Lets learn to configure the Prisma SD-WAN CloudBlade
to prepare the Prisma SD-WAN Controller for integration.
Configure the Prisma SD-WAN CloudBlade to prepare the Prisma SD-WAN
controller for integration.
In Strata Cloud Manager, go to ManagePrisma SD-WANCloudBlades.
Locate the Zscaler Enforcement Nodes (ZEN) Integration
CloudBlade tile in the CloudBlades page and click
Configure. If this CloudBlade does not appear,
contact Palo Alto support team.
Enter the following information in the CloudBlade installation page.
From the Version list, select the required
version.
For Admin State, retain
Enabled, which is the default value.
For API Key, provide the SD-WAN key generated in
the previous section.
For Partner Admin Username and
Partner Admin Password, provide the partner
administrator account details created in the previous section.
For Zscaler cloud, select the Zscaler cloud to which your subscription is attached
(zscalerthree in the example below).
From version 2.1.0 onwards, the CloudBlade
supports govcloud which supports only IPsec tunnels.
Specify the IPsec Profile name (case sensitive).
The default is ZSCALER_IKEV2, which should be pre-provisioned along with
the CloudBlade allocation. The tunnels to be created will be identified
based on the tags created (AUTO-zscaler for IPSec and AUTO-zscaler-GRE
for GRE; version 2.0.0 onwards).
If you select Allow Interface Level Override for
the IPsec profile, it will allow administrators to change the IPsec
profile referenced at the Standard VPN tunnel level without the
CloudBlade overriding this change. This is typically useful in case of
troubleshooting scenarios.
(Optional) Provide the base URL. If
left blank, the base URL will be derived from the admin username
domain.
After you configure the settings, click Install (or Save,
if the CloudBlade was previously installed).