Configure the permissions users and user groups need to access certain apps in the
Secure Agentless Access portal.
| Where Can I Use This? | What Do I Need? |
- Prisma Access (Managed by Panorama or Strata Cloud Manager)
|
- Prisma Access 5.2.1
- Minimum Prisma Access
dataplane version:
11.2.4
- Prisma Access license with a Mobile
User subscription
- Secure Agentless Access add-on license
|
By default, no users can access any of the apps that you set up for Secure Agentless Access (SAA). You will need to explicitly grant permissions to the users
or user groups to define who has access to which apps.
To define the permissions, you must:
- Define the SAA policy rules that identify which users or
user groups have access to which apps
- Define a Security policy rule on the GlobalProtect gateway (Mobile User Security
Processing Node (MU-SPN)) to allow traffic from a set of users or user groups to
a set of destinations
To set up the permissions to enable SAA app access: