<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Primsa Sase Web Security in Prisma Access Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/572287#M656</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/153031"&gt;@nikoolayy1&lt;/a&gt;&amp;nbsp;This is not related to the question. The query is about the Prisma Access Cloud based web policy&lt;/P&gt;</description>
    <pubDate>Tue, 09 Jan 2024 08:49:51 GMT</pubDate>
    <dc:creator>batd2</dc:creator>
    <dc:date>2024-01-09T08:49:51Z</dc:date>
    <item>
      <title>Primsa Sase Web Security</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/567064#M629</link>
      <description>&lt;P&gt;Hi all&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am trying to understand the Prisma Access Cloud Managed Web Security policies. There are options to match on users or services. But how is traffic identified as "Web" if all settings are left to default. And will Web Security policy take precedence over Security Policy configured in the same folder?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 25 Nov 2023 13:45:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/567064#M629</guid>
      <dc:creator>batd2</dc:creator>
      <dc:date>2023-11-25T13:45:56Z</dc:date>
    </item>
    <item>
      <title>Re: Primsa Sase Web Security</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/569430#M641</link>
      <description>&lt;P&gt;No one able to answer?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Dec 2023 09:38:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/569430#M641</guid>
      <dc:creator>batd2</dc:creator>
      <dc:date>2023-12-12T09:38:44Z</dc:date>
    </item>
    <item>
      <title>Re: Primsa Sase Web Security</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/572171#M654</link>
      <description>&lt;P&gt;To get an answer from someone inside Palo Alto better contact your sales manager. From what I can tell it is doing app identification as even If you have not created application override Palo Alto still does basic app identification, so auto matching web-browsing and ssl and app shift when decrypted to web-browsing does not seem complex.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/network-security/security-policy/administration/web-security/about-web-security" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/network-security/security-policy/administration/web-security/about-web-security&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/network-security/security-policy/administration/web-security/rule-order-for-web-security-and-security-policy" target="_blank" rel="noopener"&gt;https://docs.paloaltonetworks.com/network-security/security-policy/administration/web-security/rule-order-for-web-security-and-security-policy&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="nikoolayy1_0-1704745795042.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/56347i52F2560ED91CEB47/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="nikoolayy1_0-1704745795042.png" alt="nikoolayy1_0-1704745795042.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Jan 2024 20:39:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/572171#M654</guid>
      <dc:creator>nikoolayy1</dc:creator>
      <dc:date>2024-01-08T20:39:12Z</dc:date>
    </item>
    <item>
      <title>Re: Primsa Sase Web Security</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/572287#M656</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/153031"&gt;@nikoolayy1&lt;/a&gt;&amp;nbsp;This is not related to the question. The query is about the Prisma Access Cloud based web policy&lt;/P&gt;</description>
      <pubDate>Tue, 09 Jan 2024 08:49:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/572287#M656</guid>
      <dc:creator>batd2</dc:creator>
      <dc:date>2024-01-09T08:49:51Z</dc:date>
    </item>
    <item>
      <title>Re: Primsa Sase Web Security</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/572314#M658</link>
      <description>&lt;P&gt;Prisma Access in the background uses Palo Alto Firewalls. I think that it is not the virtual edition but some form of container based but still the same code with the same functions and it does not matter if it is not managed by Panorama but in the cloud.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Jan 2024 10:38:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/572314#M658</guid>
      <dc:creator>nikoolayy1</dc:creator>
      <dc:date>2024-01-09T10:38:07Z</dc:date>
    </item>
    <item>
      <title>Re: Primsa Sase Web Security</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/572576#M664</link>
      <description>&lt;P&gt;Also for SAAS App ID Prisma Access and the firewalls use App-ID Cloud Engine (ACE)&amp;nbsp; &lt;A href="https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/app-id/cloud-based-app-id-service" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/app-id/cloud-based-app-id-service&lt;/A&gt; if you are interested in this.&lt;/P&gt;</description>
      <pubDate>Wed, 10 Jan 2024 16:32:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/572576#M664</guid>
      <dc:creator>nikoolayy1</dc:creator>
      <dc:date>2024-01-10T16:32:11Z</dc:date>
    </item>
    <item>
      <title>Re: Primsa Sase Web Security</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/572592#M665</link>
      <description>&lt;P&gt;I am using Prisma Access SASE and have wondered the same thing.&amp;nbsp; The best resource I have found is here:&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/network-security/security-policy/administration/web-security/rule-order-for-web-security-and-security-policy" target="_blank"&gt;https://docs.paloaltonetworks.com/network-security/security-policy/administration/web-security/rule-order-for-web-security-and-security-policy&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Web Access Policies are applied before Security Policies.&amp;nbsp; I generally prefer security policies for their granularity, but sometimes it's hard to create a security policy that doesn't violate some "best practice", in which case I fall back on Web Access Policies.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 10 Jan 2024 17:46:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-access-discussions/primsa-sase-web-security/m-p/572592#M665</guid>
      <dc:creator>KeithPartin</dc:creator>
      <dc:date>2024-01-10T17:46:47Z</dc:date>
    </item>
  </channel>
</rss>

