Create a peripheral group to group multiple peripheral devices of the same type
together to apply the same data loss prevention enforcement to multiple peripheral devices
at once.
| Where Can I Use This? | What Do I Need? |
|
NGFW (Managed by Strata Cloud Manager)
Prisma Access (Managed by Strata Cloud Manager)
|
|
A peripheral group is a collection of peripheral devices of the same type that share
the same Endpoint DLP enforcement requirements. Instead of creating a separate
policy rule for each individual device, you add devices to a group and reference
the group in an
Endpoint DLP policy rule. A peripheral
device can belong to multiple peripheral groups, so you can apply different policy
rules to the same device by placing it in multiple groups with different
enforcement settings.
(Desktop Apps) To support domain-based filtering, you
can add the same app type multiple times with different domain names and place each
instance in a separate group. This lets you apply different enforcement to different
account instances of the same app. For example, you can enforce stricter controls on
a partner domain while allowing standard access for your corporate domain, using two
separate groups and two separate policy rules.
After you create and push a peripheral group configuration, you can view your
audit and push logs to review your configuration change
history and to verify that
Prisma Agent received the update.
Create an Endpoint DLP USB Peripheral Group
Create a USB peripheral group to apply the same data loss prevention enforcement to
multiple USB devices at once.
Log in to
Strata Cloud Manager.
Select .
Add
USB peripheral devices to
Enterprise DLP.
In the
Onboarded Peripherals, select
USB
Device.
Select one or more USB devices and click
Add/Create
Group.
Add the selected USB devices to a peripheral group.
Add to USB Group
Select this option if you already created a USB peripheral group and
want to add the selected devices to an existing peripheral
group.
To add the selected USB peripherals to an existing peripheral group,
choose the target Group from the
dropdown.
Create USB Group
Select this option if no USB peripheral group exists or if you want
to create and add the selected USB devices to a new peripheral
group.
Enter a peripheral group Name to add the
selected USB devices to a new peripheral group.
Click
Save.
Push your new peripheral group configuration to the
Prisma Agent.
Select and click
Push Policies.
(
Optional) Enter a
Description for the
Endpoint DLP policy push.
Review the Push Policies scope to understand the changes included in
the Endpoint DLP configuration push.
-
Create an Endpoint DLP Network Share Peripheral Group
Create a network share peripheral group to apply the same data loss prevention
enforcement to multiple network shares at once.
Log in to
Strata Cloud Manager.
Select .
Add
network share peripheral devices to
Enterprise DLP.
In the
Onboarded Peripherals, select
Network
Share.
To narrow down the list of network share peripherals, use the search bar to
search for a specific network share Name or filter
by Groups.
Select one or more network shares and click
Add/Create
Group.
Add the selected network shares to a peripheral group.
Add to Network Share Group
Select this option if you already created a network share peripheral
group and want to add the selected network shares to an existing
peripheral group.
To add the selected network shares to an existing peripheral group,
choose the target Group from the
dropdown.
Create Network Share Group
Select this option if no network share peripheral group exists or if
you want to create and add the selected network shares to a new
peripheral group.
Enter a network share group Name to add the
selected printers to a new network share group.
Click
Save.
Push your new peripheral group configuration to the
Prisma Agent.
Select and click
Push Policies.
(
Optional) Enter a
Description for the
Endpoint DLP policy push.
Review the Push Policies scope to understand the changes included in
the Endpoint DLP configuration push.
-
Create an Endpoint DLP Printer Peripheral Group
Create a printer peripheral group to apply the same data loss prevention enforcement
to multiple printers at once.
Log in to
Strata Cloud Manager.
Select .
Add
printer peripheral devices to
Enterprise DLP.
In the
Onboarded Peripherals, select
Printer.
Select one or more printers and click
Add/Create Group.
Add the selected printers to a peripheral group.
Add to Printer Group
Select this option if you already created a printer peripheral group
and want to add the selected printers to an existing peripheral
group.
To add the selected printers to an existing peripheral group, choose
the target Group from the dropdown.
Create Printer Group
Select this option if no printer peripheral group exists or if you
want to create and add the selected printers to a new peripheral
group.
Enter a peripheral group Name to add the
selected printers to a new peripheral group.
Click
Save.
Push your new peripheral group configuration to the
Prisma Agent.
Select and click
Push Policies.
(
Optional) Enter a
Description for the
Endpoint DLP policy push.
Review the Push Policies scope to understand the changes included in
the Endpoint DLP configuration push.
-
Create an Endpoint DLP Desktop App Peripheral Group
Create a desktop app peripheral group to apply the same data loss prevention
enforcement to multiple desktop apps at once.
Log in to
Strata Cloud Manager.
Select .
Add
desktop app peripheral devices to
Enterprise DLP.
In
Onboarded Peripherals, select
Desktop
Apps.
Select one or more desktop apps and click
Add/Create
Group.
Add the selected desktop apps to a peripheral group.
Add to a Group
Select this option if you already created a desktop app peripheral
group and want to add the selected desktop apps to an existing
peripheral group.
To add the selected desktop apps to an existing peripheral group,
choose the target Group from the
dropdown.
Create Group
Select this option if no desktop app peripheral group exists or if
you want to add the selected desktop apps to a new peripheral
group.
Enter a peripheral group Name to add the
selected desktop apps to a new group.
Click
Save.
Push your new peripheral group configuration to the
Prisma Agent.
Select and click
Push Policies.
(
Optional) Enter a
Description for the
Endpoint DLP policy push.
Review the Push Policies scope to understand the changes included in
the Endpoint DLP configuration push.
-