Generate a Custom App-ID Signature
Focus
Focus
Next-Generation Firewall

Generate a Custom App-ID Signature

Table of Contents

Generate a Custom App-ID Signature

Use the Custom App-ID Signature Generator in Applipedia to create application signatures that you can download or push directly to Strata Cloud Manager.
The Custom App-ID Signature Generator in Applipedia helps you build custom application signatures without manually writing signature patterns on the firewall. Use this tool when you need to identify and control traffic for applications that are not covered by the predefined App-ID catalog — such as proprietary internal applications or niche third-party services. After generating a signature, you can download it or push the custom App-ID directly to Strata Cloud Manager.
  1. Go to applipedia.paloaltonetworks.com and sign in with your Customer Support Portal credentials.
  2. Click Generate Custom App Signature.
  3. Enter the general information for the application.
    1. For App Name, enter a name for the custom application.
    2. (Optional) For Description, enter a description of the application.
    3. For Target Endpoints, enter one or more URLs or FQDNs that identify the application's traffic, then press Enter to add each one.
      Entries match anywhere in a hostname — for example, entering test.com also matches atest.com. To match an exact domain, add a leading space (for example, test.com). You can enter multiple URLs or FQDNs, but they must belong to the same domain.
  4. Click Next: Properties & Characteristics.
  5. Configure the application properties.
    1. For Category, choose the application category.
    2. For Subcategory, choose the application subcategory.
    3. For Technology, choose the underlying technology (such as browser-based, client-server, or network-protocol).
    4. For Risk, choose the risk score (1 through 5).
    5. (Optional) For Parent App, choose a parent application if this custom App-ID is a functional component of an existing application. Click Remove Selection to clear the selection.
  6. Enable the behavioral characteristics that apply to the application.
    Select any combination of: Capable of Transferring Files, Tunnels Other Applications, Used by Malware, Widely Used, Continue Scan For Other Application, Excessive Bandwidth, Has Known Vulnerabilities, Evasive, or Prone to Misuse.
  7. (Optional) Enable Advanced Settings to configure protocol defaults, timeouts, and scanning options, then click Next: Advanced Setting (Optional).
    The advanced settings allow you to configure:
    • Defaults—Choose the default protocol type: None, Port, IP Protocol, ICMP Type, or ICMP6 Type.
    • Timeouts—Set session timeout values (in seconds) for Timeout, TCP Timeout, TCP Half Closed Timeout, TCP Time Wait Timeout, and UDP Timeout.
    • Scanning—Enable scanning for File Types, Viruses, or Data Patterns.
  8. Click Save and Generate.
    Applipedia generates the custom App-ID signature and displays the result in JSON SCM API format.
  9. Download or deploy the signature.
    • Download—Click Download Signature to save the signature file locally.
    • Push to Strata Cloud Manager—In the Generate Custom App-ID on SCM section, enter your SCM Access Token, choose a Scope (Global, All Firewall, or Prisma Access), then select the target location:
      • For Prisma Access, choose a Folder Name (such as Shared, Mobile Users, Remote Networks, or Service Connections).
      • For All Firewall, choose a Folder, Device, or Snippet.
      Click Create Custom App-ID to push the signature to Strata Cloud Manager.