Provide
consistent security for internet, SaaS, and private app access across locations, using
traffic forwarding rules to optimize traffic routing and policy enforcement.
| Where Can I Use This? | What Do I Need? |
Forwarding profiles provide a seamless end-to-end security solution for consistent
access to internet, SaaS, and private applications for your users under varying
conditions. This feature enables always-on security for internet access from any
location and on-demand security for private apps based on user presence (remote or
on-premises).
To effectively configure and use forwarding profiles, you will need to understand
several key components:
Forwarding Profiles
Forwarding profiles contain a set of rules that define how to direct traffic based on
various criteria. Once you set up the forwarding profiles, you can assign them to
users or user groups in the
Agent Settings page. These forwarding
profiles allow you to create a comprehensive traffic management strategy tailored to
your organization's needs.
Traffic Forwarding Rules
Traffic forwarding rules within forwarding profiles consist of several important
elements. Traffic that matches a rule is steered according to the traffic forwarding
specifications.
How Forwarding Profiles Work
When Prisma Access Agent receives a connection request, it evaluates the
forwarding rules in your forwarding profile in priority order. The agent matches
the connection against each rule's criteria including destination addresses,
source applications, traffic types, and user location. When all criteria in a
rule match, the agent applies that rule's connectivity method to route the
traffic. If a rule does not match, the agent continues evaluating subsequent
rules until it finds a match or reaches the default rule.