
Prisma Access ZTNA Connector Virtual Appliance
Overview
Prisma Access ZTNA Connector provides secure access to private applications in in-house data centers and virtual private clouds
Highlights
- The Prisma Access ZTNA Connector supports client-initiated traffic from remote and branch office users.
- The Prisma Access ZTNA Connector automatically creates a tunnel to Prisma Access and eliminates routing choices.
- Prisma Access ZTNA Connectors can be deployed in overlapping networks (applications in overlapping RFC 1918 address spaces) to provide NAT-free connectivity.
Details
Pricing
Prisma Access ZTNA Connector Virtual Appliance
Vendor refund policy
Returns are currently not supported
Legal
Vendor terms and conditions
Content disclaimer
Usage information
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Prisma Access 5.1.1 Additional license for ZTNA connectors The basic license with additional licenses includes 8 ZTNA connectors, 100 FQDNs, and 4 IP subnet capabilities. The premium license with additional licenses includes 40 ZTNA connectors, 300 FQDNs, and 1024 IP subnet capabilities. Premium and additional licenses include 200 ZTNA connectors, 4000 FQDNs, and 1024 IP subnet capabilities. If you do not purchase an additional license for the ZTNA connector, the Prisma Access license includes 4 connectors, 40 FQDNs, and 4 IP subnets. This feature is provided to try out ZTNA connectors in your environment.
Additional details
Usage instructions
Use the following workflow to enable the ZTNA Connector in cloud-managed Prisma Access.
-
Configure the IP address block that Prisma Access will use internally to route traffic to the ZTNA connector and the dedicated application you have installed. You must define separate IP address blocks for your connectors and applications, and these blocks must not overlap with each other, the Prisma Access infrastructure subnet, or your GlobalProtect IP address pool. Select Set up Prisma Access settings to share and edit infrastructure settings. If you're using Strata Cloud Manager, go to the workflow Prisma Access settings Prisma Access infrastructure settings.
-
Add the ZTNA Connectors application IP block. You can add a single application IP block or multiple blocks, depending on your deployment. For example, enter 100.64.10.0/24 and 100.64.11.0/24. You can also advertise application IP blocks to remote networks to provide remote network access. Add ZTNA connector connector IP blocks, and Prisma Access will use these IP blocks internally to route traffic between mobile users, remote networks, and connector virtual machines in the data center. You can add a single connector IP block or multiple blocks, depending on your deployment. For example, enter 100.65.10.0/24 and 100.65.11.0/24.
-
Click Save to save the IP address block configuration, and then click Submit to push the configuration. Launch the ZTNA Connector from the Prisma SASE platform. Sign in to the Prisma SASE Platform. Select Set up ZTNA Connector.
-
If you're using Strata Cloud Manager, go to Workflow ZTNA Connector. Prisma Access begins setting up the infrastructure for the ZTNA Connector. This may take a few minutes.
-
Once setup is complete, the ZTNA Connector Overview will be displayed. CTF link: https://ztna-connector-cfts.s3.eu-west-2.amazonaws.com/AMI-Final-600-627-zc-b8/AWS-PA-ZTNA-Connector-1ARM.yaml
Resources
Vendor resources
Support
Vendor support
Support Information Prisma Access ZTNA connector virtual appliance Contact person: Geng Ying Contact email: PANWhosting@digitalchina.com Provide 5*8 hours remote telephone support service
Amazon Web Services infrastructure support
Amazon Web Services Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.