Learn to integrate the Prisma SD-WAN GCP-NCC CloudBlade, note the prerequisites for
the integration.
Where Can I Use This?
What Do I Need?
Strata Cloud Manager
Prisma SD-WAN license
GCP-NCC CloudBlade
Prisma SD-WAN GCP-NCC CloudBlade allows seamless integration
between Prisma SD-WAN branches and Google Cloud Platform
Network Connectivity Center (NCC) to streamline and automate
site-to-cloud connectivity at scale.
Network Connectivity Center in Google Cloud is a hub
and spoke model for network connectivity management. The hub resource delivers a
reliable connectivity on demand and reduces the operational complexity through a simple,
centralized connectivity management.
NCC can connect VPNs, partner dedicated interconnects, as well as third
party routers and SD-WAN. Wherever your applications or users are in the network, you
can optimize the connectivity, reduce the operational load, and lower costs.
Cloud Router is a fully distributed and managed
Google Cloud service that programs custom dynamic routes and scales with network
traffic. It dynamically exchanges routes between Virtual Private Cloud (VPC) and
on-premise networks using Border Gateway Protocol (BGP).
Prerequisites
Prisma
SD-WAN
An active Prisma SD-WAN subscription with sufficient licenses
to install at least 2 x v7108 ION devices per region.
Sufficient quota for the CloudBlade to create three VPCs in
the project.
GCP
A GCP service account with permissions to call Rest APIs like Deployment
Manager API, Compute Engine API, Cloud Router API, and Network Connectivity
API. Access to these APIs must be enabled in the project before deploying
the CloudBlade.
The Service Account must have permissions to create, update, and delete
resources like (VPC, Firewall, Subnet, IP addresses, Routes, VM (instance),
Cloud Router, Router Interfaces, BGP Peers, NCC Spoke, and NCC Hub).
An active GCP marketplace subscription for the Prisma SD-WAN
ION Virtual Appliance.
From version 1.0.0 onwards, GCP regions must support instance machine type as
First Generation N1.