SecPod SanerNow ADR Integration Configuration

Modified on Thu, 07 Mar 2024 at 12:42 PM

TABLE OF CONTENTS

Part 1: Configuring SanerNow SSO

  1. Follow the SecPod Documentation to configure SSO.
    https://docs.secpod.com/docs/how-to-enable-sso-authentication-policy-in-sanernow/

  2. Record your account ID and the SSO assertion key. These will be used by ARIA ADR to retrieve data.


Part 2: Configuring ARIA ADR

  1. Log in to the APE dashboard and access your tenant.

  2. If the left navigation pane, select 'Provisioning > Add-on Devices > Add-on Configuration'.


  3. Select 'Add', then locate 'SecPod SanerNow'.


  4. Fill in the form.
    1. Device: SecPod SanerNow.

    2. Name: Choose a descriptive name.

    3. CCE Host: Private IP of the CCE.

    4. Access ID/Username: SecPod account ID recorded earlier.

    5. Password/Secret Key: SecPod assertion key recorded earlier.

    6. Config: {}


  5. Select 'Save' to complete the configuration.

  6. Give this time perform setup and begin ingesting logs before the verification process.


Part 3: Verification of SecPod Integration

  1. Log in to the APE UI and access your tenant.

  2. In the left navigation pane, select 'System > Log/Flow Collection Status'.

  3. If configured correctly, you will see an entry from the CCE and a device type of SecPod SanerNow.

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select atleast one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article