Policy Violation Log Fields
The descriptions and names of available log fields in a Prisma SaaS policy violation log.
The policy violation log is generated when an asset matches a policy rule.
Time the policy violation occurred. Values are in
Serial number of the organization using the service (tenant).
The instance name of the cloud application (not the type of cloud application) associated with the policy violation
The policy violation severity valued between 0 and 5.
The unique ID number for the incident. Can be null (no value).
The unique ID number for the asset associated with the policy violation
The name of the file, folder, or user associated with the policy violation
The user who owns the asset associated with the policy violation.
The user who created the asset identified in the policy violation.
The name of the policy rule that triggered the violation.
Not currently implemented
Action taken to remedy the policy violation. For example,
Log only, or
Send Administrator Alert
The cloud app user who took action to remediate the policy violation. For automated remediation, the value is
Remediation Activity Log Fields
The descriptions and names of available log fields in a Prisma SaaS remediation log. ...
Log Events API
Learn about each example response and available response fields for log events retrieved by an API client for Prisma SaaS. ...
Learn about the automatic remediation options available when an incident is discovered by Prisma SaaS. ...
Syslog Field Descriptions
Learn about the different log fields available for each log type on Prisma SaaS. ...
View and Respond to Prisma Cloud Alerts
View and Respond to Prisma Cloud Alerts As soon as you Enable Prisma Cloud Alerts Enable Prisma Cloud alerting so you can see all policy ...
What is an Incident?
Prisma SaaS identifies and sets the state and category for each incident discovered during the scanning of your assets. ...
Add a New Asset Rule
Add a New Asset Rule To add a new rule for scanning assets (content) stored on your sanctioned SaaS applications: Select Policy Asset Rules Add ...
Incidents Log Fields
The descriptions and names of available log fields in a Prisma SaaS incident log. ...