| Where Can I Use This? | What Do I Need? |
- Strata Cloud Manager
- Prisma Browser standalone
|
- Prisma Access with Prisma Browser bundle
license or Prisma Browser standalone license
- Superuser or Prisma Browser
Roles
|
| Prisma Browser Desktop | Prisma Browser Extension | Prisma Browser for Mobile |
| Full support | Full support | No support |
Passkeys offer a passwordless, secure, and convenient method for signing
into apps and websites. They use your device's built-in security (like fingerprint,
face scan, or PIN) and public-key cryptography to generate unique,
phishing-resistant credentials that automatically sync across your devices and act
as a Multi-Factor Authenticator.
Some passkeys are managed for corporate access (such as IdP authentication,
or Prisma Browser
Authentication Factor ). However, users are frequently prompted by third-party
websites to create passkeys for convenience. Consequently, they often generate
personal passkeys that are unseen and outside of IT control.
PB solves this by providing granular control over passkey login.
Administrators can apply policies to allow or deny passkey usage based on
application, device posture, network, or location. For example, you can explicitly
allow passkey login for your sanctioned Identity Provider (e.g. Okta), while
blocking passkey usage on other, non-corporate applications.
The Passkey Login control is supported on Prisma Browser and Prisma Browser Extension.
To enable Passkey Login Control: