Browser Self-Protection
Focus
Focus

Browser Self-Protection

Table of Contents

Browser Self-Protection

Browser Self-Protection control
Prisma Browser DesktopPrisma Browser ExtensionPrisma Browser for Mobile
Full supportNo support Partial support
Support for Windows and Linux Android supports anti-tampering and integrity APIs
The Browser self-protection control enhances the security of Prisma Browser in high-risk environments, particularly on unmanaged or contractor devices (BYOD). These devices often grant users administrative privileges, increasing exposure to insider threats and malware.
For additional background information, refer to Prisma Browser Self-Protection for Windows.
To mitigate these risks, Prisma Browser introduces an advanced runtime protection mechanism based on a Windows kernel-level driver. This ensures the browser process remains protected from tampering and unauthorized interference during operation.
You can remotely enable or disable this driver-based protection. This control is disabled by default, and applied only when Prisma Browser is installed with Administrative privileges on Windows, and the user is running the browser as Administrator.
  1. From Strata Cloud Manager, select ConfigurationPrisma Browser PolicyControlsBrowser Security
  2. Select Browser self-protection.
  3. Select one of the following options:
    • Enable – Browser self-protection will be enabled and will run whenever the browser is called. In addition, you are able to define the browser's enforcement action when the self-protection module cannot be started. The options are:
      • Do not enforce - Browser runs normally.
      • Prompt and proceed anyway - Browser runs normally, but a warning is displayed.
      • Block browser access - Browser shuts down and message is displayed
    • Disable – Browser self-protection will be disabled, and will not function.
  4. Click Set.