How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Palo Alto Networks Policy API

A policy is a set of one or more constraints or conditions that must be adhered to. Prisma Cloud provides predefined policies for configurations and access controls that adhere to established security best practices such as PCI, GDPR, ISO 27001:2013, and NIST. These Prisma Cloud default polices cannot be modified. In addition to these, you can create custom policies to monitor for violations and to enforce your own organizational standards.

Palo Alto Networks Policy API is one of 741 APIs that Palo Alto Networks publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Policy. The published artifact set on APIs.io includes an OpenAPI specification.

This API exposes 11 operations across 7 paths, and defines 20 schemas. It is described by OpenAPI 3.2.0, at version Latest.

Requests are made against 15 base URLs: https://api.prismacloud.io, https://api2.prismacloud.io, https://api3.prismacloud.io, https://api4.prismacloud.io, https://api.anz.prismacloud.io, https://api.eu.prismacloud.io, https://api2.eu.prismacloud.io, https://api.gov.prismacloud.io, https://api.prismacloud.cn, https://api.ca.prismacloud.io, https://api.sg.prismacloud.io, https://api.uk.prismacloud.io, https://api.ind.prismacloud.io, https://api.jp.prismacloud.io, https://api.fr.prismacloud.io.

11 operations 7 paths 20 schemas 1 DELETE5 GET1 PATCH3 POST1 PUT

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
Latest
Base URL
https://{firewall}/api/
Authentication
API Key
Resource Areas
1

Authentication & Security 1

Palo Alto Networks Policy API declares 1 security scheme for authenticating requests. An API key is passed in the header as x-redlock-auth (x-redlock-auth).

  • x-redlock-auth — The x-redlock-auth value is a JSON Web Token (JWT).

Paths & Operations 11

Across 7 paths, the API surfaces 11 operations — 1 DELETE, 5 GET, 1 PATCH, 3 POST, 1 PUT. Each is listed below with its method, path, parameters, and response codes.

Policy 11

A policy is a set of one or more constraints or conditions that must be adhered to. Prisma Cloud provides predefined policies for configurations and access controls that adhere to…

GET
/filter/policy/suggest
List Policy Filters
get-policy-filters-and-options → 200
POST
/filter/policy/suggest
List Policy Filter Autocomplete Suggestions
get-policy-filter-options body → 200
GET
/policy
List Policies
get-policies 11 params → 200500
POST
/policy
Add Policy
add-policy body → 200400500
GET
/v2/policy
List Policies V2
get-policies-v2 14 params → 200500
GET
/policy/{id}
Policy Info
get-policy 1 param → 200400403404500
PUT
/policy/{id}
Update Policy
update-policy 1 param body → 200400403404500
DELETE
/policy/{id}
Delete Policy
delete-policy 1 param → 204400403404500
PATCH
/policy/{id}/status/{enabled}
Update Policy Status
update-policy-status 2 params → 200400403404500
GET
/policy/compliance
List Policy Compliance Standards
get-compliance-standards → 200
POST
/policy/rule/validate
Pre-validate Policy Rule
policy-rule-validate body → 200400500

Schemas 20

The contract defines 20 schemas that model the data the API accepts and returns. The most detailed are LegacyPolicyViewModel_2 (31 properties), LegacyPolicyViewModel (30 properties), PolicyViewModel_2 (30 properties), PolicyViewModel (29 properties). Each schema is shown below with its type and property counts.

RemediationAction
object
Action for remediation for data policy.
2 properties
LegacyPolicyViewModel
object
Model for Policy View
30 properties 4 required
RuleModel
object
Model for Rule
10 properties 4 required
RuleCriteria
object
Criteria for Rule
3 properties
FilterSuggestionModel
object
Model for Filter Suggestions
2 properties 1 required
PolicyViewModel
object
Model for Policy View V2
29 properties 4 required
FilterSuggestion
object
Model for FilterSuggestion
3 properties
ComplianceMetadataModel
object
Model for ComplianceMetadata
12 properties
RemediationModel
object
Model for Remediation
3 properties
PolicyFilterSuggestion
object
Model for PolicyFilterSuggestion
15 properties
PolicyModel
object
Model for Policy
25 properties 4 required
ParsedTableFilter
object
Model for parsed table filter
8 properties
NameValueIntegerString
object
2 properties
UIFilterModel
object
Model for UIFilter
3 properties
LegacyPolicyViewModel_2
object
Model for Policy View
31 properties 4 required
PolicySubType
object
PolicyViewModel_2
object
Model for Policy View V2
30 properties 4 required
PolicyType
object
PolicyClass
object
PolicyModel_2
object
Model for Policy
26 properties 4 required

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

palo-alto-networks-policy-api-openapi.yml Raw ↑

Other APIs Palo Alto Networks publishes across the network.

PAN-OS XML API
PAN-OS OpenConfig API
Panorama API
AutoFocus API (Deprecated)
Prisma SASE Service Status API
Cross-Platform Service Status API
SASE Authentication Service API
Expedition API (Deprecated)
VM-Series Licensing API
Palo Alto Networks 5G Deregistered Trend API
Palo Alto Networks 5G Network Interconnects and Bandwidth API
Palo Alto Networks 5G Registered Trend API
Where this information came from

This is an independent, third-party profile of Palo Alto Networks Policy API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.