Provides a description of the fields in the Egress IP
Allow List table.
The Egress IP Allow List table
is located in PanoramaCloud
ServicesConfigurationMobile
Users—GlobalProtect.
The Egress IP Allow List table contains
the following fields:
Field
Description
Location
The onboarded mobile user location.
Confirmed Allow Listed Egress IPs / Allocated
The number of egress IP addresses that have
been confirmed as being allow listed, and the number of egress IP
addresses that have been allocated.
Provisioning Status
The allow listing status of the egress IP addresses.
Provisioned—You have added the egress
IP addresses to your organization’s allow lists, have confirmed
them as having been added in the Prisma Access UI by checking Added
to My Allow List, and have committed and pushed your
changes to make them fully provisioned.
Not Provisioned—Prisma Access has
allocated IP addresses for the location, and you have added the
egress IP addresses to your organization’s allow lists and confirmed
them as having been added in the Prisma Access UI, but you have
not yet onboarded this location.
Cannot Be Provisioned—You have onboarded
this location, but have not yet checked Add to My Allow
List and committed and pushed your changes.
Until
you specify in Prisma Access that you have added these egress IPs
to your organization’s allow lists and Commit and Push your
changes, Prisma Access will not provision these IP addresses to
your deployment.
Provisioned with partial capacity—You
have added the first set of egress IP addresses, have confirmed
them as having been added in the Prisma Access UI, and have Committed
and Pushed your changes. However, Prisma Access has added another
set of IP addresses as part of an autoscale event,
and those IP addresses have not been specified as added to your
allow lists in the Prisma Access UI.
The following screenshot
shows an example of a deployment that would be marked as Provisioned
with partial capacity. Two IP addresses have been marked
as Added to My Allow List; however, Prisma Access
has added two more IP addresses to this location, and those locations
have not been added in the UI.
Autoscale Status
Shows the status of the autoscaling in Prisma
Access.
Allowed—You have added
all IP addresses to the allow lists. If a large number of mobile users
log in to a single location and trigger an autoscale event, Prisma
Access will use the allow listed IP addresses for the autoscale event.
Not Allowed—You have not specified all
IP addresses as being added to your allow lists in the Prisma Access
UI, or you have not committed and pushed your changes after marking
them as added. If Prisma Access triggers an autoscale event, Prisma
Access will not provision more IP addresses to add more capacity
for the location.
Every time that you add a location, or every
time that Prisma Access adds IP addresses as a result of an autoscale
event, you need to refresh the page that contains the Egress
IP Allow List table, specify Added to My
Allow List to mark the IP addresses as being added to
your organization’s allow lists, and Commit and Push your
changes.
To keep informed of
any IP addresses that Prisma Access adds as a result of an autoscale
event, you should set up a URL where
Prisma Access will notify you of IP address changes.
Timestamp
The last known time when an IP was allocated
for this region in Coordinated Universal Time (UTC).