Page tree

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Asset Manager offers a DisruptOps/AWS FireMon's Cloud Defense (formerly called DisruptOps) integration, which replaces the Lumeta CloudVisibility engine.  

DisruptOps Cloud Defense is a cloud security operations platform to monitor, alert and respond to security risk across your public cloud infrastructure. 

...

To use the feature, you must have the DisruptOps Cloud Defense platform deployed in your AWS environment.  For guidance, pen open a Support ticket (lumetasupport@firemon.com) and request "Disrupt:Ops".

FireMon Support will respond by providing you with implementation steps and login credentials. They will also help you deploy the necessary "cloudformation stack."

Configuration

  1. To configure this new integration, browse to Settings > Integrations > Disrupt:Ops and click Configure.
  2. Complete the form, entering your Disrupt:Ops credentials in the Username and Password fields (not your AWS credentials).



  3. Firewall ACL rules must be open for Asset Manager to access these URLs over port 443
    1. https://api.prod.disruptops.com/auth/login
    2. https://graph.prod.disruptops.com/graphql
    3. https://graph-v3.prod.disruptops.com/graphql

...

Asset Manager will display AWS Instance Information including Instance ID, Public MAC Address, Public IP, VPC ID, Security Group IDs and Region.  All this information can be configured into reports; combing you cloud instance information with your on-prem devices.

Map

Asset Manager's Cloud Map offers a quick view of your AWS instances.  Map

The map can be organized by Region, Account, or VPC ID. groupe by:

  • Provider
  • Account
  • Region
  • VPC ID

The Map will only show Regions, Accounts, and VPC IDs information for which we have retrieved EC2 Instances.

...