PaloAlto Networks: What is Prisma Access ?

PaloAlto Networks: What is Prisma Access ?

Prisma Access is a Secure Access Service Edge (SASE) that provides consistent connectivity and security for mobile users, branch offices and Datacenters and other locations, anywhere across the globe.

PaloAlto Networks: What is Prisma Access ?

Prisma Access uses a common cloud-based infrastructure that delivers multiple types of security services, including advanced threat prevention, web filtering, sandboxing, DNS security, credential theft prevention, DLP and next-generation firewall policies based on user-to-application, and host information profile.

SCM (Strata Cloud Manager) is the portal used to access all the tools and applications on Prisma Access. You can access SCM as below : 

SCM: Prisma Access

Option 1: Sign in PaloAlto Networks Hub and click on Strata Cloud Manager 

Option 2: Using web browser and enter the following address 
www.stratacloudmanager.paloaltonetworks.com 

The Strata Cloud Manager user interface gives you a comprehensive view of your network and manage your NGFWs and SASE stack.

Key Features 

Comprehensive Security: Prisma Access inspects all traffic across all ports, providing built-in capabilities like threat prevention, malware protection, URL filtering, SSL decryption, and application-based policies.

Global Scalability: It delivers protection at scale, connecting remote branches, headquarters, data centers, and mobile users without requiring organizations to build their own global security infrastructure.

Mobile User Security: Supports secure access for mobile users through the GlobalProtect app or explicit proxy configurations, ensuring consistent security for SaaS applications, data centers, and internet browsing.

Remote Network Protection: Secures branch offices and remote locations using cloud-based next-generation firewalls with options for static or dynamic routing.

Zero Trust Network Access (ZTNA): Provides secure access to private applications without requiring IPSec tunnels or complex routing configurations.

Centralized Logging: All logs are forwarded to the Strata Logging Service or Cortex Data Lake for centralized analysis, reporting, and forensics.

We will talk about various components in Prisma access and we will how to manage all these components by SCM portal.

We will talk about the below components one by one

- Global Protect ( Mobile Users)
- Service Connections ( Datacenter Connectivity)
- Remote Networks ( Branch/Campus Connectivity)
- NGFWs managed by SCM 
-Firewall Rules and Policies as best practice
-HIP Checks
-Prelog in Profiles