Understand Prisma SD-WAN and Prisma Access for Networks Integration
Expand all | Collapse all
Understand Prisma SD-WAN and Prisma Access for Networks Integration
Learn a high-level summary of the Prisma Access Integration logic.
The following is a high-level summary
of the Prisma Access for Networks Integration logic.
- Prisma Access for Networks Integration (Cloud Managed) checks
for Prisma SD-WAN Sites and Interfaces tagged with Prisma Access
Integration markers.
- Prisma Access for Networks Integration (Cloud Managed) creates
a Site, Interface, Prisma Access Region, and Prisma Access Bandwidth
License plan to connect the Prisma SD-WAN Tagged interfaces with
Prisma Access instances. This plan is referred to as a ‘Fabric Map.’
- Prisma Access for Networks Integration (Cloud Managed) creates
and/or synchronizes Prisma SD-WAN Standard Endpoints, Service Groups,
and IKE/IPsec policies on Prisma SD-WAN and Prisma Access for Networks.
- Prisma Access for Networks Integration (Cloud Managed) begins
to create IKE/ IPsec constructs in Prisma Access for Networks that
are required to create the ‘Fabric Map’ planned in step #2.
- The Integration checks if the Prisma Access for Networks (Cloud
Managed) changes differ from the current, committed configuration.
If it does, the changes will be committed to Prisma Access for Networks
(Cloud Managed) and then pushed to Prisma Access Remote Networks.
- The Integration then checks the Prisma Access cloud API and
creates a list of the previously committed changes that are now
ready to be created into tunnels.
- The Integration then creates any needed Standard Tunnels on
Prisma SD-WAN and connects the tunnels.
- Finally, the Integration cleans up and removes any unused tunnels
and/or configurations that are no longer in use as a result changes
in the ‘Fabric Map.’