: Update Imported SaaS Policy Rule Recommendations on Cloud Managed Prisma Access
Focus
Focus

Update Imported SaaS Policy Rule Recommendations on Cloud Managed Prisma Access

Table of Contents

Update Imported SaaS Policy Rule Recommendations on Cloud Managed Prisma Access

Learn how to update SaaS policy rule recommendations on Cloud Managed Prisma Access.
This feature requires the SaaS Security add-on license for your platform.
When a SaaS Security administrator authors and submits SaaS policy rule recommendations, the Web Security or Data Security administrator imports those rule recommendations and the Security administrator pushes those rule recommendations to gain visibility into and control of the applications in the SaaS policy recommendation. Before you begin, learn about the Hub roles that enable administrators to collaborate on SaaS Security.
As guidelines outline, if the SaaS Security administrator updates a rule recommendation, for example by adding or removing applications, you also need to update the rule recommendation. If the SaaS Security administrator submits new or updated Application Groups, HIP profiles, or tags, Cloud Managed Prisma Access automatically creates or updates those objects. You can manually apply the updates as outlined below or bypass such updates by enabling automatic updates.
You can monitor the availability of updates to rule recommendations from OverviewPolicy Recommendations.
  1. From Prisma Access Cloud Management, navigate to Web Access Policy.
  2. In Imported SaaS Rule Recommendations, locate the rule recommendations that have updates as indicated by the Status, then click ActionsUpdate icon.
    • Update available—SaaS Administrator updated the rule recommendation and is pending your approval.
    • Update available (This rule will be removed)—SaaS Administrator deleted the rule recommendation and is pending your approval.
    The policy recommendation that you updated displays as an Imported policy in Imported SaaS Rule Recommendations. Use the Last update failed link to help you resolve any failures.
    If you want to import all updates for all existing rule recommendations, click Sync instead.
  3. Click Push Config.