Policy Object: HIP Objects
HIP objects provide the matching criteria for filtering the raw data reported by an app
that you want to use to enforce policy.
| Where Can I Use This? | What Do I Need? |
- NGFW (Cloud Managed)
- NGFW (PAN-OS & Panorama Managed)
- Prisma Access (Managed by Strata Cloud Manager)
- Prisma Access (Managed by Panorama)
| Check for any license or role requirements for the products you're using. |
HIP Objects are used to define objects for a host
information profile (HIP). HIP objects provide the matching criteria
for filtering the raw data reported by an app that you want to use
to enforce policy. For example, if the raw host data includes information
about several antivirus packages on an endpoint, you might be interested
in a particular application because your organization requires that
package. For this scenario, you create a HIP object to match the
specific application you want to enforce.
The best way to determine the HIP objects you need is to determine
how you will use the host information to enforce policy. Keep in
mind that the HIP objects are merely building blocks that allow
you to create the HIP profiles that your Security policies can use.
Therefore, you may want to keep your objects simple, matching on
one thing, such as the presence of a particular type of required
software, membership in a specific domain, or the presence of a
specific endpoint OS. With this approach, you have the flexibility to
create a very granular, HIP-augmented policy.