Enable Automatic Updates for SaaS Policy Rule Recommendations on Strata Cloud Manager
Focus
Focus
SaaS Security

Enable Automatic Updates for SaaS Policy Rule Recommendations on Strata Cloud Manager

Table of Contents


Learn how to enable automatic updates to rule recommendations on Strata Cloud Manager.
Enable automatic updates to automatically apply rule recommendation changes that the SaaS Security administrator requests to the rulebase. Doing so ensures that you don’t need to continuously monitor changes to existing rule recommendations. If you don’t enable automatic updates, Prisma Access (Managed by Strata Cloud Manager) continues to automatically pull the updates for you to review and manually import.
When you have automatic updates enabled, updates to existing rule recommendations display as Updates imported in Imported SaaS Rule Recommendations. Use the Last update failed link to help you resolve any failures.
  1. Log in to Strata Cloud Manager.
  2. If you have not already, associate the predefined SAAS-Inline-Pol-Recommendations snippet with one or more folders, NGFW, and Prisma Access tenants.
    Use snippets to standardize a common base configuration for a set of NGFW, and Prisma Access tenants. This allows you to quickly onboard new devices with a known good configuration and reduces the time required to onboard a new device. Additionally, this also allows you to quickly apply the same SaaS app security enforcement to multiple NGFW, and Prisma Access tenants.
    Use the predefined SAAS-Inline-Pol-Recommendations snippet to simplify management of your SaaS Security Inline Policy Recommendations.
  3. Select ManageConfigurationNGFW and Prisma AccessSecurity ServicesInternet SecurityPolicy Recommendations.
  4. Click the Configuration Scope and select SnippetsSAAS-Inline-Pol-Recommendations.
  5. In Imported SaaS Rule Recommendations, toggle Enable Automatic Updates to the on position.
    If you’ve already imported the rule recommendation, the SaaS admin’s update to the policy rule recommendation is automatically loaded into Imported SaaS Rule Recommendations and is pending approval.