| Where Can I Use This? | What Do I Need? |
| Strata Cloud Manager |
- Data Security license
Enterprise DLP license
Or any of the following licenses that include the Enterprise DLP and Data Security licenses
- Prisma Access CASB license
- Next-Generation
CASB for Prisma Access and NGFW (CASB-X) license
- Data Security license
|
Enterprise DLP Shadow Data Discovery is Early Access.
Contact your Palo Alto Networks sales representative to enable this feature
on your Enterprise DLP tenant.
Modify the
Shadow Data Discovery settings after your
data security administrator initialize a
Shadow Data Discovery scan to dynamically
update the file volume range and data channels
Enterprise Data Loss Prevention (E-DLP) inspects for
shadow data. These settings control how
Enterprise DLP discovers and
categorizes shadow data in your environment.
Changes to the Shadow Data Discovery settings take effect whenever Data Security (SaaS API) rescans onboarded apps and does not apply
retroactively. The Shadow Data Discovery service maintains these settings as the
authoritative source, syncing them across your Enterprise DLP deployment for
consistent operation. These configurations ultimately determine when your
organization transitions from collecting raw data to having actionable insights
about sensitive information that traditional pattern-based detection might miss.