- On TrendAI Vision One™ Console, hover on to the gear icon and select Third-Party Integration. Select "Check Point Open Platform for Security".
- Configure the Sharing Settings, then Add the Service Gateway to the list as its bridge.
- Select the Service Gateway available on the network, then add the Check Point details:
- Check Point OPSEC Server Address
- Port Used
- OPSEC Application Name
- SIC One-time password
- Click the Test Connection Button below, then Add Button afterward.
- On TrendAI Vision One™ Console, hover on to the gear icon and select Third-Party Integration. Select "Broadcom".
- Configure the Share Settings based on preference, then Add the Service Gateway to the list as its bridge.
- Select the Service Gateway available and configure the other details.
- Successful Integration would be like this.
- On TrendAI Vision One™ Console, hover on to the gear icon and select Third-Party Integration. Select Palo Alto Networks.
- Configure the Share Settings based on preference, then Add the Service Gateway to the list as its bridge.
- Select the Service Gateway available and configure the other details.
Some products encounter integration issues with HTTPS self-signed certificates, thus HTTP is available. (Ex. Malware Information Sharing Platform or MISP).
- Successful Integration would be like this.
- On TrendAI Vision One™ Console, hover on to the gear icon, click Third-Party Integration, and select "Fortinet".
- Configure the Share Settings based on preference, then Add the Service Gateway to the list as its bridge.
- Select the Service Gateway available and configure the other details.
Some products encounter integration issues with HTTPS self-signed certificates, thus HTTP is available. (Ex. Malware Information Sharing Platform or MISP).
- Copy the Service Gateway IP Address, URL, and Domain and save it on a text document for later use.
- In Fortigate Fabric Connector add a new threat feed (Fortiguard, IP Address or Domain Name). TrendAI Vision One™ does not support Malware Hash in plain text yet.
- Fill up the Connector settings based on the copied information from the TrendAI Vision One™ Console. Click Save afterward.
- Successful Integration should create three new fabric connectors.
- Verify if the information is being forwarded to Fortigate after a couple of minutes.
- Setup the firewall policy to block the entries from going outside.
- On TrendAI Vision One™ Console, hover on to the gear icon and select Third-Party Integration. Select "MISP Project".
- Configure the Share Settings based on preference, then Add the Service Gateway to the list as its bridge.
- Select the Service Gateway available and configure the other details.
- Copy the Service Gateway IP Address, URL, and Domain and save it on a text document for later use.
- Add a custom Trend Micro tag.
- Name the Event TrendAI Vision One™ – Suspicious Objects.
- Submit and Publish.
- Once done, it should now create the Event ID.
- Add a MISP Feed using the following details:
- Repeat the Process for adding IP and Domains.
- Successful feed creation should show each Service Gateway URL. Fetch the feeds after.
- On TrendAI Vision One™ Console, hover on to the gear icon and select Third-Party Integration. Select "Microsoft". Look for "TrendAI Vision One™ for Azure".
- Use the Endpoint Address of TrendAI Vision One™ and the generated Authentication Token for your TrendAI Vision One™ instance. Note that the Authentication Token has an expiration date (Hover on the tooltip to determine the exact expiration date):
