Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

casb

Syntax

Hierarchy Level

Description

Configure Cloud Access Security Broker (CASB).

CASB provides visibility into the security of your cloud applications. To use CASB on your firewalls, you must configure CASB policies and apply CASB policy rules in a security policy.

Options

instance instance-name

CASB instance name. Configure CASB instance with application, instance ID, domain, and type. Creating instances for SaaS applications ensures controlled access, data security, and differentiation between corporate and non-corporate usage.

casb-policypolicy-name

CASB policy name. Configure CASB policies to control specific actions on each cloud application.

default-policy policy-name

The default CASB policy that defines the actions the device takes on a packet that does not match any user-defined policy.

You must set up a default CASB policy for the unified policy configuration. This default policy applies to the session until a dynamic application match occurs. Once the final application match available for the security policy, the corresponding CASB policy will be applied. If no CASB policy is explicitly configured in the final firewall policy, the CASB service disengages for the session.

traceoption

(Optional) Define tracing operations for CASB functionality.

Required Privilege Level

security—To view this statement in the configuration.

security-control—To add this statement to the configuration.

Release Information

Statement introduced in Junos OS Release 24.2R1.