Skip to content

v2.9.0 — runtime dlp command group

Choose a tag to compare

@cdot65 cdot65 released this 23 May 19:55
· 254 commits to main since this release

New

  • DLP command group — airs runtime dlp adds full CRUD across four DLP subclients:
    • filtering-profiles (list/get/replace)
    • patterns (list/create/get/replace/patch/soft-delete)
    • profiles (list/create/get/replace/patch — no delete; archive via patching profile_status)
    • dictionaries (full CRUD with multipart upload; handles both 200+body and 204+empty replace responses)
  • Optional PANW_DLP_ENDPOINT env var (defaults to SDK built-in).

Fixed

  • --debug now captures DLP traffic — fetch interceptor's host allowlist was missing api.dlp.paloaltonetworks.com, so runtime dlp commands were silently bypassing the JSONL log.

Dependencies

  • @cdot65/prisma-airs-sdk bumped to ^0.9.2 (DLP nested helper nullable sweep — unblocks runtime dlp patterns list and runtime dlp profiles list against live tenants).

Known issues

  • Upstream DLP API returns HTTP 400 for GET /v2/api/data-patterns/{id} and GET /v2/api/data-profiles/{id} on live tenants. Server-side, reproducible via curl. Tracked: cdot65/prisma-airs-sdk#162, #80. Workaround: use list + filter client-side.

PRs

  • #78 — feat: add airs runtime dlp commands
  • #79 — fix(debug): include DLP host in AIRS_DOMAINS allowlist