This quick start guide will help Accenture MDR customers configure Trend Vision One to allow log collection from the Log Collection Platform (LCP).
The document includes the following topics:
Table of Contents |
---|
Supported Versions
A list of supported versions is available in the Accenture MDR Supported Products List document (Accenture_MDR_Supported_Products_List.xlsx) which can be found in Accenture MDR Portal.
...
Configuring Trend Vision One
User Roles and Permissions :
NOTE :User should have SIEM role which is a predefined role. This role allows user to generate API keys for integration.
...
Select SIEM Role
Specify the Given name and Surname of the account user.
Click Add or Save.
For local accounts:
Users must verify the email address and create a password.
The verification link expires after 24 hours. If the verification link expires, any account with the "Master Administrator" role can resend the verification email message.
For SAML accounts:
Users must provide their credentials to log on.
Generate Authentication Token for integration using API.
Login to console and go to Account > API Keys
Click Add API Key to create a new API key.
Enter Name for the API and Role as SIEM
Click on SAVE.
Copy the Authentication Token Generated.
...