Skip to content

Palo Alto Networks Prisma Cloud Compute Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Prisma Cloud Compute Collections must be used to partition views and enforce organizational-defined need-to-know access.

    <VulnDiscussion>Prisma Cloud Compute Collections are used to scope rules to target specific resources in an environment, partition views, and...
    Rule Medium Severity
  • SRG-APP-000039-CTR-000110

    <GroupDescription></GroupDescription>
    Group
  • Prisma Cloud Compute Cloud Native Network Firewall (CNNF) automatically monitors layer 4 (TCP) intercontainer communications. Enforcement policies must be created.

    &lt;VulnDiscussion&gt;Network segmentation and compartmentalization are important parts of a comprehensive defense-in-depth strategy. CNNF works as...
    Rule High Severity
  • SRG-APP-000097-CTR-000180

    <GroupDescription></GroupDescription>
    Group
  • Prisma Cloud Compute Defender must be deployed to containerization nodes that are to be monitored.

    &lt;VulnDiscussion&gt;Container platforms distribute workloads across several nodes. The ability to uniquely identify an event within an environmen...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules