Customizable Authentication Timers for Dynamic Privilege Access
Focus
Focus
What's New in the NetSec Platform

Customizable Authentication Timers for Dynamic Privilege Access

Table of Contents

Customizable Authentication Timers for Dynamic Privilege Access

Configure re-authentication intervals and enforce periodic identity verification for Dynamic Privilege Access-enabled Prisma Access Agent users to strengthen security posture.
Organizations with stringent security requirements need the ability to enforce periodic validation to ensure continuous trust verification of user identities. Dynamic Privilege Access-enabled Prisma® Access Agents already deliver continuous trust verification today by seamlessly validating the user in the background without disrupting the end-user experience. Augmenting this capability, Prisma Access Agent now enables you to configure how frequently users are prompted to re-authenticate, with customizable intervals ranging from 10 hours to 30 days. You can set customizable warning timers to notify users before re-authentication is required, preventing unexpected disconnections and workflow disruption. The feature introduces a re-authentication frequency setting that controls user refresh token lifetime globally across your deployment. For stricter security enforcement, you can enable aggressive authentication to force immediate re-authentication when users connect or extend gateway sessions. The gateway session timeout setting has been renamed for clarity and notification preferences are now managed at the global level.