Enable, Pause, Disable, and Uninstall the Integration
Learn how to Enable, Pause, Disable, and Uninstall the
Integration in Prisma SD-WAN CloudBlades.
After the Integration has been set up,
operations can be done in the CloudBlade panel. These operations
have various effects on the tunnels and configurations in Prisma
SD-WAN and AWS.
Set the CloudBlade to Enabled
This is the standard, expected mode of operation
for the Extension. The CloudBlade will run every 60 seconds.If there
are configuration changes, the CloudBlade will automatically reconfigure
the integration on AWS and Prisma SD-WAN. In addition, during this
integration run if any settings were previously modified manually
on either Prisma SD-WAN or AWS (e.g. VPC resource was accidentally
removed in the AWS portal) these will be reverted to the known good
state automatically.
Prisma SD-WAN resources such as GRE
tunnel on port 2, Port 1 circuit, Static route, and BGP routing,
if deleted or modified can be recreated by the AWS Transit Gateway
CloudBlade.
AWS resources such as VPC attachment,
Connect attachment, Connect peers in connect attachment, if deleted
can be recreated by the AWS Transit Gateway CloudBlade.
Set the CloudBlade to Paused
Pausing the CloudBlade stops all future integration runs but
leaves any created objects intact. This stops any future objects
from getting created, but does NOT prevent removal of any unconfigured
/ untagged objects on either Prisma SD-WAN or AWS.
Set the CloudBlade to Disabled
Disabling the CloudBlade removes / deletes all resources created
in the AWS environment and the Prisma SD-WAN environment. This can
cause communication interruptions if policy is not set to use other
paths.
If we need to remove all the configurations from
AWS and Prisma SD-WAN, you must disable the CloudBlade. For a clean
disable, ensure all Service and DC groups configurations for the
traffic is unconfigured and no extra VMs are created in connect
vpc in AWS.
Uninstall the CloudBlade
Uninstalling the CloudBlade removes the configuration for the
CloudBlade, and immediately stops any changes by the CloudBlade.
Uninstalling the CloudBlade does not automatically remove configuration
from all sites and objects. CloudBlades may be uninstalled and reinstalled
to facilitate upgrades or downgrades to different versions without traffic
interruption. To completely remove all items, set the CloudBlade
to Disabled for 5-6 Integration Run periods (360 seconds) before
uninstalling.