NGFW Support for Prisma Access Agent
Focus
Focus
Prisma Access Agent

NGFW Support for Prisma Access Agent

Table of Contents
NGFW Support for Prisma Access Agent enables gradual adoption and management of Prisma Access Agents for NGFW deployments, enhancing secure access capabilities.
Where Can I Use This?What Do I Need?
  • NGFW (Managed by Panorama)
  • PAN-OS version 11.2.x
  • Prisma Access Agent version 25.1.0.14
  • Prisma Access Agent license for NGFW deployments
  • macOS 14 and later or Windows 10 version 2024 and later desktop devices
NGFW support for Prisma Access Agent offers a way for you to adopt and use Prisma Access Agents in your existing NGFW infrastructure. This feature enhances secure access management while maintaining compatibility with existing authentication methods and NGFW setups, offering a smooth transition path to advanced Prisma Access Agent capabilities.
As an administrator, you will work with several key components to implement and manage this feature. The primary management platforms involved are Panorama and Strata Cloud Manager. While you can use Panorama to independently manage gateway configurations, Strata Cloud Manager serves as the central hub for managing Prisma Access Agent-specific settings, including user authentication, agent configurations, and infrastructure details.
Understanding the interaction between NGFW gateways and Prisma Access Agent is crucial. The feature supports coexistence with GlobalProtect™, enabling a gradual migration strategy. This enables you to maintain your existing NGFW setup while introducing Prisma Access Agent capabilities to your environment.
Another important aspect is the integration with existing authentication infrastructures. The feature supports various authentication methods, including Active Directory (AD), SAML, client certificate, and Cloud Identity Engine, ensuring compatibility with your current setup.

Prisma Access Agent NGFW Support Requirements

Prisma Access Agent for NGFW Deployment requires the following components:
  • Prisma Access Agent licenses for NGFW deployments
  • Prisma Access Agent Manager, sometimes called endpoint manager (EPM), a cloud service for centralized agent lifecycle management and visibility
  • Strata Cloud Manager for managing agent configurations
  • Cloud Identity Engine (CIE) for user and user group mapping during authentication
  • (Optional) Strata Logging Service (SLS) for log forwarding