December '23 Updates
  • 28 Feb 2024
  • 1 Minute to read
  • PDF

December '23 Updates

  • PDF

Article summary

Prisma Cloud DSPM released the following updates in December '23.

NEW FEATURES


Terraform Onboarding

It is now possible to onboard AWS files and GCP projects using Terraform.

For further information refer to Onboarding AWS and Onboarding GCP.


PRODUCT UPDATES


Troubleshooting

A Troubleshooting section has been added to the document repository, enabling you to resolve common issues.


Azure NetApp Files

An article describing how to onboard Azure NetApp Files (ANF) in Prisma Cloud DSPM has been added to the document repository.


Notifications on Closed Risks

It is now possible to receive a notification every time a risk is closed. This feature facilitates large organizations to seamlessly track remediation efforts.

To activate this feature of the following:

  1. Got Settings, and scroll down to Notifications.
  2. When configuring a Notification, click the Advanced tab.
  3. Select the option to enable notifications on closed risks.


Permission Updates in Azure

We have introduced the following three permission updates in Azure:

  1. Microsoft.CognitiveServices/*/read 
    • With this permission, Prisma Cloud DSPM can discover OpenAI resources and other Azure AI services.
  2. Microsoft.Web/sites/config/list/action
    • With this permission, Prisma Cloud DSPMy can discover risk assessment of the Azure Web app.
  3. Microsoft.CognitiveServices/*/action
    • With this permission, Prisma Cloud DSPM can read and scan OpenAI files and other Azure AI data resources.

Permission Updates in AWS

We have introduced the following four permission updates in AWS (DigSecurityOrchestratorRole):

  1. secretsmanager:CreateSecret
    • Enables Prisma Cloud DSPM to create a secret necessary for interacting with password-enabled services.
  2. secretsmanager:GetSecretValue
    • Enables Prisma Cloud DSPM to pull the secret required for scanning.
  3. secretsmanager:PutSecretValue
    • Enables Prisma Cloud DSPM to create the secret required for scanning.
  4. secretsmanager:TagResource
    • Enables Prisma Cloud DSPM to tag the secrets and enable right-sized permissions.

Was this article helpful?