Focus
Focus
Table of Contents

Operational

The Operational view provides real-time visibility into the health of your infrastructure, connectivity status, and active incidents across your tenants.
Where Can I Use This?What Do I Need?
  • Strata Cloud Manager
  • Multitenant hierarchy with one or more child tenants
  • Prisma Access, Prisma SD-WAN, or Prisma Browser licenses
The Operational view provides real-time visibility into the health of your infrastructure. Because operational data reflects the current state, this view does not include a time range filter. Select the product using the scope selection to view operational data for Prisma Access, Prisma SD-WAN, or Prisma Browser.

Operational Views

Select a product to view the tracked operational data and metrics.

Prisma Access

The Prisma Access operational view is split into two sections: Service connectivity on the left and incident status on the right.
The Prisma Access operational view is split into two sections: Service connectivity on the left and incident status on the right.

Service Connectivity Status

The view displays the status (up or down) of connections aggregated across all filtered Prisma Access tenants, organized by connectivity channel:
ChannelDescription
Remote Network SitesIPSec tunnels connecting remote branch offices to Prisma Access. The count reflects the number of remote network sites that are up or down, not individual tunnels. If all tunnels are down causing a remote network to be down on a specific tenant, the count for connections under Remote Network Sites increases.
Service ConnectionsSite-to-site connections between Prisma Access and your corporate network.
Mobile User GatewaysMU gateway connectivity.
Explicit ProxyConnections through the explicit proxy service.
SLS ConnectionsStrata Logging Service connections.
ZTNA ConnectorsZero Trust Network Access connectors.
For each channel, the view shows the total number of RNs (Remote Network Sites), SCs (Service Connections), and other service endpoints that are up and the number that are down. The counts reflect service-level status, not individual tunnel status. Endpoints in the "down" state require your attention. Click the "down" count to filter the tenant table to only those tenants where the issue exists, so you can identify and resolve the problem.

Incidents

The incidents section displays the count of active incidents across filtered tenants, categorized by severity:
SeverityDescription
CriticalRequires immediate attention; significant impact on service.
HighImportant issue that should be addressed soon.
WarningPotential issue that should be monitored.
InformationalLow-priority notification for awareness.
Clicking an incident count redirects you to the dedicated Incidents page (available in the left navigation) where you can view detailed incident information and take action.

Tenant Table

The tenant table shows per-tenant connectivity status across all channels, allowing you to identify exactly which tenants have infrastructure issues.

Prisma SD-WAN

The Prisma SD-WAN operational view focuses on fabric health and device status.
The Prisma SD-WAN operational view focuses on fabric health and device status.

Fabric Health (Links)

The view displays the status of WAN links across all filtered Prisma SD-WAN tenants:
StatusDescription
GoodIndicates a health score>80.
FairIndicates a health score between 60-80.
PoorIndicates a health score<60.
The total number of links across tenants is displayed along with the breakdown by status category. The categorization of link health as Good, Fair, or Poor is based on performance thresholds. A tooltip on the widget provides details about the classification logic.

Device Health

CategoryDescription
Branch DevicesTotal branch devices with online/offline status. Offline devices require attention.
Data Center DevicesTotal data center devices with their current status.

Incidents

Similar to the Prisma Access view, incidents for Prisma SD-WAN tenants are displayed by severity (Critical, Warning, Informational).

Tenant Table

The tenant table provides per-tenant visibility into:
  • Branch health (device online/offline status)
  • Branch link health (link status breakdown)

Prisma Browser

The Prisma Browser operational view focuses on user and device activity, tenant onboarding, and identity provider configuration.
The Prisma Browser operational view focuses on user and device activity, tenant onboarding, and identity provider configuration.

Users and Devices

WidgetDescription
Total UsersThe number of users contributing to events across all filtered Prisma Browser tenants.
Total DevicesThe number of devices contributing to events across all filtered Prisma Browser tenants.
Total EventsThe aggregate event count generated by these users and devices.
In the Prisma Browser model, all activity (connectivity, threats, DLP actions) is treated as an event. The users and devices counts provide context for the total event volume.

Reports

A consolidated per-tenant report is available that includes both security and operational metrics for Prisma Browser. You can access these reports from this section of the view.

Identity Provider View

The view shows how identity is managed across your Prisma Browser tenants:
CategoryDescription
MSP IDPTenants using the managed service provider's identity provider.
Customer IDPTenants using their own identity provider.

Add Tenant

You can onboard new Prisma Browser tenants directly from the Operational view. Click Add Tenant to initiate the three-step onboarding workflow. Once a tenant is onboarded, it appears in the tenant table below and its metrics are included in the widgets.

Tenant Table

The tenant table lists all onboarded Prisma Browser tenants with columns for tenant name, setup status, IDP, users, devices, total events, incidents per tenant, and reports.