File Download
Focus
Focus

File Download

Table of Contents

File Download

File Download Control
Prisma Browser DesktopPrisma Browser ExtensionPrisma Browser for Mobile
Full supportPartial support Partial support
For detailed information in File Downloads using the Prisma Browser for Mobile, refer to the Prisma Browser for Mobile information
File Download control provides multiple capabilities related to downloading files from websites that match a specified URL, application, or website classification. To set the File Download control:
  1. From Strata Cloud Manager, select ConfigurationPrisma Browser PolicyControlsData Controls
  2. Select File Download.
  3. Select one of the following options:
    • Allow - the Prisma Browser will allow all downloads.
    • Allow (Protected) – the Prisma Browser will allow downloads that can open only in the browser.
      • Allow to open outside of the browser - users will be able to unprotect the file, allowing viewing and editing of the file using external applications. This includes any browser and any Desktop application.
      • To unprotect a file:
        1. Click the Download History folder link in the Browser bar.
        2. Select the file to open. It will be indicated by a folder with a slash.
        3. Click on the icon to unprotect the file.
    • Save to organizational storage - Users won't be able to download the files directly. Files will be uploaded to the cloud storage that you selected.
      • Select provider - Select the cloud provider from the list. For more information on configuring cloud storage items refer to Configuration→Prisma Browser →Integrations→Services→Cloud storage
        Be sure to configure the organizational storage before it becomes available to the users. If you did not configure organizational storage, the option is not available.
    • Block - the Prisma Browser will block all downloads.
    • Apply on:- select between one of the following options:
        • Any file - the download restrictions will apply to all files.
        • Specific files- the download restrictions will apply to files that meet the selected specifications (the rule can contain as many of these specifications as needed):
        • File size - set the size of the file.
        • File types - set the file types that need to match this rule.
        • File hash - set the SHA-256 hash to be matched for this rule.
        • MIP label - set the level of the MIP label that can be used to protect contents with sensitive content.
    • Prompt- when there is a restriction, select between one of the following options:
      • None - there will be no prompts.
      • Before download- inform the user that there is a restriction and how to bypass it.
        • Warn and allow to proceed anyway - informs users about the risk or sensitivity of downloading files but allowing them to continue.
        • Warn and allow to proceed anyway with a reason - informs users about the risk or sensitivity of downloading files and require them to select a reason to continue.
        • Permission request - allows users to send a permission request to the admin. The user will be informed once the request is approved or denied.
    • Require MFA - Require users to complete an additional authentication (PIN code, passkey, or IdP authentication) before downloading files. Configure the authentication factor used under Authentication Factor
  4. When you use this control, you can use your own dialog text to replace the default. To set the text, click Set dialog text.
  5. Set.
    When downloading PDF files - On Android devices, the PDF may briefly appear in the browser viewer before the system blocks the download. On iOS, the download is blocked immediately, and the viewer does not open.