- 28 Feb 2024
- 1 Minute to read
- Print
- PDF
December '23 Updates
- Updated on 28 Feb 2024
- 1 Minute to read
- Print
- PDF
Prisma Cloud DSPM released the following updates in December '23.
NEW FEATURES
Terraform Onboarding
It is now possible to onboard AWS files and GCP projects using Terraform.
For further information refer to Onboarding AWS and Onboarding GCP.
PRODUCT UPDATES
Troubleshooting
A Troubleshooting section has been added to the document repository, enabling you to resolve common issues.
Azure NetApp Files
An article describing how to onboard Azure NetApp Files (ANF) in Prisma Cloud DSPM has been added to the document repository.
Notifications on Closed Risks
It is now possible to receive a notification every time a risk is closed. This feature facilitates large organizations to seamlessly track remediation efforts.
To activate this feature of the following:
- Got Settings, and scroll down to Notifications.
- When configuring a Notification, click the Advanced tab.
- Select the option to enable notifications on closed risks.
Permission Updates in Azure
We have introduced the following three permission updates in Azure:
- Microsoft.CognitiveServices/*/read
- With this permission, Prisma Cloud DSPM can discover OpenAI resources and other Azure AI services.
- Microsoft.Web/sites/config/list/action
- With this permission, Prisma Cloud DSPMy can discover risk assessment of the Azure Web app.
- Microsoft.CognitiveServices/*/action
- With this permission, Prisma Cloud DSPM can read and scan OpenAI files and other Azure AI data resources.
Permission Updates in AWS
We have introduced the following four permission updates in AWS (DigSecurityOrchestratorRole):
- secretsmanager:CreateSecret
- Enables Prisma Cloud DSPM to create a secret necessary for interacting with password-enabled services.
- secretsmanager:GetSecretValue
- Enables Prisma Cloud DSPM to pull the secret required for scanning.
- secretsmanager:PutSecretValue
- Enables Prisma Cloud DSPM to create the secret required for scanning.
- secretsmanager:TagResource
- Enables Prisma Cloud DSPM to tag the secrets and enable right-sized permissions.