Connect a TippingPoint Security Management System (SMS) 6.1.0 or later to Network Security directly over the internet or through an HTTP proxy.
Starting from TippingPoint SMS 6.1.0, connecting a TippingPoint SMS to Trend Vision One no longer requires the use of a
Service Gateway. An internal service enables TippingPoint SMS to automatically
establish and maintain a connection to Trend Vision One with an enrollment token. The
connection can also be established through an HTTP proxy if the TippingPoint SMS
does not have a direct internet connection.
Important
|
Procedure
- Generate an API key to access the SMS Web API.
- From your SMS interface, select
Access SMS Web Services
capability enabled. and verify that the role for the selected user account has the - Select .
- Select the user account, and click Edit.
- Click Regenerate API Key to get a new API key.You can reset the API key for any reason. But when you do, from this point, the previous API key can no longer be used.
- From your SMS interface, select
- If your TippingPoint SMS does not have a direct connection to the internet, configure
an HTTP proxy.
- In the TippingPoint SMS client, go to and click the Network tab.
- In the HTTP Proxy section, select Proxy Internet Connections.
- Enter the IP address or hostname of the proxy server in the Proxy Server Host field.
- Enter the port of the proxy server in the Proxy Server Port field.
- If the proxy server requires authentication, select Use Proxy Authentication and provide the user name and password in the Username and Password fields, respectively.
- Click Apply.
- Configure a TippingPoint SMS connector in Trend Vision One.
-
For customers that have updated to the Foundation Services release, go to .
-
For customers using the legacy Trend Vision One console, go to .
Alternatively:- In the Trend Vision One console, go to .
- Select the Continue with TippingPoint deployment option.
- Click Connect a TippingPoint SMS.
- Follow the steps in the connection guide dialog for configuring a Service Gateway (if required), generating an enrollment token using the Product Instance app, and connecting your SMS to Trend Vision One using the SMS Client interface.
-
- Connect your TippingPoint SMS to Trend Vision One.
- On the TippingPoint SMS web management console, go to .
- Click Configure.
- Paste the enrollment token into the Enrollment
Token field.Using an enrollment token automatically provisions a one-year Trend Vision One certificate. The certificate automatically renews 30 days before expiration to avoid any gaps in security protection.
- (Optional) If you would like to submit suspicious URL objects for
sandbox analysis, enable the Cloud Sandbox URL analysis.
-
In the Cloud Sandbox URL Analysis section, enable the State toggle.
-
In the Saved Query dropdown menu, select your desired query.
-
- Click Test Connectivity to verify that the TippingPoint SMS can connect to Trend Vision One.
- Click Save.
- Verify the connection status.
- In the Trend Vision One console:
-
For customers that have updated to the Foundation Services release, go to .
-
For customers using the legacy Trend Vision One console, go to .
-
- Check that the Connection status for TippingPoint Security Management System is green.
Devices managed by the TippingPoint SMS can be viewed in. - In the Trend Vision One console:
- To check for vulnerabilities and receive policy recommendations in Trend Vision One, enable the TippingPoint SMS as
an Attack Surface Risk Management data
source.
- In the Trend Vision One console, go to .
- Click Data sources.
- In the Trend Micro Security Services section, click TippingPoint Security Management System.
- Enable Data upload permission to allow the TippingPoint SMS to provide data for more comprehensive risk insights into your network activity.