IoT Security
Set up Cisco DNA Center to Connect with XSOAR Engines
Table of Contents
Expand All
|
Collapse All
IoT Security Docs
-
-
- Firewall Deployment Options for IoT Security
- Use a Tap Interface for DHCP Visibility
- Use a Virtual Wire Interface for DHCP Visibility
- Use SNMP Network Discovery to Learn about Devices from Switches
- Use Network Discovery Polling to Discover Devices
- Use ERSPAN to Send Mirrored Traffic through GRE Tunnels
- Use DHCP Server Logs to Increase Device Visibility
- Control Allowed Traffic for Onboarding Devices
- Support Isolated Network Segments
-
Set up Cisco DNA Center to Connect with XSOAR Engines
Set up Cisco DNA Center to accept connections from Cortex XSOAR engines.
Where Can I Use This? | What Do I Need? |
---|---|
|
One of the following Cortex XSOAR setups:
|
Because an XSOAR engine only retrieves data
from Cisco DNA Center, it requires a simple read-only user account
with access to the DNA Center API. XSOAR engines use this account
to log in to Cisco DNA Center API and begin retrieving data.
The
following instructions are based on Cisco DNA Center v2.3.5. For
more information, see the
Manage Users chapter in
the Cisco DNA Center Administrator Guide, Release 2.3.5.
- Configure a user role with read-only permission to access the DNA Center API.In the Cisco DNA Center web interface, click the Menu icon (In the Create a Role window that appears, click Let’s Do it.In the Create a New Role window that appears, enter a name for the role, such as API-Access, and then click Next.In the Define the Access window that appears, set the permission level as Read for the features you want the XSOAR engines to access.Click Next, review the summary that appears, and if correct, click Create Role.
- Create a user account and assign it to the user role you created.Click Add UsersAdd and enter a first name, family name, and username.From Role List, choose the custom role (API-Access for example) to assign to the new user.Enter the password, confirm it, and then click Save.
- Either create additional read-only user accounts for other XSOAR instances to use when XSOAR engines authenticate themselves to the Cisco DNA Center API or configure them to use the same account.
- Remember the usernames and passwords for these accounts because you will enter them in the Cisco DNA Center instances you configure in XSOAR.