Connect a TippingPoint Security Management System (SMS) 6.1.0 or later to Network Security directly over the internet or through an HTTP proxy.
Starting from TippingPoint SMS 6.1.0, connecting a TippingPoint SMS to TrendAI Vision One™ no longer requires the use of a Service Gateway. An internal service enables TippingPoint
SMS to automatically establish and maintain a connection to TrendAI Vision One™ with an enrollment token. The connection can also be established through an HTTP
proxy if the TippingPoint SMS does not have a direct internet connection.
Intrusion Prevention Configuration currently only
supports policy enforcement on the first TippingPoint SMS connected to TrendAI Vision One™. Support for policy enforcement on multiple
TippingPoint SMS deployments is coming soon.
To enable the Suspicious Object Sync function on TippingPoint SMS
6.1.0, you must connect the TippingPoint SMS to TrendAI Vision One™
through a Service Gateway.
Procedure
- Generate an API key to access the SMS Web API:
- From your SMS interface, select and verify that the role for the selected user account has the
Access SMS Web Servicescapability enabled. - Select .
- Select the user account, and click Edit.
- Click Regenerate API Key to get a new API key.You can reset the API key for any reason. But when you do, from this point, the previous API key can no longer be used.
- From your SMS interface, select and verify that the role for the selected user account has the
- If your TippingPoint SMS does not have a direct connection to the internet, configure
an HTTP proxy:
- In the TippingPoint SMS client, go to and click the Network tab.
- In the HTTP Proxy section, select Proxy Internet Connections.
- Enter the IP address or hostname of the proxy server in the Proxy Server Host field.
- Enter the port of the proxy server in the Proxy Server Port field.
- If the proxy server requires authentication, select Use Proxy Authentication and provide the user name and password in the Username and Password fields, respectively.
- Click Apply.
- Configure a TippingPoint SMS connector in TrendAI Vision One™.
-
For customers that have updated to the Foundation Services release, go to .
-
For customers using the legacy TrendAI Vision One™ console, go to .
Alternatively:- In the TrendAI Vision One™ console, go to .
- Select the Continue with TippingPoint deployment option.
- Click Connect a TippingPoint SMS.
- Follow the steps in the connection guide dialog for configuring a Service Gateway (if required), generating an enrollment token using the Product Instance app, and connecting your SMS to TrendAI Vision One™ using the SMS Client interface.
-
- Connect your TippingPoint SMS to TrendAI Vision One™:
- On the TippingPoint SMS web management console, go to .
- Click Configure.
- Paste the enrollment token into the Enrollment
Token field.Using an enrollment token automatically provisions a one-year TrendAI Vision One™ certificate. The certificate automatically renews 30 days before expiration to avoid any gaps in security protection.
- (Optional) If you would like to submit suspicious URL objects for
sandbox analysis, enable the Cloud Sandbox URL analysis.
-
In the Cloud Sandbox URL Analysis section, enable the State toggle.
-
In the Saved Query dropdown menu, select your desired query.
-
- Click Test Connectivity to verify that the TippingPoint SMS can connect to TrendAI Vision One™.
- Click Save.
- Verify the connection status.
- In the TrendAI Vision One™ console:
-
For customers that have updated to the Foundation Services release, go to .
-
For customers using the legacy TrendAI Vision One™ console, go to .
-
- Check that the Connection status for TippingPoint Security Management System is green.
Devices managed by the TippingPoint SMS can be viewed in . - In the TrendAI Vision One™ console:
- To check for vulnerabilities and receive policy recommendations in TrendAI Vision One™, enable the TippingPoint SMS as
an Cyber Risk Exposure Management data
source.
- In the TrendAI Vision One™ console, go to .
- Click Data sources.
- In the TrendAI™ Security Services section, click TippingPoint Security Management System.
- Enable Data upload permission to allow the TippingPoint SMS to provide data for more comprehensive risk insights into your network activity.
