Manage SaaS Security Inline Administrators
Focus
Focus
SaaS Security

Manage SaaS Security Inline Administrators

Table of Contents

Manage SaaS Security Inline Administrators

Learn how to manage SaaS Security Inline administrators.
Where Can I Use This?What Do I Need?
  • NGFW (Managed by Panorama or Strata Cloud Manager)
  • Prisma Access (Managed by Panorama or Strata Cloud Manager)
  • SaaS Security Inline license
  • NGFW or Prisma Access license
Or any of the following licenses that include the SaaS Security Inline license:
  • CASB-X
  • CASB-PA
Depending on the size of your organization and the number of SaaS apps you want to block, you can create more than one administrative account with access to all capabilities within SaaS Security web interface, including creating SaaS policy rule recommendations, tagging SaaS apps, and accessing reports and analytics.
  • Predefined Role Privileges on SaaS Security Inline
    The following table lists the SaaS Security Inline access privileges that match each predefined role.
    Although SaaS Security Inline and Data Security share a subset of roles, Data Security for these roles are described separately.
    Interface Options
    Privileges
    None
    View
    View, Download
    View, Download, Create
    Full Control
    Visibility
    Dashboard
    Read Only
    Limited Admin
    Super Admin
    Admin
    Discovered Applications
    Read Only
    Limited Admin
    Super Admin
    Admin
    Discovered Users
    Read Only
    Limited Admin
    Super Admin
    Admin
    Application Dictionary
    Read Only
    Limited Admin
    Super Admin
    Admin
    Policy Recommendations
    Read Only
    Limited Admin
    Super Admin
    Admin
    Reports
    SaaS Security Report
    Read Only
    Limited Admin
    Super Admin
    Admin
    Settings
  • View Administrator Activity on SaaS Security Inline
    SaaS Security captures actions performed by each administrator and records them in an audit log so you can audit activity and track changes. Role permissions on SaaS Security Inline dictate what activity is accessible to you from the log.
    You can audit activity by:
    • Specific administrator
    • All administrators combined
    To do this:
    1. Log in to Strata Cloud Manager.
    2. To open the administrator audit logs, select ManageConfigurationSaaS SecuritySettingsAdmin Audit LogsMonitor actions taken by SaaS Security administrators.
    3. Apply one or more filters to query administrator activity. You can filter the audit log by user role, user email, logged events, or a date range.
    4. (Optional) Click the download icon to save the search results to a CSV file.