Book Image

Securing Remote Access in Palo Alto Networks

By : Tom Piens aka Piens aka 'reaper'
Book Image

Securing Remote Access in Palo Alto Networks

By: Tom Piens aka Piens aka 'reaper'

Overview of this book

This book builds on the content found in Mastering Palo Alto Networks, focusing on the different methods of establishing remote connectivity, automating log actions, and protecting against phishing attacks through user credential detection. Complete with step-by-step instructions, practical examples, and troubleshooting tips, you will gain a solid understanding of how to configure and deploy Palo Alto Networks remote access products. As you advance, you will learn how to design, deploy, and troubleshoot large-scale end-to-end user VPNs. Later, you will explore new features and discover how to incorporate them into your environment. By the end of this Palo Alto Networks book, you will have mastered the skills needed to design and configure SASE-compliant remote connectivity and prevent credential theft with credential detection.
Table of Contents (11 chapters)
1
Section 1: Leveraging the Cloud and Enabling Remote Access
6
Section 2: Tools, Troubleshooting, and Best Practices

Summary

In this chapter, we learned how SAML authentication can be leveraged to replace more traditional authentication methods. We learned how user-initiated pre-logon and always-on pre-logon can be set in GlobalProtect so that endpoints are connected before the user is logged onto the desktop environment. This knowledge will help provide your users with a more integrated and smoother environment, while also ensuring the endpoints are secured the moment they are booted up until they are shut down.

In the next chapter, we will investigate different ways of establishing a site-to-site VPN and how to troubleshoot problems connecting to sites, as well as an alternative means of connecting to remote sites using a hybrid GlobalProtect solution called satellites or Large-Scale VPN (LSVPN).