This feature requires Prisma Access Browser version 129.90.2910.2 and later.
You now have the ability to apply policies based on the device's location in addition to
the other Scope parameters that can be used for all policy rules.
The policy engine evaluates the location of the device every 60 minutes and reports the
location back to the server. For macOS and Windows devices, the policy engine will use
the OS Location Services, if enabled. Otherwise the engine will use Geo IP location.
Important Information for Admins
End-users who use VPN services can change their public IP by selecting a
different location for their connection. For example, a user in Germany can
decide to connect to the company network from a location in the United States,
depending on the VPN provider.
To reduce the risk of location bypass, you can use MDM (for managed
devices) and enable OS location services tot he browser, as well as to
browsers that use the Prisma Access Browser Extension.
The location may not be accurate around
national borders for both OS Location Service and Geo IP.