Organizations with stringent security requirements need the ability to enforce
periodic validation to ensure continuous trust verification of user identities.
Dynamic Privilege Access-enabled Prisma® Access Agents already deliver continuous
trust verification today by seamlessly validating the user in the background without
disrupting the end-user experience. Augmenting this capability, Prisma Access Agent
now enables you to
configure how frequently users are
prompted to re-authenticate, with customizable intervals ranging from 10 hours to 30
days. You can set customizable warning timers to notify users before
re-authentication is required, preventing unexpected disconnections and workflow
disruption. The feature introduces a re-authentication frequency setting that
controls user refresh token lifetime globally across your deployment. For stricter
security enforcement, you can enable aggressive authentication to force immediate
re-authentication when users connect or extend gateway sessions. The gateway session
timeout setting has been renamed for clarity and notification preferences are now
managed at the global level.