Archive Viewer in Isolation
Focus
Focus
Remote Browser Isolation

Archive Viewer in Isolation

Table of Contents

Archive Viewer in Isolation

Browse and selectively access files from archive downloads directly within your RBI session without sending the raw archive to the endpoint.
Where Can I Use This?What Do I Need?
  • Prisma Access (Managed by Panorama or Strata Cloud Manager)
  • Minimum required Prisma Access version: 5.0 Innovation
  • Prisma Access license with the Mobile User or Remote Networks license subscription
  • View Files in Isolation is enabled in the isolation profile
When you download archive files during an Remote Browser Isolation (RBI) session, the raw archive would otherwise bypass the isolation boundary and its contents are never inspected within the remote environment before reaching the user's device. The Archive Viewer extends the RBI file viewing workflow to intercept supported archive downloads, process them entirely within the remote container, and present you with an interactive file explorer instead of delivering the archive to the user's device.
All archive content inspection, file extraction, and viewing occurs inside the remote container. Nothing from the archive reaches user's device unless you explicitly request a targeted file download through the Archive Viewer. This gives you granular control over what archive content you can access while keeping the browsing session secure.
The Archive Viewer supports the following archive formats:.zip, .rar, .7z, .tar, .gz, .tgz

Archive Viewer Experience

When you download a supported archive in an RBI session, the Archive Viewer downloads and extracts the file within the isolated container instead of delivering it to the endpoint. The Archive Viewer displays the archive content in a file explorer directly within the session, showing the filename, file size, and modification date.
You can perform the following actions in the Archive Viewer:
  • Browse folders. Navigate into and out of folders within the archive. A breadcrumb path tracks the current location and lets you return to any previous level.
  • View supported files. Click the View icon on a supported file type — such as PDF, DOCX, XLSX, PPTX, TXT, or CSV — to open it in the Archive Viewer without downloading it to the endpoint.
  • Download individual files. Click the Download icon on any file to deliver only that file to the endpoint, subject to the download policy in the isolation profile.
  • Open nested archives. Click the View icon on an archive file listed inside the Archive Viewer to open it in a new Archive Viewer tab, up to a maximum of three nesting levels.
  • Sort entries. Use the sort dropdown in the upper-right corner of the file explorer to sort archive contents by Name, Size, Date Modified, or Type.
  • Open password-protected files from within Archive Viewer. If an archive is password-protected, a password prompt appears before the Archive Viewer opens in File Explorer.
  • Some archive files may be flagged as malicious by the firewall during inspection, which can cause file sizes to display as 0 bytes in the Archive Viewer. If an archive does not open correctly, verify that the file is permitted by your security policies.
  • Ensure that your browser's pop-up blocker is disabled for the site you are browsing to open Archive Viewer in a new tab.
  • If View Files in Isolation is disabled, you can download archive files directly to your system, provided the Download Files option is enabled.

Nested Archive Navigation

You can open archives within archives — for example, a ZIP file inside another ZIP file — directly from the Archive Viewer. Each nested archive opens in the same tab within the remote browser. RBI enforces a maximum nesting depth to prevent excessive resource use; the maximum supported level is three. When you attempt to open a nested archive beyond three, RBI displays a Failed to open nested archive notification with a message indicating the maximum nesting limit has been reached, instead of opening another Archive Viewer tab.
To retrieve a nested archive file without opening it in the Archive Viewer, click Download on the archive entry. The file downloads directly to the endpoint and does not launch another Archive Viewer session.