All Available Apps and Services
Focus
Focus
Prisma Access

All Available Apps and Services

Table of Contents

All Available Apps and Services

Many key Palo Alto Networks apps and services are natively built-in or are integrated with Prisma Access (Managed by Strata Cloud Manager). See what’s available to you.
Where Can I Use This?What Do I Need?
  • Prisma Access (Managed by Strata Cloud Manager)
  • Prisma Access (Managed by Panorama)
  • Prisma Access license
Many key Palo Alto Networks apps and services are natively built-in or are integrated with Prisma Access (Managed by Strata Cloud Manager). Some apps and services are available for all Prisma Access users; support for others might depend on your license type.
Here’s a list of all the apps and services that are available with Prisma Access.
These features require a minimum Cloud Services plugin of 6.0 (for Prisma Access (Managed by Panorama) only) and a minimum dataplane version of PAN-OS® 11.2. Advanced DNS Security requires a minimum dataplane version of PAN-OS 11.2.7-h19.
Apps and Services that Are Available with Prisma Access
Security ServicesAdvanced DNS Security Powered by Precision AI®The Advanced DNS Security service defends against sophisticated DNS-related threats to maintain network integrity and data security. Advanced DNS Security requires a minimum dataplane version of PAN-OS 11.2.7.
In Prisma Access, Advanced DNS Security is enabled only if you request it. Contact your Prisma Access representative to enable Advanced DNS Security for your tenant.
  • DNS hijacking and misconfiguration prevention—Meticulously detects and immediately blocks DNS hijacking (where attackers alter DNS records to redirect traffic) and accidental or malicious DNS misconfigurations. This ensures the integrity of DNS resolution by preventing unauthorized redirection through advanced monitoring and analysis.
  • Malicious traffic distribution system (TDS)—Combats threats hidden within malicious TDS—sophisticated attack frameworks that use complex DNS schemes to distribute malware and exploit kits. The service analyzes DNS traffic patterns to identify indicators of compromise (IOCs), effectively blocking access to these malicious distribution channels.
  • Domain masquerading protection—Safeguards against domain masquerading by identifying and blocking malicious domains that closely resemble legitimate ones (typosquatting). It uses cutting-edge AI and machine learning algorithms to analyze vast amounts of DNS data, detecting subtle patterns and characteristic behaviors associated with spoofed or malicious domains.
Advanced URL FilteringUse to add support for the following categories:
  • Compromised website—This category specifically identifies legitimate websites that have been hacked or infected with malicious content. This allows you to use granular policy control to distinguish between inherently malicious sites and otherwise trustworthy sites that have been temporarily compromised.
  • File converter—This categorizes sites that allow users to convert, compress, or modify files. This new category helps organizations manage access to these tools, mitigating data leakage and compliance risks associated with unauthorized file sharing and modification.
  • ML-powered quishing (QR code) protection —Blocks quishing attacks by introducing an ML-powered QR code detector. This feature specifically addresses the growing threat of malicious QR codes embedded on legitimate websites, which attackers use to bypass the perimeter defenses of enterprise-protected networks and target unmanaged personal devices.
  • Deepfake content detection—Protects against hyper-realistic social engineering. A new deep learning model is active to identify and block malicious content featuring deepfake videos. This provides essential protection from attackers who use highly convincing deepfake impersonations of trusted individuals in phishing attacks.
Advanced WildFire® Powered by Precision AIEnhanced defenses against evasive threats including a new deep learning model for PDF phishing, multi-CPU sandboxing for advanced malware, and ML-powered API Vector Categorization for fileless attacks.
  • PDF analysis for phishing—A new Convolutional Neural Network (CNN)-based deep learning model is available. This model analyzes the visual appearance (in addition to the text) of embedded URLs in PDF files to detect highly evasive, embedded phishing attacks that exploit the PDF format.
  • API vector categorization—Leverages Machine Learning (ML) to perform in-memory analysis of the patterns and sequences of API calls made by malware during runtime. This advanced approach creates a unique behavioral "fingerprint" (API Vector) to accurately identify and classify highly evasive, fileless, and memory-resident attacks that bypass conventional analysis.
  • Multi-CPU advanced dynamic analysis—Enhances Advanced Dynamic Analysis (sandboxing) by including multiple virtual CPUs (vCPUs) in the Windows guest sandbox environment. This capability is specifically designed to defeat sophisticated malware that evades detection by checking for and refusing to execute in single-CPU virtual environments.
Add-On LicensesSaaS Security Inline
SaaS Security Inline is built-in to Prisma Access (Managed by Strata Cloud Manager) to give you a centralized view of network and CASB security. SaaS Security Inline offers SaaS visibility—advanced analytics and reporting—so that your organization has the insights to understand the data security risks of sanctioned and unsanctioned SaaS application usage on your network.
Advanced Threat Prevention Powered by Precision AIThe following features enhance threat detection, custom threat coverage, and protection against advanced data exfiltration attempts.
    • Exfiltration shield for advanced threat prevention—Introduces a sophisticated machine learning (ML) model to combat advanced data exfiltration. This feature focuses on detecting stealthy data egress over common protocols like DNS relay and HTTP headers, which are frequently used to bypass traditional security. Integration is seamless with existing Advanced DNS Security and ATP subscriptions.
Add-On LicensesApp Acceleration
App Acceleration directly addresses the causes of poor app performance and acts in real-time to mitigate them. The add-on securely optimizes each individual user session to drive the highest possible throughput, dramatically improving the user experience for Prisma Access GlobalProtect and Remote Network users. Additionally, it enriches AI-Powered ADEM with RUM (Real User Metrics) so you can easily see the performance boost in Strata Cloud Manager.
Remote Browser Isolation
Remote Browser Isolation is a service that isolates and transfers browsing activity away from your users' devices and corporate networks to an outside entity such as Prisma Access, which secures and isolates potentially malicious code and content within their platform, and separates any threats from direct connections to end-user devices and networks.
Autonomous DEM
Provides native, end-to-end visibility and insights for all user traffic in your Secure Access Service Edge (SASE) environment. Autonomous DEM functionality is natively integrated into the GlobalProtect app and Prisma Access and therefore does not require you to deploy any additional appliances or agents. You can quickly isolate the source of digital experience problems, and simplify remediation.
AI-Powered ADEM
AI-Powered ADEM is a Prisma Access add-on license that automates complex IT operations, to increase productivity and reduce time to resolution for issues. AI-Powered ADEM is supported in Cloud Management for all Prisma Access users, regardless of the interface you're using to manage Prisma Access (Prisma Access (Managed by Strata Cloud Manager) or Prisma Access (Managed by Panorama)). If you've enabled AI-Powered ADEM license, then the license is auto enabled for all the compute locations.
CASB
Cloud Access Security Broker (CASB) bundle includes SaaS Security Inline, Enterprise Data Loss Prevention (DLP) Inline, SaaS Security API, Data Loss Prevention (DLP) API, and SaaS Security Posture Management (SSPM).
Next-Generation CASB-X
The Next-Generation Cloud Access Security Broker (CASB-X) license contains all the CASB components such as SaaS Security Inline, SaaS Security API, SaaS Security Posture Management (SSPM), and Enterprise DLP. It can be applied on Prisma Access (Managed by Strata Cloud Manager), Prisma Access (Managed by Panorama), and Panorama-Managed Next Generation Firewall (NGFW) devices in a single tenant environment.
Prisma SD-WAN
Prisma SD-WAN is a cloud-delivered service that implements app-defined and autonomous SD-WAN to help you secure and connect your branch offices, data centers, and large campus sites without increasing cost and complexity.
Prisma SD-WAN leverages with a centralized controller-based model, enabling simple deployments at remote offices and data centers. You can view granular application-driven analytics, build a robust policy, and performance-based traffic management of the WAN.
Enterprise DLP
Data loss prevention (DLP) protects sensitive information against unauthorized access, misuse, extraction, or sharing. DLP on Prisma Access enables you to enforce your organization’s data security standards and prevent the loss of sensitive data across mobile users and remote networks.
Device Security
Device Security is an on-demand cloud subscription service designed to discover and protect the growing number of connected “things” on your network.
Net Interconnect
Net Interconnect for Remote Network-to-Remote Network and Mobile Users-to-Remote Network access (SD-WAN)
Private App Access
Additional Service Connections for Private App Access
Available for all License TypesStrata Logging Service
All Prisma Access logs are stored in the Strata Logging Service, providing centralized analysis, reporting, andforensics across all users, applications, and locations. In Prisma Access Cloud Management, you can go to Activity to view and interact with your logs. You can also use the Strata Logging Service app on the Activation Console to view logs and to set up log forwarding.
Cloud Identity Engine
Cloud Identity Engine gives Prisma Access read-only access to your Active Directory information, so that you can easily set up and manage security and decryption policies for users and groups. Cloud Identity Engine also enables certain Activity data and reports.
View and Monitor Prisma Access
Palo Alto Networks Strata Cloud Manager is an AI-powered Network Security platform. With Strata Cloud Manager, you can easily manage your Palo Alto Networks Network Security infrastructure from a single, streamlined user interface.
You can get comprehensive visibility across your network traffic and for the products and subscriptions you're managing using the Monitor and Workflows sections of Strata Cloud Manager and Monitor Prisma Access in Strata Cloud Manager.
Activity
Activity gives you monitoring and visibility into your network traffic, and surfaces key findings that you can use to inform policy updates and close enterprise security and user productivity gaps. Activity features include:
  • Log Viewer
  • Interactive Dashboards
  • Offline reports for sharing