Enable App Security (Strata Cloud Manager)
Focus
Prisma Access

Enable App Security (Strata Cloud Manager)

Table of Contents

Enable App Security (Strata Cloud Manager)

Enable Private App Security in Strata Cloud Manager.
Where Can I Use This?What Do I Need?
  • Prisma Access (Managed by Strata Cloud Manager)
  • Prisma Access (Managed by Panorama)
Activate Your Prisma Access License describes how to activate Prisma Access in a Prisma Access (Managed by Strata Cloud Manager) or Panorama deployment.
  1. Go to ConfigurationApplication ServicesApplication SecurityGeneral.
  2. Select the certificate you want Private App Security to use for the SSL decryption. To manage the list of available certificates, log in to Strata Cloud Manager and go to Configuration NGFW and Prisma AccessObjectsCertificate Management.
    Both Private App Security and App Acceleration use the selected certificate. If you change the certificate for one service, the system automatically updates it for the other service as well.
  3. Enable the Private App Security toggle.
    Once enabled, App Security automatically discovers private applications by monitoring traffic flowing through Prisma Access. Discovered domains are populated automatically in ConfigurationApplication ServicesApplication SettingsDiscovery, and the list updates continuously as new domains receive traffic.
At this stage, no private application traffic is decrypted or inspected. To enable active protection, administrators must complete two additional steps:
  1. Define the applications to be protected.
  2. Create App Security policies and associate them with the appropriate applications.
Enabling App Security for public applications requires activating an additional feature flag. Contact your Palo Alto Networks account team to get started.