IoT Security
Integrate IoT Security with Forescout
Table of Contents
Expand All
|
Collapse All
IoT Security Docs
-
-
- Firewall Deployment Options for IoT Security
- Use a Tap Interface for DHCP Visibility
- Use a Virtual Wire Interface for DHCP Visibility
- Use SNMP Network Discovery to Learn about Devices from Switches
- Use Network Discovery Polling to Discover Devices
- Use ERSPAN to Send Mirrored Traffic through GRE Tunnels
- Use DHCP Server Logs to Increase Device Visibility
- Control Allowed Traffic for Onboarding Devices
- Support Isolated Network Segments
-
Integrate IoT Security with Forescout
Integrate IoT Security with Forescout to identify and
quarantine IoT devices.
Where Can I Use This? | What Do I Need? |
---|---|
|
One of the following Cortex XSOAR setups:
|
You can integrate IoT Security through Cortex
XSOAR with Forescout, a NAC (Network Access Control) platform. Once
integrated, you can manually export the attributes of devices in
the IoT Security inventory to populate host properties on your
Forescout instance and thereby enrich its device inventory. Additionally,
when a security alert is triggered, you can send an attribute from
IoT Security to Forescout that it can use to quarantine an endpoint device
or release it from quarantine.
IoT Security integrates with
Forescout through Cortex XSOAR and an on-premises XSOAR engine.

Integrating with Forescout requires either a full-featured Cortex XSOAR server
or the purchase and activation of an IoT Security third-party integration add-on license, which comes with a free cohosted Cortex XSOAR instance. The basic
plan includes a license for three integration add-ons, one of which can be used for
Forescout. The advanced plan includes a license for all supported third-party
integrations.