Design considerations
Before we start setting up an array of MU-SPNs all over the world, some things need to be considered. When deploying a traditional GP design with several gateways spread across the world, a GP agent will collect a list of all available gateways from the (single) portal and test connectivity with all of them, then proceed to connect to the fastest one.
In Prisma Access, this mechanism has been changed quite a lot.
Gateway selection
First, a GP agent will connect to the portal. The portal is the node that serves configuration to the GP endpoint and provides gateways for the endpoint to connect to. It is also used when clientless applications are made available to users. Due to the nature of cloud computing, the URL that’s used for the portal can be attached to different nodes in different regions of the world. At the time of writing, there are three portal nodes – one in the Americas, one in EMEA, and one in APAC – all responding to...