Home
EN
Location
Documentation Home
Palo Alto Networks
Support
Live Community
Knowledge Base
>
Clear
Strata Copilot
Prisma SASE FedRAMP Moderate and High Support
Updated on
Mon Aug 11 16:21:27 PDT 2025
Focus
Download PDF
Updated on
Mon Aug 11 16:21:27 PDT 2025
Focus
Home
FedRAMP
Prisma SASE FedRAMP Moderate and High Requirements
Prisma SASE FedRAMP Moderate and High Support
Download PDF
FedRAMP
Prisma SASE FedRAMP Moderate and High Support
Table of Contents
Filter
Expand All
|
Collapse All
FedRAMP Docs
Reference
Autonomous DEM
Previous
Prisma SASE FedRAMP Moderate and High Requirements
Next
Prisma SASE FedRAMP Moderate and High Locations
Prisma SASE FedRAMP Moderate and High Support
Learn which apps and features Prisma SASE FedRAMP Moderate and High environments support for use.
Prisma SASE FedRAMP Moderate and High environments support the following apps and features for use.
Product or Feature
FedRAMP Moderate
FedRAMP High
Strata Cloud Manager (SCM)
Essentials/Pro
✔
✔
Encrypted DNS (Panorama-managed Prisma Access)
✔
—
Prisma Access
(managed by
Strata Cloud Manager
)
✔
✔
Panorama-managed Prisma Access
✔
✔
Insights
(Prisma and Cloud Managed)
✔
✔
Activity
✔
✔
Autonomous DEM
✔
✔
Autonomous DEM
(enabled with
SCM Pro
)
✔
✔
Multitenant Platform
(Panorama-managed Prisma Access)
✔
✔
Advanced Wildfire Cloud
(full detections)
✔
✔
Advanced URL Filterting
—
✔
Colo-Connect
✔
—
ZTNA Connector
✔
—
SaaS Security API
✔
—
Cloud-delivered Security Service Add-ons
App-ID Cloud Engine
✔
✔
Cloud Identity Engine
✔
✔
Enterprise DLP
✔
✔
Next-generation Cloud Access Broker
(NG-CASB)
✔
—
SaaS Inline/DLP
✔
✔
SaaS Security Posture Management (SSPM)
✔
✔
Enterprise Device Security
(SCM-managed)
—
✔
SD-WAN Controller
(ION 1200/1200-S, ION 3200, ION-9200, ION Release 6.1.6 (FIPS))
✔
—
Prisma SD-WAN
managed by Strata Cloud Manager
✔
—
Prisma SD-WAN
managed by Prisma SASE Multitenant Portal
—
—
Strata Logging Service
✔
✔
Cloud Identity Engine
✔
✔
Traffic Replication
✔
—
Prisma Access Browser (PAB)
✔
—
Explicit Proxy (EP)
✔
—
Prisma Access Browser Private App Access
(PAB with EP Enabled)
✔
—
FIPS dependencies
Enable FIPS mode for on-premise Panorama Management and computer using the GlobalProtect Agent.
✔
✔
FIPS dependencies
Enable FIPS mode for on-premise Prisma SD-WAN ION devices. Supported IONs: ION-1200-S-C5G, ION-3200, ION-9200, ION-7108v
Customer Responsibility Matrix
Support side URL for Prisma SASE FedRAMP:
support-fed.paloaltonetworks.us
.
Customer Responsibilities
Implementation Status
Control Organization
Implemented
Service Provider System Specific
Configured by Customer (Customer System Specific)
Shared (Service Provider and Customer Responsibility
Inherited from Pre-existing Authorization
AC-2: Account Management
AC-02 (a-g), (i-k)
x
x
x
x
x
AC-02 (05)
x
x
x
x
x
CA-03: System Interconnections
CA-03 (03)
x
x
x
x
IA -02/08: Identification & Authentication: Org & Non-org Users
IA-02
x
x
x
x
IA-02 (02)
x
x
x
x
x
IA-02 (12)
x
x
x
x
IA-08
x
x
x
x
IA-08 (01-04)
x
x
x
x
IR-9: Information Spillage Response
IR-09 (a-f)
x
x
x
x
SA-04: Acquisition Process
SA-04 (10)
x
x
x
x
SC-08: Transmission Confidentiality & Integrity
SC-08
x
x
x
x
x
SC-08 (01)
x
x
x
x
x
Previous
Prisma SASE FedRAMP Moderate and High Requirements
Next
Prisma SASE FedRAMP Moderate and High Locations