Skip to main content

Palo Alto Networks Enterprise DLP

Palo Alto Networks Enterprise DLP Integration

Palo Alto Networks Enterprise DLP Content Pack

This content pack enables Cortex XSOAR to integrate with Palo Alto Networks Enterprise DLP. Using this content pack, you can fetch DLP incidents using the long running instance and update DLP incidents with user feedback. This pack includes the Palo Alto Networks Enterprise DLP integration and a sample Playbook to gather user feedback for a DLP incident using Slack.

Palo Alto Networks Enterprise DLP Integration

Integrates with the Enterprise DLP service to get details about DLP violations and to update DLP incidents with user feedback.

The integration includes commands to:

  • Fetch DLP incidents as a long running instance.
  • Fetch DLP reports with data pattern match details.
  • Fetch DLP reports with data pattern match details and snippets from the file.
  • Update a DLP incident with user feedback.
  • Check if the option to exempt the violation should be provided for a given DLP data profile name.
  • Send a customized Slack bot message to the user to ask for feedback.
  • Reset the last run.

PUBLISHER

Palo Alto Networks Enterprise DLP

INFO

CertificationRead more
Supported ByCortex XSOAR
CreatedNovember 20, 2020
Last ReleaseJune 26, 2022
WORKS WITH THE FOLLOWING INTEGRATIONS:

DISCLAIMER
Content packs are licensed by the Publisher identified above and subject to the Publisher’s own licensing terms. Palo Alto Networks is not liable for and does not warrant or support any content pack produced by a third-party Publisher, whether or not such packs are designated as “Palo Alto Networks-certified” or otherwise. For more information, see the Marketplace documentation.