Activity Insights: Rules
Focus
Focus
Strata Cloud Manager

Activity Insights: Rules

Table of Contents

Activity Insights: Rules

View the Security policy rules that are matched against all the traffic in your network.
Where Can I Use This?
What Do I Need?
  • Prisma Access
    (with
    Strata Cloud Manager
    or
    Panorama
    configuration management)
  • NGFWs
    (with
    Strata Cloud Manager
    or
    Panorama
    configuration management)
You must have at least one of these licenses to use the Activity Insights:
  • Prisma Access
  • AIOps for NGFW Free (use the AIOps for NGFW Free app)
    or
    AIOps for NGFW Premium license (use the Strata Cloud Manager app)
The other licenses needed to view the Activity Insights: Rules tab are:
  • Strata Logging Service
View the Security policy rules that are matched against all the traffic in your network. Security policy rules determine whether to block or allow a session based on traffic attributes, such as the source and destination IP address, the application, the user, and the service. All traffic passing through your network is matched against a session and each session is matched against a Security policy rule. When a session match occurs, the Security policy rule is applied.
The dashboard shows the following details of the network event matching the Security Policy rule:
Traffic sessions, data transferred, threats detected in the sessions, users impacted, URLs browsed, and applications accessed. Review the most matched rules to the traffic sessions, analyze those sessions to understand if the rule is overly permissive and optimize the rule if required.
Reports
- You cannot generate report that cover the data in this view.

Recommended For You