Set up Cisco Prime to Accept Connections from Device Security
Focus
Focus
Device Security

Set up Cisco Prime to Accept Connections from Device Security

Table of Contents

Set up Cisco Prime to Accept Connections from Device Security

Set up Cisco Prime Infrastructure for integration with Device Security through Cortex XSOAR.
Where Can I Use This?What Do I Need?
  • Device Security (Managed by Strata Cloud Manager)
  • (Legacy) IoT Security (Standalone portal)
One of the following subscriptions:
  • Device Security subscription for an advanced Device Security product (Enterprise Plus, Industrial OT, or Medical)
  • Device Security X subscription
One of the following Cortex XSOAR setups:
  • A free, cohosted, limited-featured Cortex XSOAR instance
    AND
    A Cortex XSOAR Engine (on-premises integration)
  • A full-featured Cortex XSOAR server
Because an XSOAR engine only retrieves data from Cisco Prime Infrastructure—it doesn’t send any data to Cisco Prime—it requires a simple read-only user account. An XSOAR engine will use this account to log in to Cisco Prime and begin retrieving data.
The following instructions are based on Cisco Prime v3.2.0.
To create a new read-only user account:
  1. From the Cisco Prime Infrastructure interface, navigate to AdministrationUsersUsers, Roles & AAAUsers.
  2. From the Select a command drop-down list, choose Add User and then click Go.
  3. On the General tab, enter the following to create a read-only user account for an XSOAR engine to use when authenticating itself to Cisco Prime and then click Save:
    Username: Enter a name for the read-only user.
    New Password and Confirm Password: Enter the password associated with the username.
    NBI Read: (select)
  4. Either create additional read-only user accounts for other XSOAR engines to use when authenticating to Cisco Prime or configure them to use the same account.