Configure the threat intelligence providers for IP address, URL, File Hash to confirm the maliciousness of the reported event.
To configure the threat intelligence source:
The Threat Intelligence page appears.
The Create Configuration page appears.
A new threat intelligence source is configured and listed in the Threat Intelligence page.
Table 411: Configuration Settings
Setting | Guideline |
---|---|
Source Name | Select the threat intelligence providers from the list. The supported threat intelligence providers are IBM X-Force, VirusTotal, and Opswat Metadefender. |
API Key | Enter a valid API key to look up the threat intelligence provider’s APIs. |
API Password | Enter a password to look up the threat intelligence provider’s APIs. |