: Prisma SD-WAN SASE Easy Onboarding
Focus
Focus

Prisma SD-WAN SASE Easy Onboarding

Table of Contents

Prisma SD-WAN SASE Easy Onboarding

Learn how to integrate Prisma SD-WAN with Prisma SASE without using CloudBlades.
Effortlessly integrate Prisma SD-WAN with Prisma Access through a native onboarding process. Prisma Secure Access Service Edge (SASE) offers the most comprehensive solution in the industry for secure access at the edge, allowing organizations to connect and safeguard users, devices, and applications. Prisma SASE is the perfect fit for remote sites with single or multiple internet links, ensuring direct, reliable, and secure connections to both public and private applications.
Earlier, you needed the Prisma Access for Networks (Cloud Managed) CloudBlade to connect Prisma Access to Prisma SD-WAN. With the native SASE Integration with Prisma SD-WAN feature, you can directly onboard Prisma SD-WAN sites to Prisma Access, bypassing the need of a CloudBlade.
Prisma SD-WAN supports this integration for both Cloud Managed and Panorama Managed Prisma Access.
In case you have previously set up a CloudBlade to establish the connection between Prisma SD-WAN and Prisma Access, you must first deactivate the CloudBlade and contact Palo Alto Networks Customer Support before using this workflow.
Where Can I Use This?What Do I Need?
  • Strata Cloud Manager
  • Prisma SD-WAN
    • Active Prisma SD-WAN license
    • Prisma SD-WAN AppFabric deployed at one or more locations.
    • Physical and/or virtual ION devices running software versions 5.6.X or higher.
  • Prisma Access Cloud Managed
    • Prisma Access with Aggregate Bandwidth; the bandwidth licensing mode must be enabled per compute location on the Prisma Access Cloud Managed portal.
    • Identification of the IPSec Termination Nodes within Prisma Access for connectivity.
  • Ensure that you have Prisma Access (Cloud Managed) and Prisma SD-WAN in the same TSG.
Native SASE integration creates an IPSec tunnel between a Prisma SD-WAN circuit and Prisma Access. To use this workflow you must first do the following: