Strata Cloud Manager
Troubleshoot NGFW Connectivity and Policy Enforcement Anomalies
Table of Contents
Expand All
|
Collapse All
Strata Cloud Manager Docs
-
- Strata Copilot
- Command Center: Strata Cloud Manager
-
- Dashboard: Build a Custom Dashboard
- Dashboard: Executive Summary
-
- WildFire Dashboard: Filters
- WildFire Dashboard: Total Samples Submitted
- WildFire Dashboard: Analysis Insights
- WildFire Dashboard: Session Trends For Samples Submitted
- WildFire Dashboard: Verdict Distribution
- WildFire Dashboard: Top Applications Delivering Malicious Samples
- WildFire Dashboard: Top Users Impacted By Malicious Samples
- WildFire Dashboard: Top Malware Regions
- WildFire Dashboard: Top Firewalls
- Dashboard: DNS Security
- Dashboard: AI Runtime Security
- Dashboard: IoT Security
- Dashboard: Prisma Access
-
- Application Experience Dashboard: Mobile User Experience Card
- Application Experience Dashboard: Remote Site Experience Card
- Application Experience Dashboard: Experience Score Trends
- Application Experience Dashboard: Experience Score Across the Network
- Application Experience Dashboard: Global Distribution of Application Experience Scores
- Application Experience Dashboard: Experience Score for Top Monitored Sites
- Application Experience Dashboard: Experience Score for Top Monitored Apps
- Application Experience Dashboard: Application Performance Metrics
- Application Experience Dashboard: Network Performance Metrics
- Dashboard: Best Practices
- Dashboard: Compliance Summary
-
- Prisma SD-WAN Dashboard: Device to Controller Connectivity
- Prisma SD-WAN Dashboard: Applications
- Prisma SD-WAN Dashboard: Top Alerts by Priority
- Prisma SD-WAN Dashboard: Overall Link Quality
- Prisma SD-WAN Dashboard: Bandwidth Utilization
- Prisma SD-WAN Dashboard: Transaction Stats
- Prisma SD-WAN Dashboard: Predictive Analytics
- Dashboard: PAN-OS CVEs
- Dashboard: CDSS Adoption
- Dashboard: Feature Adoption
- Dashboard: On Demand BPA
- Manage: IoT Policy Recommendation
- Manage: Enterprise DLP
- Manage: SaaS Security
- Manage: Prisma Access Browser
- Reports: Strata Cloud Manager
-
-
- Strata Cloud Manager Release Information
-
- New Features in February 2025
- New Features in January 2025
- New Features in December 2024
- New Features in November 2024
- New Features in October 2024
- New Features in September 2024
- New Features in August 2024
- New Features in July 2024
- New Features in June 2024
- New Features in May 2024
- New Features in April 2024
- New Features in March 2024
- New Features in February 2024
- New Features in January 2024
- New Features in November 2023
- New Features in October 2023
- New Features in September 2023
- Known Issues
- Addressed Issues
- Getting Help
Troubleshoot NGFW Connectivity and Policy Enforcement Anomalies
Troubleshoot issues on your NGFWs.
Where Can I Use This? | What Do I Need? |
---|---|
|
|
Troubleshoot your NGFWs from Strata Cloud Manager without having to move
between various firewall interfaces. If you experience connectivity issues after
deploying and configuring your NGFWs, you can get an aggregate view of your routing and
tunnel states, and drill down to specifics to find anomalies and problematic
configurations.
Troubleshoot your identity-based policy rules and dynamically defined
endpoints. You can check the status of specific NGFWs and expose possible mismatches
between how you expect a policy to work and its actual enforcement behavior.
Troubleshooting lets you drill down on issue that might arise
within these networking and identity features–track down and resolve connectivity issues
or policy enforcement anomalies:
Network Troubleshooting
Identity and Policy Troubleshooting
Firewall Troubleshooting

Go to Manage ConfigurationNGFW and Prisma AccessOperations TroubleshootingSession Browser to start troubleshooting your firewalls.
Or, you can go to the feature you want to troubleshoot and select the
Troubleshooting button to get started.
View and sort troubleshooting jobs you've run by Status, Action, Search Target, and
Timestamp.
Feature | Feature Location | Available Actions | Action Scope | Job Output Organized By: |
---|---|---|---|---|
Session Browser (Firewall) | Manage ConfigurationNGFW and Prisma AccessOperations> TroubleshootingSession Browser | Filter by:
| Firewalls you specify |
|
DNS Proxy (Network) | Manage ConfigurationNGFW and Prisma AccessDevice SettingsDNS Proxy |
| Firewalls you specify |
|
NAT (Network) | Manage ConfigurationNGFW and Prisma AccessNetwork PoliciesNAT | Show the NAT Rule IP Pool | Firewalls you specify |
|
User Groups (Identity) | Manage ConfigurationNGFW and Prisma AccessIdentity ServicesCloud Identity Engine |
| Firewalls you specify |
|
Dynamic Address Groups (Identity) | Manage ConfigurationNGFW and Prisma AccessObjectsAddressAddress Groups |
| Firewalls you specify |
|
Dynamic User Groups (Identity) | Manage ConfigurationNGFW and Prisma AccessObjectsDynamic User Groups |
| Firewalls you specify |
|
User ID (Identity) | Manage ConfigurationNGFW and Prisma AccessIdentity ServicesIdentity Redistribution |
| Firewalls you specify |
|
Export Metadata for Troubleshooting
To provide technical support with the information they need to better assist you,
AIOps for NGFW enables you to export your deployment data to your
local machine. This data arrives in JSON files that are compressed in the gzip
format.
- Select Help > Export Tenant Metadata.
- Prepare Metadata.
- Download your metadata file.The metadata file name contains your Customer Support Portal (CSP) ID, your AIOps for NGFW tenant ID, and the timestamp for the export: <csp-tenant-timestamp>.gzip.