Define the custom host information profile data that you want the Prisma Access Agent
to collect.
| Where Can I Use This? | What Do I Need? |
The Prisma Access Agent collects information about the host it's
running on and submits this host information to the gateway upon successful
connection. The gateway matches this raw host information submitted by the Prisma
Access Agent against any host information profile (HIP) objects and HIP Profiles
that you have defined. If it finds a match, it generates an entry in the HIP Match
log. Additionally, if it finds a HIP Profile match in a policy rule, it enforces the
corresponding security policy.
Prisma Access Agent uses OPSWAT technology
primarily for the HIP feature to assess the security posture of endpoints connecting
to the network. You can define custom HIP data that you want the Prisma Access Agent
to collect or exclude. When this option is enabled, the Prisma Access Agent collects
data from the endpoints.
For example, a custom check could enable you to know whether a certain
application is installed or running on an endpoint. The data that you define to be
collected in a custom check is included in the raw host information data that the
Prisma Access Agent collects and then submits to the gateway when the Prisma Access
Agent connects.
You can configure HIP data collection settings for Strata Cloud Manager Managed or
Panorama managed deployments.