Differences between the ZTNA connector and SC-CAN
While an SC-CAN provides a traditional connection to a data center or cloud environment via an IPSec tunnel, the ZTNA connector provides a simplified connection that is established automatically. There is no need for complex Internet Key Exchange (IKE) gateway and IPSec tunnel configuration, nor is there a need to set up routing.
The ZTNA connector is a VM that is deployed inside the intended environment and connects automatically to the nearest Prisma Access location. Each connector provides up to 1 Gbps of throughput, up to 10 Gbps per compute location. Access to resources behind the ZTNA connector is controlled via normal security policies.
Applications are made available by leveraging the built-in DNS proxy to attach custom internal fully qualified domain names (FQDNs) to applications (targets) behind each ZTNA connector using an internal network address translation (NAT) pool. This allows ZTNA connectors to be deployed in...