De-board an NGFW Connector
Focus
Prisma Access

De-board an NGFW Connector

Table of Contents

De-board an NGFW Connector

Remove an NGFW Connector from Prisma Access by removing the connector registration and cleaning up management interface references.
Where Can I Use This?What Do I Need?
  • Prisma Access (Managed by Panorama)
  • NGFW (Hardware and VM-Series)
  • Prisma Access (Managed by Strata Cloud Manager)
  • NGFW (Managed by Strata Cloud Manager)
  • No prerequisites needed
De-board an NGFW Connector when you want to remove an NGFW from Prisma® Access ZTNA Connector integration. When you de-board the last NGFW Connector in a Connector Group, Prisma Access automatically removes all template-level configuration from your management interface and NGFW.
  1. Remove the NGFW Connector from the ZTNA Connector Group.
    1. In Strata Cloud Manager, select ConfigurationZTNA ConnectorNGFW Connectors.
    2. Select the Connector Group containing the NGFW you want to remove and select Delete for that NGFW Connector.
    If your NGFW is managed by Strata Cloud Manager, de-boarding is complete after this step. No further action is required.
  2. Remove any manually configured DNS Proxy references from Panorama (if applicable).
    1. In Panorama, select DeviceSetupServices and select the settings icon.
    2. Under DNS Settings, select the DNS Proxy Object and de-select ztna_ngfw_proxy to remove any manual references to this proxy.
      When you de-board all NGFW Connectors from a Connector Group, Prisma Access automatically deletes ztna_ngfw_proxy. If ztna_ngfw_proxy is still associated in a DNS Proxy object, commit failures or validation errors may occur.
  3. Remove the NGFW from Panorama.
    1. In Panorama, select Cloud ServicesConfigurationNGFW Connector.
    2. Select the NGFW Connector and select Delete.