Integrating 5G into SASE with Prisma SD-WAN
What is SD-WAN?
Simply put, SD-WAN is like a traditional router with one or more internet circuits. Software algorithms monitor the circuits and automatically choose which circuit to use based on several basic metrics. Based on the CloudGenix platform purchased in 2020, Prisma SD-WAN gets even better. Prisma SD-WAN can monitor and optimize traffic for each app you're using, making everything run smoother and more reliably without manual interventions.
How does SD-WAN help?
SASE stands for Secure Access Service Edge, which usually means combining the SSE service with an access layer, such as Prisma SD-WAN. Combining Prisma SD-WAN with Prisma Access allows an organization to intelligently route all its traffic from campuses or branch locations between sites and the Internet at the best possible speed. Again, there is more to this, but we can cover that more in another article.
SSE stands for Secure Service Edge. Think of SSE as moving the firewall from the traditional data center location to the cloud. This is also often called FWaaS or Firewall as a Service because the vendor manages the SSE infrastructure. In Palo Alto's case, this SSE service is Prisma Access. Why would someone want to use an SSE service? The simple answer is for the scalability and flexibility the solution provides. There are a lot of factors and considerations an organization must review before deciding to embrace Prisma Access; however, for the sake of time, we will assume the decision has already been made to move to Prisma Access.
When you combine Prisma SD-WAN and Prisma Access, you get the best of both SD-WAN and SSE services, offering the most flexibility and scalability for a compelling SASE service.
Why use cellular?
Cellular connectivity has been around for a while with SD-WAN, with limitations in speed and cost limiting it to an expensive backup option. 5G advancements allow it to be used as a primary internet link for the first time. 5G speeds can match what is typically available from traditional links but without the need to wait for weeks while the ISP deploys the circuit. This allows for freedom and flexibility with planning deployments since an active SIM card from a carrier is all that is needed now. This can be very useful when connecting anything that needs to be deployed quickly, such as a kiosk or temporary shop. It can also allow for simple staging and delivery to remote locations for quick setup or emergency use as backups. These are some potential use cases, with many more that could be important.
Once the modem is configured in the SD-WAN appliance, it can be boxed up and shipped to the location for easy installation. The SD-WAN appliance can leverage the cellular connection and send users directly to internet sites such as Office 365 or Google Docs while using an encrypted tunnel to connect to any private internal application such as DNS or Active Directory. Another configuration option would directly send all traffic across the SD-WAN tunnel to the data center. This flexibility allows a cellular site to have the same capabilities as a site with a traditional ISP connection, which makes this a great option.
Because of these and other options, 5G cellular can now be considered a primary solution. Prisma SD-WAN with Prisma Access is ready to help you deliver these options, giving you even more flexibility in your deployment options.
How can I learn more?
When you are ready to learn more about any of the topics in this blog, contact your local WWT account team, and we will be happy to assist you.