Monitor and Troubleshoot Prisma Agents (Strata Cloud Manager)
Focus
Focus
Prisma Agent

Monitor and Troubleshoot Prisma Agents (Strata Cloud Manager)

Table of Contents

Monitor and Troubleshoot Prisma Agents (Strata Cloud Manager)

Monitor Prisma Agent traffic and collect logs after deploying the agent to endpoints.
Verify that Prisma Agent is running properly on your endpoints by monitoring agent traffic and collecting logs as needed for troubleshooting.
  1. Manage Agents in Endpoint Management
    To manage the Prisma Agents that are deployed to mobile users in your organization, Prisma Agent provides an Endpoint Management page (Endpoint Manager) that serves as a single point of control of the agents. There, you can simplify the lifecycle management of the agents, including deployment, configuration, and visibility into the agents for troubleshooting, remediation, and maintenance.
    Access the Endpoint Management page by selecting ConfigurationPrisma Access AgentEndpoint Management.
  2. View Traffic Logs and Collect Agent Logs
    Traffic Logs
    View traffic-based logs for traffic steered by Prisma Agent:
    • Select Log ViewerFirewall/Traffic in Strata Cloud Manager
    • Use PACLI commands on endpoints for local troubleshooting
    Agent Event Logs
    To view Prisma Agent-based event logs:
    • Select Log ViewerEndpointTroubleshooting (Prisma Access Agent) in Strata Cloud Manager
    Remote Log Collection
    Use the remote log collection capability in the Endpoint Management page to remotely download Prisma Agent logs without end user action.
    • To remotely collect logs for an endpoint:
      1. Select ConfigurationPrisma Access AgentEndpoint Management in Strata Cloud Manager.
      2. Select the check box for a device in the Devices table and select ActionsGenerate Agent Logs.
    • Alternatively, for macOS and Windows devices, start a remote shell session and collect the agent logs using the pacli getlogs command on the endpoint.
    Collect Logs on Endpoints
    End users can use the pacli getlogs command to generate agent logs. End users can run most PACLI commands without administrative access.
    View the log contents and storage locations in Logs Collected by Prisma Agent.