Apply Predefined SaaS Policy Rule Recommendations
Focus
Focus
SaaS Security

Apply Predefined SaaS Policy Rule Recommendations

Table of Contents

Apply Predefined SaaS Policy Rule Recommendations

Learn how to apply predefined (default) SaaS policy rule recommendations on SaaS Security Inline.
Where Can I Use This?What Do I Need?
  • NGFW (Managed by Panorama or Strata Cloud Manager)
  • Prisma Access (Managed by Panorama or Strata Cloud Manager)
  • SaaS Security Inline license
  • NGFW or Prisma Access license
Or any of the following licenses that include the SaaS Security Inline license:
  • CASB-X
  • CASB-PA
SaaS Security Inline provides predefined rule recommendations to create recommendations efficiently and with known best practices in mind. You can’t modify the rule name, description, activity, response, but you can add SaaS apps or groups to the predefined rule recommendations. Alternatively, you can create a policy rule recommendation from scratch. SaaS Security Inline provides predefined (default) rule recommendations that you can use without the need to create a policy rule recommendation from scratch.
Block Access is a predefined rule recommendation that all SaaS apps support. To quickly apply this recommendation, select one or more Discovered Applications and then Block Access. To quickly remove the SaaS app from this rule, select one or more Discovered Applications and then Unblock Access.
Name
Purpose
Block Access
Default rule: block users from accessing unsanctioned SaaS apps.
Block Personal
Default rule: prevent users from accessing their personal accounts.
Block Download
Default rule: prevent users from downloading content from SaaS apps.
Block Upload
Default rule: prevent users from uploading content to SaaS apps.
Prevent Share
Default rule: prevent users from sharing content on SaaS apps.
  1. Log in to Strata Cloud Manager
  2. Select ManageConfigurationSaaS SecurityDiscovered AppsPolicy Recommendations.
  3. In the table, locate the predefined rule recommendation that you want to apply.
  4. (Optional) Edit the predefined policy rule recommendation. In the Actions column, select the Edit action, then modify the SaaS apps, users, and groups, then Save.
  5. Set the Enabled toggle to the on position.