<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Prisma cloud API access key permissions in Prisma Cloud Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/prisma-cloud-api-access-key-permissions/m-p/1242773#M1549</link>
    <description>&lt;P&gt;Hi I have aquestion for Prisma cloud's API access key.&lt;/P&gt;
&lt;P&gt;Quoted from docs, when generating access key, it's tied to current login user's Role.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.prismacloud.io/en/enterprise-edition/content-collections/administration/create-access-keys" target="_blank"&gt;https://docs.prismacloud.io/en/enterprise-edition/content-collections/administration/create-access-keys&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;I tried some test to see if it works.&lt;/P&gt;
&lt;P&gt;I made a role that do not have access to view, update, delete access keys.&lt;/P&gt;
&lt;P&gt;After switching to that role, i expected that I cannot see access key menu.&lt;/P&gt;
&lt;P&gt;But I could view, create, delete access key.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is this an expected symptom?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 28 Nov 2025 07:14:34 GMT</pubDate>
    <dc:creator>ssublue</dc:creator>
    <dc:date>2025-11-28T07:14:34Z</dc:date>
    <item>
      <title>Prisma cloud API access key permissions</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/prisma-cloud-api-access-key-permissions/m-p/1242773#M1549</link>
      <description>&lt;P&gt;Hi I have aquestion for Prisma cloud's API access key.&lt;/P&gt;
&lt;P&gt;Quoted from docs, when generating access key, it's tied to current login user's Role.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.prismacloud.io/en/enterprise-edition/content-collections/administration/create-access-keys" target="_blank"&gt;https://docs.prismacloud.io/en/enterprise-edition/content-collections/administration/create-access-keys&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;I tried some test to see if it works.&lt;/P&gt;
&lt;P&gt;I made a role that do not have access to view, update, delete access keys.&lt;/P&gt;
&lt;P&gt;After switching to that role, i expected that I cannot see access key menu.&lt;/P&gt;
&lt;P&gt;But I could view, create, delete access key.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is this an expected symptom?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Nov 2025 07:14:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/prisma-cloud-api-access-key-permissions/m-p/1242773#M1549</guid>
      <dc:creator>ssublue</dc:creator>
      <dc:date>2025-11-28T07:14:34Z</dc:date>
    </item>
    <item>
      <title>Re: Prisma cloud API access key permissions</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/prisma-cloud-api-access-key-permissions/m-p/1242886#M1550</link>
      <description>&lt;P&gt;Hello!&lt;/P&gt;
&lt;P&gt;Would you be willing to include a screen shot of the permission group used for the role you are using?&amp;nbsp; Also, (and I know this sounds trivial) but can you please verify that the permission group you created is actually associated with the role you tested?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Mon, 01 Dec 2025 14:57:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/prisma-cloud-api-access-key-permissions/m-p/1242886#M1550</guid>
      <dc:creator>JCalloway1</dc:creator>
      <dc:date>2025-12-01T14:57:08Z</dc:date>
    </item>
    <item>
      <title>Re: Prisma cloud API access key permissions</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/prisma-cloud-api-access-key-permissions/m-p/1242893#M1551</link>
      <description>&lt;P&gt;Hello, nice to meet you.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I didn't permitted access key permissions to my test role. So there are just view permissions with dashboards, inventories, investigating(RQL) etc.&lt;/P&gt;
&lt;P&gt;And also created access key role with my test role.&lt;/P&gt;
&lt;P&gt;I just discovered by running few more tests.&lt;/P&gt;
&lt;P&gt;1. Access key permissions are for read,write access to "other user's access key".&lt;/P&gt;
&lt;P&gt;2. Can view, create, delete, update(to update a role, permission, related permissions are needed) access keys that are self-generated.&lt;/P&gt;
&lt;P&gt;-&amp;gt; I guess it's for managing purpose. As you know access keys are mapped with current login roles.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any corrections or further details about access key permissions are welcomed!&lt;/P&gt;
&lt;P&gt;Thank you for adding comments btw!&lt;/P&gt;</description>
      <pubDate>Mon, 01 Dec 2025 18:03:45 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/prisma-cloud-api-access-key-permissions/m-p/1242893#M1551</guid>
      <dc:creator>ssublue</dc:creator>
      <dc:date>2025-12-01T18:03:45Z</dc:date>
    </item>
  </channel>
</rss>

