Secure Access Service Edge
Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Prisma Access and Prisma SD-WAN.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Secure Access Service Edge
Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Prisma Access and Prisma SD-WAN.

Browse the Community

Prisma Access Discussions

Prisma Access secures access to the cloud for branch offices and mobile users anywhere in the world with a scalable, cloud-native architecture that will soon be managed via a new streamlined cloud management UI.

358 Posts

Prisma Access Insights Discussions

Prisma Access Insights is a comprehensive service monitoring tool that provides additional visibility, proactive assistance and capacity planning for Prisma Access customers.

3 Posts

Prisma SD-WAN Discussions

Discuss Prisma SD-WAN, Palo Alto Networks cloud-delivered service that implements app-defined, autonomous SD-WAN to help you secure and connect your branch offices, data centers and large campus sites without increasing cost and complexity.

114 Posts

Prisma SD-WAN CloudBlades Discussions

Discuss Palo Alto Networks CloudBlades platform, which enables the seamless integration of branch services into the SASE fabric, without needing to update your branch appliances or controllers, thus eliminating service disruptions and complexity.

5 Posts

Prisma SD-WAN AIOps Discussions

A forum to discuss AIOps enhancements on Palo Alto Networks Prisma SD-WAN. Leverage machine learning, event correlation, and AI algorithms with the industry's first next-generation SD-WAN.

2 Posts

Autonomous DEM Discussions

Prisma Access Autonomous Digital Experience Management (ADEM) helps IT teams see, understand and improve digital experiences for all their users. Ask your questions in this forum.

7 Posts

Activity in Secure Access Service Edge

Please tell me about the maximum number of sites that each Remote Network SPN can accommodate.

Attention: JAPAC TPM teamHello Team, My understanding is as follows:- If a compute location is assigned a bandwidth of 501Mbps or more in the RN settings, up to 500 sites can be supported per SPN.- Bandwidth is automatically configured based on the usage of each location. For example, if a compute location is assigned 1200Mbps, two SPNs will...

y.saitou by L2 Linker
  • 241 Views
  • 2 replies
  • 0 Likes

MasterDevice Configuration

Hello PaloAlto engineer Team, I'm trying to configure the MasterDevice. Setting the MasterDevice to CIE doesn't mean the MasterDevice settings will be applied to Prisma Access or all devices in the device group, right? I understand that the MasterDevice just lets me know which device group the username will appear in the security policy. h...

Prisma SD WAN and Zscaler

With the Zscaler client already installed on computers, what are the available options not to send the traffic from an endpoint to the Zscaler VPN tunnel (IPSec or GRE) when an endpoint is in the office? What ends up happening is the endpoint is tunneling to Zscaler via an installed app, and the same traffic is again being tunneled and sent to ...

SDWAN recommendations

I have to configure SDWAN in a scenario with one hub and several branches. All branches has the same network config only changing Public IP. This branches only has one transport (FTTH). So mi questions are: Do you recommend to create a common template with all SDWAN related used in all branches? or use a template SDWAN for each FW with all con...

BigPalo by L4 Transporter
  • 191 Views
  • 0 replies
  • 0 Likes

Need to know different metrics part of network_point_metrics_bw API

Hi , currently working with the SD-WAN monitor API endpoint (/sdwan/monitor/v2.0/api/monitor/network_point_metrics_bw) to pull bandwidth data for sites. So far, successfully retrieved ingress and egress data using the "BandwidthUsage" metric in the request payload. To expand our implementation, I would like to clarify a few points: Could you...

Prisma Access Strata Cloud Manager - Push Failed

Subject: GlobalProtect Push Configuration Fails with "Unexpected Commit Error" on Strata Cloud Manager Hello, We are currently using Prisma Access with Strata Cloud Manager (SCM), and we're experiencing a critical issue. Whenever we attempt to push the GlobalProtect configuration, the operation fails with the following error message: [status]:...

Not Receiving Bandwidth Capacity from SD-WAN Monitoring API

Hi team, We're currently using the following API to retrieve bandwidth metrics:https://api.sase.paloaltonetworks.com/sdwan/monitor/v2.0/api/monitor/network_point_metrics_bw We're successfully receiving the bandwidth usage data; however, the response does not include the bandwidth capacity as expected.Could you please clarify whether the API supp...

Triage process to eliminate endpoint issues prior to Prisma Access queries

Has anybody come across or developed a triaging (L1/L2) process to eliminate endpoint issues before submitting Prisma SASE (PA and Prism SDWAN) to support?. It is important for customers, provisioned with Prisma SASE to be efficient and effective before submitting ticket to MSSP. This document may be of great value to PA customers. Thank you

Portal Auth v Gateway Auth

Hello everyone, I have read countless Palo documents and forums but still a little unclear on the above. I'm hoping someone can clear this up for me. The environment I am referring to is Global Protect / Strata Cloud Manager. Under workflows/ prisma access setup / global protect - On that screen under the infrastructure tab we have "User Aut...

ExitCalm by L0 Member
  • 252 Views
  • 1 replies
  • 0 Likes

Microsoft Intune and Autopilot Hybrid AD Join via Prisma

We are having an interesting problem with current GlobalProtect PreLogon domain join.. We have a SCEP infra along with Prisma Global protect and pre-logon configured. We are able to complete a pre-logon and initiate a first login, which then takes us back to Autopilot screen a moment later. Problem is, when it goes back to Autopilot to complete...

Resolved! Prisma SD-WAN monitoring API's

We are currently working on bandwidth monitoring for our SD-WAN using the following API endpoint: /sdwan/monitor/v2.0/api/monitor/network_point_metrics_bw So far, we have been able to successfully retrieve ingress and egress bandwidth use data using the "BandwidthUsage" metric in the request payload. Could you please provide a list of all the o...

API endpoint for Circuit health metric and Circuit Bandwidth Capacity metric

Hi Fetching few metrics from API but I don't see separate APIEnd point for Circuit health metric and Circuit Bandwidth Capacity metric. Need help here ? at present able to fetch same data with API : https://api.sase.paloaltonetworks.com/sdwan/monitor/v2.6/api/monitor/metrics and appropriate Payload Also payload for Circuit Bandwidth Capaci...

Service Connection and Cisco ASA - problem with establish VPN and BGP

Hello Team! I writing this post because I can't find any configuration example which show how to configure S2S VPN between SC and Cisco ASA. I tried to do it by myself and it looks like working, but can't establish BGP peering. On ASA side, I configured route base VPN - using interface tunnel. First little wrinkle with that is ip address for int...

On-Boarding of Cisco SDWAN to Prisma

We are trying to on-board Cisco SDWAN Catalyst to Prisma. Created the necessary IKE/IPSEC configurations, etc, followed Integrate Prisma Access with Cisco Catalyst SD-WAN (Manual Integration) KB When we push to remote networks we receive a validation error [status]: commit failed [errors]: Validation error occurred in:Region: US East Validation ...