Set up Cisco DNA Center to Connect with XSOAR Engines
Set up Cisco DNA Center to accept connections from Cortex XSOAR engines.
Where Can I Use This?
What Do I Need?
IoT Security (Managed by IoT Security)
IoT Security subscription for an advanced
IoT Security product (Enterprise Plus, Industrial
OT, or Medical)
One of the following Cortex XSOAR setups:
An IoT Security Third-party Integration Add-on
license that includes a cohosted, limited-featured
Cortex XSOAR instance
AND
A Cortex XSOAR Engine (on-premises integration)
A full-featured Cortex XSOAR server
Because an XSOAR engine only retrieves data
from Cisco DNA Center, it requires a simple read-only user account
with access to the DNA Center API. XSOAR engines use this account
to log in to Cisco DNA Center API and begin retrieving data.
The
following instructions are based on Cisco DNA Center v2.3.5. For
more information, see the
Manage Users chapter in
the Cisco DNA Center Administrator Guide, Release 2.3.5.
Configure a user role with read-only permission
to access the DNA Center API.
In the Cisco DNA Center web interface, click the Menu icon
(
),
click SystemUsers & RolesRole Based Access Control,
and then click Create a New Role.
In
the Create a Role window that appears, click Let’s Do it.
In
the Create a New Role window that appears, enter a name for the
role, such as API-Access, and then click Next.
In
the Define the Access window that appears, set the permission level
as Read for the features you want the XSOAR
engines to access.
Click Next, review
the summary that appears, and if correct, click Create
Role.
Create a user account and assign it to the user role
you created.
Click Add UsersAdd and
enter a first name, family name, and username.
From Role List,
choose the custom role (API-Access for example) to assign
to the new user.
Enter the password, confirm it, and then
click Save.
Either create additional read-only user accounts for
other XSOAR instances to use when XSOAR engines authenticate themselves
to the Cisco DNA Center API or configure them to use the same account.
Remember the usernames and passwords for these accounts because
you will enter them in the Cisco DNA Center instances you configure
in XSOAR.