| Where Can I Use This? | What Do I Need? |
The Prisma Agent collects information about the host it's running on
and submits this host information to the gateway upon successful connection. The
gateway matches this raw host information submitted by the Prisma Agent against any
host information profile (HIP) objects and HIP Profiles that you have defined. If it
finds a match, it generates an entry in the HIP Match log. Additionally, if it finds
a HIP Profile match in a policy rule, it enforces the corresponding security policy.
Prisma Agent uses OPSWAT technology
primarily for the HIP feature to assess the security posture of endpoints connecting
to the network. You can define custom HIP data that you want the Prisma Agent
to collect or exclude. When this option is enabled, the Prisma Agent collects
data from the endpoints.
For example, a custom check could enable you to know whether a certain
application is installed or running on an endpoint. The data that you define to be
collected in a custom check is included in the raw host information data that the
Prisma Agent collects and then submits to the gateway when the Prisma Agent
connects.
You can configure HIP data collection settings for Strata Cloud Manager Managed or
Panorama managed deployments.