Frequently Asked Questions
How long does it take for the IP-User-ID mapping to be available on the Palo Alto Networks® Next Generation Firewall after a device is connected to the network?
The IP-User-ID mapping will be available on the Palo Alto Networks® Next Generation Firewall in less than three seconds after a device is connected to the network.
Saasyan Advance is licensed per named user per year. The number of devices per user is not restricted.
A single Saasyan Advance virtual appliance can support up to 20,000 named users or devices.
Saasyan Advance virtual appliances are available for VMware vSphere, Microsoft Hyper-V and Linux KVM environments.
The Saasyan Advance virtual appliance requires one vCPU, 2GB RAM and 16GB HDD.
Data is collected continuously from the firewall/web filter and aggregated with other sources of info such as active directory, the bad words dictionary and third party APIs before it’s stored in the data warehouse. This aggregation process can happen as frequently as every 20 minutes.
The data is backed up once a day and kept for a month.
Data is retained and kept online for the entire duration of the school year.
Yes, data can be exported on demand at a rate of $5 per GB exported.
The teacher will receive a daily email digest with all the alerts that have been triggered during the day.
Yes, a backup is captured automatically before and after an override rule creation.
Yes, teachers can export the data to Excel.
Allow overrides can be used to allow access to a base URL or a web category whereas deny overrides can be used to deny access to a base URL, a web category or the whole Internet.
The Saasyan Assure virtual appliance requires two vCPUs, 6GB RAM and 32GB HDD.
Saasyan Paximus is completely hosted and managed by Saasyan.
How does Saasyan Paximus reach the primary and secondary Palo Alto Networks® Next Generation Firewalls?
Directly over the Internet or via an agent installed on premise.
As frequently as the client likes. Each sync will require the secondary Palo Alto Networks® Next Generation Firewall to be up for 15 minutes if there are configuration changes to be applied.
The client can choose the configuration sections that need to be kept in sync.
Saasyan will receive an alert, rectify Paximus service related issues and notify the client if the failure is due to problems at the client side.
It’s best to maintain a consistent set of Zones on both devices. The security rules that are related to inbound traffic (destination NAT) need to configured with tuples that apply to both devices/networks. It’s advisable to use a public DNS service that’s capable of checking the health of a service endpoint and failing the DNS record over to the public IP address on the standby device. TTL on these DNS records should be set to less than five minutes.
Saasyan Tempus is licensed per named user per year.
Saasyan Tempus requires access to the school’s Office365 / Azure AD environment and read only access to a database table / view that provides it with the following dataset from the school management system:
User_ID: A unique ID identifying the student/teacher
Username: AD login name of the student/teacher
Period: The period name
Date: Date of the timetable entry
Start_Time: Start time of the timetable entry
End_Time: End time of the timetable entry
Classcode (or equivalent): Class Code
Teachercode (or equivalent): Teacher Code
Classroomcode (or equivalent): Classroom Code
Saasyan Tempus virtual appliances are available for VMware vSphere, Microsoft Hyper-V and Linux KVM environments.
The Saasyan Tempus virtual appliance requires one vCPU, 2GB RAM and 16GB HDD.