Enable Mobile User Regional Redundancy
Focus
Focus

Enable Mobile User Regional Redundancy

Table of Contents

Enable Mobile User Regional Redundancy

To ensure that your mobile users always have access to the services and applications that are accessible from service connections, enable network redundancy between the portals or gateways and service connections. This feature provides redundant network paths between the mobile user dataplane and service connections in different compute locations. Enabling redundancy provides users with more resilient access to resources behind service connections in a data center or headquarters locations. Because a service connection is required for mobile users to access resources from remote networks, users also have more resiliency in accessing resources in remote network locations.
  1. Create at least two service connections in different Prisma Access locations that map to unique compute locations.
    We recommend you to have multiple service connections to ensure there are alternate paths to the data center if the connectivity through one of the Prisma Access locations fails.
  2. Enable asymmetric routing with load sharing across service connections in your backbone routing options to choose the best alternate route in case of connectivity failure.
  3. Select the Enable Network Redundancy check box when you onboard mobile users.
    If you have already onboarded mobile users, edit the configuration settings in the Onboarding section.
    1. Select PanoramaCloud ServicesConfigurationMobile Users - GlobalProtect.
    2. Select the hostname in the Onboarding section.
    3. Select the Enable Network Redundancy check box.
    4. Click OK.
  4. Commit all your changes to Panorama and push the configuration changes to Prisma Access.
    1. Click CommitCommit and Push.
    2. Edit Selections and, in the Prisma Access tab, make sure that Mobile Users is selected in the Push Scope, then click OK.
    3. Click Commit and Push.