The native SASE integration features an onboarding process that effortlessly
integrates Prisma SD-WAN with Prisma Access. With previous Prisma Access versions,
you needed to configure the additional component — Prisma Access for Networks (Cloud
Managed) CloudBlade to onboard Prisma SD-WAN sites to Prisma Access. The native SASE
integration between Prisma SD-WAN and Prisma Access further simplifies onboarding by
eliminating the need to set up the CloudBlade. Prisma Access currently supports this
integration only for new Prisma SASE (Strata Cloud Manager) deployments. For
Panorama Managed Prisma Access deployments, continue using CloudBlades for
integration with Prisma SD-WAN. Prisma SASE Easy Onboarding works seamlessly with
both Prisma Access Cloud Managed and Panorama Managed deployments.
To use Cisco Catalyst SD-WAN with Prisma® Access,
you needed to create remote networks and IPSec tunnels manually. You can now onboard
a remote network using IPSec tunnels between Cisco Catalyst SD-WAN and Prisma Access
automatically. This feature automatically discovers eligible sites, creates the
necessary remote networks, and establishes IPSec tunnels between Cisco Catalyst
SD-WAN and Prisma Access, which significantly reduces manual configuration time and
enables faster deployment.
Contact your Palo Alto Networks account representative to enable this functionality.
After you enable the automatic creation of tunnels, configure the settings to
establish the connection between Prisma Access and Cisco Catalyst SD-WAN. View the
discovered sites that are eligible for the integration, and enable them accordingly.
This creates remote networks and establishes IPSec tunnels. Ensure to follow all the
requirements and prerequisites before you enable this functionality.