Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?


Netskope Active REST API Log Source Parameters for Netskope Active

If JSA does not automatically detect the log source, add a Netskope Active log source on the JSA Console by using the Netskope Active REST API protocol.

When using the Netskope Active REST API protocol, there are specific parameters that you must use.

The following table describes the parameters that require specific values to collect Netskope Active REST API events from Netskope Active:

Table 1: Netskope Active REST API Log Source Parameters for the Netskope Active DSM



Log Source type

Netskope Active

Protocol Configuration

Netskope Active REST API

IP or Hostname


Authentication Token

The authentication token is generated in the Netskope WebUI and is the only credential that is required for Netskope Active REST API usage. To access the token generation option in the Netskope WebUI, select Settings >REST API.

Automatically Acquire Server Certificates

If you choose Yes from the drop-down list, JSA automatically downloads the certificate and begins trusting the target server. The correct server must be entered in the IP or Hostname field.


The maximum number of events per second. The default is 5000.


You can specify when the log source attempts to obtain data. The format is M/H/D for Minutes/Hours/Days. The default is 1 M.

Collection Type

All Events

Select to collect all events.

Alerts Only

Select to collect only alerts.