Prisma Cloud: Check box for "Show me alert results on Groups/AWS roles/Azure Service Principals/GCP Service Accounts" IAM Policies

Prisma Cloud: Check box for "Show me alert results on Groups/AWS roles/Azure Service Principals/GCP Service Accounts" IAM Policies

411
Created On 01/16/25 17:59 PM - Last Modified 05/12/25 15:09 PM


Question


Why is the Checkbox "Show me alert results on Groups/AWS roles/Azure Service Principals/GCP Service Accounts"  for my default IAM policy is not saving? 

GUI Path: Governance > Edit IAM Policy > Check the Box > Save 

Screenshot 2025-01-13 at 11.00.33 AM (2).png



Environment


  • Prisma Cloud 
  • IAM policies 


Answer


This is by design. As a workaround: 

  1. Clone the default Policy under Governance > Actions > Clone
  2. Check the box "Show me alert results on Groups/AWS roles/Azure Service Principals/GCP Service Accounts" and the Save it 
  3. This will enable it on the cloned alerts.

*Please note that it is not really aggregate, but alerts over different entities. sources versus granters*



Additional Information


View our documentation here on IAM policies. 



Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000PR3tCAG&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail