New Features - Strata Cloud Manager - July 2024
Ability to Disable Default HIP Profiles
Strata Cloud Manager now allows you to disable default HIP Profiles, providing greater flexibility in managing your security configurations.
This feature helps you to manage HIP Profiles when you reach the maximum limit while pushing configurations to your firewall deployment. You can now effectively manage the total number of HIP Profiles on your system, allowing you to prioritize your custom HIP Profiles.
We moved the default HIP objects and HIP Profiles from the Global-Default snippet to the HIP-Default snippet in Strata Cloud Manager. To disable the default HIP profiles, you can disassociate the HIP-Default snippet from the global folder. This change gives you more control over your HIP configurations while managing your default HIP Profiles .
Browser Support for Remote Browser Isolation
To ensure comprehensive web security for managed desktops, Remote Browser Isolation (RBI) now supports the Mozilla Firefox browser. This expanded support adds to existing isolated browsing compatibility alongside the Google Chrome, Microsoft Edge, and Safari browsers on both macOS and Windows operating systems. By extending browser support to Firefox, RBI, integrated with Prisma® Access, ensures that you can maintain security policy adherence across a wider variety of desktop environments, improving security adoption and maintaining consistent threat defense regardless of the browser choice. This broad support simplifies administration and strengthens your organization’s security posture by extending crucial protection against malware and zero-day attacks across most major desktop browsing surfaces.
Cross-Scope References Using Snippets
Enterprises managing their security posture through Strata Cloud Manager need to enforce configuration objects and global settings consistently across all their deployments. By referencing global settings across various scopes, such as within snippets or folders, you can streamline operations, eliminate redundant configurations, and enhance centralized management.
For example, using snippets you can effectively manage custom URL categories for access policy rules, threat prevention profiles, zones, addresses, and other objects that represent standard network segments.
This feature enables you to reference any common configurations or objects attached to a global scope and push them to your Next-Generation Firewalls and Prisma Access deployments. These shared objects and configurations within the global scope are available to all snippets. Snippets associated with the global scope are known as global snippets. You can reference the objects defined within these global snippets from any other snippets in your configuration. This simplifies the process of managing configurations from a single location so that you can update and enforce global standards across your entire deployment.
Panorama to Strata Cloud Manager Migration for Prisma Access
Organizations using traditional infrastructure to manage Prisma® Access must continually manage hardware and software, leading to increased administrative overhead and complexity. The new in-product migration workflow addresses this challenge by enabling organizations to seamlessly move their existing Prisma Access configurations from Panorama® management to Strata Cloud Manager. The migration workflow is disabled by default but is available whenever your organization is ready to transition to cloud management. Benefits include: Continuous Best Practice Assessments, Secure default configurations, Machine learning (ML)-based configuration optimization, Simplified web security workflow, Comprehensive and actionable visualizations, Intuitive workflows for complex tasks, Simple and secure management APIs, Cloud-native architecture provides scalability, resilience, and global reach, and the elimination of Panorama hardware to manage or software to maintain.