Views:
  1. On Trend Micro Vision One Console, hover on to the gear icon and select Third-Party Integration. Select "Check Point Open Platform for Security".

    3rd-party integration

    Click the image to enlarge.

  2. Configure the Sharing Settings, then Add the Service Gateway to the list as its bridge.

    Add Service Gateway

    Click the image to enlarge.

  3. Select the Service Gateway available on the network, then add the Check Point details:
    • Check Point OPSEC Server Address
    • Port Used
    • OPSEC Application Name
    • SIC One-time password

    Service Gateway Details

    Click the image to enlarge.

  4. Click the Test Connection Button below, then Add Button afterward.
  1. On Trend Micro Vision One Console, hover on to the gear icon and select Third-Party Integration. Select "Broadcom".

    Proxy SG integration

    Click the image to enlarge.

  2. Configure the Share Settings based on preference, then Add the Service Gateway to the list as its bridge.

    Configure Settings

    Click the image to enlarge.

  3. Select the Service Gateway available and configure the other details.

    Service Gateway

    Click the image to enlarge.

  4. Successful Integration would be like this.

    Confirm integration

    Click the image to enlarge.

  1. On Trend Micro Vision One Console, hover on to the gear icon and select Third-Party Integration. Select "Palo Alto Networks".

    Integrate Palo Alto Panorama

    Click the image to enlarge.

  2. Configure the Share Settings based on preference, then Add the Service Gateway to the list as its bridge.

    Add Palo Alto Panorama Service Gateway

    Click the image to enlarge.

  3. Select the Service Gateway available and configure the other details.

    Palo Alto Panorama Service Gateway info

    Click the image to enlarge.

     
    Some products encounter integration issues with HTTPS self-signed certificates, thus HTTP is available. (Ex. Malware Information Sharing Platform or MISP).
     
  4. Successful Integration would be like this.

    Confirm Palo Alto Panorama integration

    Click the image to enlarge.

  1. On Trend Micro Vision One Console, hover on to the gear icon, click Third-Party Integration, and select "Fortinet".

    Integrate Palo Alto Panorama

    Click the image to enlarge.

  2. Configure the Share Settings based on preference, then Add the Service Gateway to the list as its bridge.

    Add Palo Alto Panorama Service Gateway

    Click the image to enlarge.

  3. Select the Service Gateway available and configure the other details.

    Palo Alto Panorama Service Gateway info

    Click the image to enlarge.

     
    Some products encounter integration issues with HTTPS self-signed certificates, thus HTTP is available. (Ex. Malware Information Sharing Platform or MISP).
     
  4. Copy the Service Gateway IP Address, URL, and Domain and save it on a text document for later use.

    Confirm Palo Alto Panorama integration

    Click the image to enlarge.

  5. In Fortigate Fabric Connector add a new threat feed (Fortiguard, IP Address or Domain Name). Trend Micro Vision One does not support Malware Hash in plain text yet.

    Fortigate Connector

    Click the image to enlarge.

  6. Fill up the Connector settings based on the copied information from the Trend Micro Vision One Console. Click Save afterward.

    Fortigate connector settings

    Click the image to enlarge.

  7. Successful Integration should create three new fabric connectors.

    Fortigate Connector list

    Click the image to enlarge.

  8. Verify if the information is being forwarded to Fortigate after a couple of minutes.

    Verify Fortigate Connector settings

    Click the image to enlarge.

  9. Setup the firewall policy to block the entries from going outside.

    Setup Fortigate Firewall

    Click the image to enlarge.

  1. On Trend Micro Vision One Console, hover on to the gear icon and select Third-Party Integration. Select "MISP Project".

    PPlain text (freetext) feeds

    Click the image to enlarge.

  2. Configure the Share Settings based on preference, then Add the Service Gateway to the list as its bridge.

    Add Palo Alto Panorama Service Gateway

    Click the image to enlarge.

  3. Select the Service Gateway available and configure the other details.

    Palo Alto Panorama Service Gateway info

    Click the image to enlarge.

  4. Copy the Service Gateway IP Address, URL, and Domain and save it on a text document for later use.
    1. Add a custom Trend Micro tag.
    2. Name the Event Trend Micro Vision One – Suspicious Objects.
    3. Submit and Publish.

    Edit Event

    Click the image to enlarge.

  5. Once done, it should now create the Event ID.

    Event ID added

    Click the image to enlarge.

  6. Add a MISP Feed using the following details:
    • Check: Enabled
    • Name: Trend Micro Vision One UDSO URL
      • The Service Gateway publishes 3 URLs. Create 1 MISP Feed Per URL
      • http://192.168.1.77/pal/pal_so_ip.txt
      • http://192.168.1.77/pal/pal_so_domain.txt
      • http://192.168.1.77/pal/pal_so_url.txt
    • Provider: Trend Micro Vision One
    • Use the HTTP for the URLs

      Add HTTP URLs

      Click the image to enlarge.

      Target Event ID

      Click the image to enlarge.

  7. Repeat the Process for adding IP and Domains.
  8. Successful feed creation should show each Service Gateway URL. Fetch the feeds after.

    Feeds list

    Click the image to enlarge.

  1. On Trend Micro Vision One Console, hover on to the gear icon and select Third-Party Integration. Select "Microsoft". Look for "Trend Micro Vision One for Azure".

    Integrate Palo Alto Panorama

    Click the image to enlarge.

  2. Use the Endpoint Address of Trend Micro Vision One and the generated Authentication Token for your Trend Micro Vision One instance. Note that the Authentication Token has an expiration date (Hover on the tooltip to determine the exact expiration date):

    Add Palo Alto Panorama Service Gateway

    Click the image to enlarge.