ADEM monitor LAN health even when the direct access to local network is blocked in
GlobalProtect app.
Where Can I Use This? | What Do I Need? |
- Prisma Access (Managed by Strata Cloud Manager)
- Prisma Access (Managed by Panorama)
- Strata Cloud Manager
|
- Prisma Access license
- Autonomous DEM license (agent version 5.7 or higher) or
Strata Cloud Manager Pro
- GlobalProtect license 6.3.3 or higher
|
You can run synthetic tests on Autonomous DEM to monitor local network
health.
In many secure environments, you can configure the GlobalProtect app to
block direct access to the local network. This setting prevents the Access
Experience agent from performing critical health tests on the local network because
the app blocks the agent’s standard processes from accessing the local network.
In such scenarios, you can explicitly configure Autonomous DEM to
continue to monitor LAN health. When you enable LAN monitoring with blocked access
to local network, the agent runs separate, dedicated processes to collect LAN
metrics using TCP connections. Ensure to allowlist these processes in your
GlobalProtect app or Prisma Access Agent.