Book Image

Securing Remote Access in Palo Alto Networks

By : Tom Piens aka Piens aka 'reaper'
Book Image

Securing Remote Access in Palo Alto Networks

By: Tom Piens aka Piens aka 'reaper'

Overview of this book

This book builds on the content found in Mastering Palo Alto Networks, focusing on the different methods of establishing remote connectivity, automating log actions, and protecting against phishing attacks through user credential detection. Complete with step-by-step instructions, practical examples, and troubleshooting tips, you will gain a solid understanding of how to configure and deploy Palo Alto Networks remote access products. As you advance, you will learn how to design, deploy, and troubleshoot large-scale end-to-end user VPNs. Later, you will explore new features and discover how to incorporate them into your environment. By the end of this Palo Alto Networks book, you will have mastered the skills needed to design and configure SASE-compliant remote connectivity and prevent credential theft with credential detection.
Table of Contents (11 chapters)
1
Section 1: Leveraging the Cloud and Enabling Remote Access
6
Section 2: Tools, Troubleshooting, and Best Practices

Chapter 4: Configuring Prisma Access

In this chapter, we will learn about Prisma Access. Prisma Access is positioned as a Secure Access Service Edge (SASE) solution that aims to decentralize connectivity from the traditional data centre into the cloud, which it does by combining user VPNs and site-to-site VPNs and providing a service layer in the cloud that manages security. The cloud aspect enhances the user experience by providing users and remote offices with a geographically nearby point-of-presence, all while maintaining the same level of security wherever they are located.

In this chapter, we're going to cover the following main topics:

  • Configuring Prisma Access
  • Configuring the service infrastructure
  • Configuring the service connections
  • Configuring directory sync
  • Configuring mobile users
  • Configuring remote networks
  • Configuring the remote firewalls
  • Configuring Cortex Data Lake