Access Your Data Center Using Explicit Proxy (Panorama)
Focus
Focus
Prisma Access

Access Your Data Center Using Explicit Proxy (Panorama)

Table of Contents


Access Your Data Center Using Explicit Proxy (Panorama)

Access resources hosted in your data center using Prisma Access Explicit Proxy.
  1. Configure a service connection, Colo-Connect or ZTNA Connector in Prisma Access based on your requirement.
  2. Configure zone mappings.
    1. Select PanoramaCloud ServicesConfigurationMobile Users - Explicit ProxyZone Mapping
    2. Add the zones that you will use to access your data center resources to Trusted Zones.
  3. Ensure that the Destination ZONE in policy rules for internet-bound traffic is set to an untrust zone instead of any.
    Failure to perform this step could result in unintended access to your data center.
    1. Select Policies.
    2. Set the Device Group to Explicit_Proxy_Device_Group.
    3. Change the Destination ZONE from any to one of the untrust zones you configured in an earlier step.
  4. Enable private application access.
    • Enable private application access using Prisma Access Browser.
      1. Go to PanoramaCloud ServicesConfigurationMobile Users - Explicit ProxySettings
        AdvancedEnable Prisma Access BrowserEnable Private Application Access
    • Enable private application access using a regular browser.
      1. Go to PanoramaCloud ServicesConfigurationMobile Users - Explicit ProxySettings
        AdvancedUse GlobalProtect Agent to AuthenticateEnable Private Application Access
  5. Create security policy rules for the data center resources you want to access.
    1. Select Policies.
    2. Set the Device Group to Explicit_Proxy_Device_Group.
    3. Create security policy rules.
      In rules for data center access, ensure that you use the Trusted zones you configured in an earlier step.