Home
EN
Location
Documentation Home
Palo Alto Networks
Support
Live Community
Knowledge Base
MENU
Home
Prisma
Prisma Cloud
Prisma Cloud Microsegmentation Administrator's Guide
Get started
Create Namespaces
Document:
Prisma Cloud Microsegmentation Administrator's Guide
Create Namespaces
Download PDF
Last Updated:
Sun Aug 07 18:55:19 PDT 2022
Current Version:
Prisma Cloud Enterprise Edition
Version Prisma Cloud Enterprise Edition
Version Self-Hosted 5.0 (Legacy)
Table of Contents
Search the Table of Contents
About Microsegmentation
Concepts
Microsegmentation Console
App credentials and tokens
Enforcer
Processing units
Tags and identity
Microsegmentation namespaces
Monitor Network Traffic
Network rulesets
Application Profiling
Out-of-the-Box Rules
Policy System
Get started
Sign up
System requirements
Install apoctl
Create Namespaces
Install the Enforcer
Enabling non-transparent proxy support
Install Enforcers on Kubernetes
Linux hosts
Windows hosts
Configure
Add users
Setting a default enforcer version
Configure an Enforcer Profile
Create External Networks
Enabling Out Of The Box Rules
Creating Application Profiles
Enable Syslog Forwarding
Secure
Securing a Kubernetes namespace
Securing host communications
Blocking malicious IPs
Authenticating users with OIDC
Using the Kubernetes API Server
Troubleshoot
Enforcer
Connectivity
Upgrade
Upgrade enforcers
Linux enforcers
Apoctl
Concepts
api command
appcred command
auth command
aws command
compliance subcommand
configure command
completion command
enforcer command
metrics command
oam command
profiles command
reports command
reportsquery command
ssh command
stats command
Microsegmentation Console API
Overview
Core resources
Debug resources
External resources
Integration resources
Internal resources
PCN resources
Policy resources
Visualization resources
Reference
App credentials
Service authorization
Examples
About Microsegmentation
Concepts
Microsegmentation Console
App credentials and tokens
Enforcer
Processing units
Tags and identity
Microsegmentation namespaces
Monitor Network Traffic
Network rulesets
Application Profiling
Out-of-the-Box Rules
Policy System
Get started
Sign up
System requirements
Install apoctl
Create Namespaces
Install the Enforcer
Enabling non-transparent proxy support
Install Enforcers on Kubernetes
Linux hosts
Windows hosts
Configure
Add users
Setting a default enforcer version
Configure an Enforcer Profile
Create External Networks
Enabling Out Of The Box Rules
Creating Application Profiles
Enable Syslog Forwarding
Secure
Securing a Kubernetes namespace
Securing host communications
Blocking malicious IPs
Authenticating users with OIDC
Using the Kubernetes API Server
Troubleshoot
Enforcer
Connectivity
Upgrade
Upgrade enforcers
Linux enforcers
Apoctl
Concepts
api command
appcred command
auth command
aws command
compliance subcommand
configure command
completion command
enforcer command
metrics command
oam command
profiles command
reports command
reportsquery command
ssh command
stats command
Microsegmentation Console API
Overview
Core resources
Debug resources
External resources
Integration resources
Internal resources
PCN resources
Policy resources
Visualization resources
Reference
App credentials
Service authorization
Examples
Previous
Next
Create Namespaces
There are two types of namespaces that are relevant for microsegmentation.
Cloud account namespaces
Group level namespaces
The following tasks show how to create these types of namespaces.
Create Cloud Account Namespaces
Use cloud account namespaces to identify:
AWS Cloud Accounts
Azure Subscriptions
GCP projects
Data centers
To create a cloud-account-level namespace, go to the
Namespace
page under
Network Security > Microseg
.
Ensure that you are on the root for your tenant-level namespace.
Click on the
+ sign
button to create a new cloud account level namespace.
Enter the name for the namespace under
Namespace Name
.
Select the
Implicit Default Action
. Set it to
allow
at first to enable child namespaces to inherit this action.
Leave Organizational
Tags and Additional Tag Prefixes
unchanged unless a Prisma Cloud specialist explicitly instructs you otherwise.
Cloud account namespaces are automatically created for cloud accounts onboarded on Prisma Cloud.
Create Group Level Namespaces
Use group namespaces to identify:
Virtual Machine (VM) or server-based applications
Kubernetes or Openshift clusters
To create a group level namespace, go to the
Namespace
page under
Network Security > Microseg
.
Ensure that you are on the proper cloud-account-level namespace
Click on the
+ sign
button to create a new group level namespace.
Enter the name for the namespace under
Namespace Name
.
Select the
Implicit Default Action
. Set it to
allow
to make sure the namespace default action is permissive. If you set it to
inherit
it receives the
Implicit action
from the parent namespace.
Leave Organizational
Tags and Additional Tag Prefixes
unchanged unless a Prisma Cloud specialist explicitly instructs you otherwise.
Previous
Next
Most Popular
Recommended For You
Recommended Videos
Recommended videos not found.