all gateways. I redistribute user-id from prisma to on-prem panorama via service connection and then redistribute from panorama to on-prem firewalls. Unfortun...

Resolved! Allowing traffic from SC to MU

Hello, our customer has a lansweeper and needs to monitor devices connected via Global Protect, is it possible to reach (ping) these devices from the DC passing throug the Service Connection, Francesco

Where is Prima Access ser Behavior Analytics (UBA) configured?

As mentioned in New Features in Prisma Access 3.2 | Palo Alto Networks now Prisma Access should be able to even automatically block or lock bad users with UBA that do too many violations but there is no more info about this feature anywhere ‌‌🤔 I know that with XSOAR you can make a playbook based on the number of threat logs generated for a ...

Bidirectional User-id redistribution between Prisma access and on-prem Firewalls

Hello Everyone, My user-id redistribution topology is as follows: Prisma access --> Azure VM 300 firewall --> On-prem PA Firewalls (about 4 HA Pairs) and vice -versa as i need bidirectional ip-username mappings. Reason to do directional mappings is that We have GP users and branch users on prisma access for which i need user-id mapping...

Prisma Access Locations IP Addresses

I'm struggling to find the IP Addresses allocated for the 5 Prisma Access Locations we're using. We would like to build a conditional access policy in M365 to only allow traffic from our Global Protect client via the Gateway IP addresses or ranges. I've seen articles saying to use the API which I have zero knowledge of. I just want the IPs so...

jeppich by L1 Bithead
  • 4996 Views
  • 3 replies
  • 0 Likes
  • 387 Posts
  • 79 Subscriptions
Top Liked Authors