Discuss, share, and learn with Cato Networks users. Exchange insights, solve challenges, and get more from your SASE journey.
Cato and SASE discussions and best practices.
API questions-and-answers, discussions, and best practices.
Saw something in the KB you want to comment, discuss, or provide feedback on? You're in the right place.
In our latest Cato Connect webinar, the API & DevOps team explored how to secure AI agents; starting with local agents that can access tools, MCP servers, skills, and sensitive data on a user’s device. We covered key risks like indirect prompt injection, unverified tools, excessive permissions, and data exposure, along…
For the article Microsoft Apps (Including Copilot): Configuring the App Activities Integrations, we received the following comment: Unclear when to use which integration. Isn't M365 just enough? The Integrations Catalog includes two Microsoft 365 entries. Each entry has a different purpose: Microsoft 365 (New Tenant): This…
We've released a step-by-step guide to automating API-based responses to security events and XOps stories. Learn how to extract story data, apply remediation actions such as isolating hosts, blocking IOCs, and quarantining users, and annotate the story with actions taken. View the guide here: Remediating XOps Stories and…
We received feedback asking us to update our KB article about the CMA's Configuration Wizard. Some of the buttons and screens for handling posture recommendations had been changed, and the KB article hadn't kept up. We've now published an updated version of this page that accurately reflects the CMA. Keep sending us your…
For the article, Understanding Event Fields, we received the comment: This does not detail out all the Sub-Types available in CMA today This is a known gap, we are working on a new dynamic HTML page that will easily show all event sub-types. Stay tuned!
For the article Local Routing at the Socket, we received the following comment: There's no Local Routing section Updated the article with this note: For many customers, the Local Routing feature is replaced by the LAN Firewall. The LAN Firewall policy enhances the existing Local Routing capabilities that control the LAN…
Since, thus far, Cato SDP doesn't support a "execute after connect" option common on other VPN clients, I am curious how others are triggering the Windows login script to run on endpoints when the Private Access tunnel comes up. Currently I am using a scheduled task on each endpoint that is triggered by the NetworkProfile…
We currently have an on-premises Active Directory and have Pre-Login enabled with connect at boot enabled. We defined internal destinations (domain domain controllers) as allowed destinations, so the devices can reach the domain controllers before the user has logged in. This worked fine so far. However, now we want to…
We received a comment for Working with Anti-Tampering for the Cato Client, that they Object items were not up-to-date with recent UI changes. We updated the article to correctly refer to the Path and Thumbprint Hash. Thanks for your help!
We greatly enhanced Allowlisting Processes and URLs for the Cato Client and separated the URLs by CMA region. Now you can easily see which URLs are relevant to your account based on the CMA region that your account uses. Note: The CMA region does not determine which Cato Cloud PoPs the Client can connect to. By default,…
If you run into any issues, feel free to contact the team at community@catonetworks.com .
It looks like you're new here. Sign in or register to get started.