GCP-NCC CloudBlade Integration
Focus
Focus
Prisma SD-WAN

GCP-NCC CloudBlade Integration

Table of Contents

GCP-NCC CloudBlade Integration

Learn to integrate the Prisma SD-WAN GCP-NCC CloudBlade, note the prerequisites for the integration.
Where Can I Use This?What Do I Need?
  • Strata Cloud Manager
  • Prisma SD-WAN license
  • GCP-NCC CloudBlade
Prisma SD-WAN GCP-NCC CloudBlade allows seamless integration between Prisma SD-WAN branches and Google Cloud Platform Network Connectivity Center (NCC) to streamline and automate site-to-cloud connectivity at scale.
Network Connectivity Center in Google Cloud is a hub and spoke model for network connectivity management. The hub resource delivers a reliable connectivity on demand and reduces the operational complexity through a simple, centralized connectivity management.
NCC can connect VPNs, partner dedicated interconnects, as well as third party routers and SD-WAN. Wherever your applications or users are in the network, you can optimize the connectivity, reduce the operational load, and lower costs.
Cloud Router is a fully distributed and managed Google Cloud service that programs custom dynamic routes and scales with network traffic. It dynamically exchanges routes between Virtual Private Cloud (VPC) and on-premise networks using Border Gateway Protocol (BGP).

Prerequisites

Prisma SD-WAN
  • An active Prisma SD-WAN subscription with sufficient licenses to install at least 2 x v7108 ION devices per region.
  • Sufficient quota for the CloudBlade to create three VPCs in the project.
GCP
  • A GCP service account with permissions to call Rest APIs like Deployment Manager API, Compute Engine API, Cloud Router API, and Network Connectivity API. Access to these APIs must be enabled in the project before deploying the CloudBlade.
  • The Service Account must have permissions to create, update, and delete resources like (VPC, Firewall, Subnet, IP addresses, Routes, VM (instance), Cloud Router, Router Interfaces, BGP Peers, NCC Spoke, and NCC Hub).
  • An active GCP marketplace subscription for the Prisma SD-WAN ION Virtual Appliance.
  • From version 1.0.0 onwards, GCP regions must support instance machine type as First Generation N1.