Page tree

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Lumeta Asset Manager amplifies the value of your security stack by feeding it comprehensive and authoritative data about your network. These feeds are accomplished through the Lumeta Asset Manager API and through various integrated data connectors. Some of these connectors identify vulnerable networks and devices by matching LumetaAsset Manager-discovered data with ingested threat intelligence. Indexed data on these correlations are provided to users via LumetaAsset Manager's browser interface. Unstructured data and query results are delivered via API to other systems in a user's network ecosystem. These enable customers to resolve, re-route, sandbox, patch, and remediate problems when they occur and maintain the health and security of the system as a whole.

The setup to receive data feeds from third party applications to Lumeta Asset Manager involves adding a URL or IP address to your firewall whitelist. This information has been added to each integration's configuration page on Settings > Integrations.

A few representative examples follow:  

...

Feed

Update your firewall to allow

...

Image Modified

The IP address

with which you'll need to update your firewall

will display for these integrations:

  • BlueCat
  • Carbon Black
  • Cisco
  • McAfee DXL
    • FireMon
    • McAfee
    • Qualys
    • Rapid7
    • RedSeal
    • Tenable.sc
    • Tenable.io
    • Tripwire

    Image Modified

    Emerging Threats - http://rules.emergingthreatspro.com


    The following table is intended to give you an overview of the dashboards and data sources that are correlated with Lumeta Asset Manager discovered-and-indexed network data. You can sort the table by column heading. Open the Dashboards dropdown on the Home page of this site for more on each add-in.

    TypeIntegrationDashboard(s)
    IP Address
    Risk Management
    BlueCat
    FireMon Security Manager
    BlueCat
    FireMon Management Dashboard
    Endpoint Detection & ResponseCarbon BlackEndpoint ManagementUser IdentificationCisco pxGridCisco pxGrid
    CloudCloud DefenseDisruptOps Cloud Dashboard
    Breach DetectionTORBreach Detection
    Breach Detection
    Emerging Threats 
    SANS ISCBreach Detection
    Risk ManagementFireMon Security ManagerFireMon ManagementNetFlowGigamon Netflow
    Breach DetectioniDefenseBreach Detection - iDefense Dashboard
    Breach Detection

    Proofpoint Emerging Threats 

    Breach Detection
    Host Vulnerability ManagementQualysQualys ManagementBreach DetectioniDefenseBreach Detection - iDefense
    Endpoint Detection & ResponseVMware Carbon BlackCarbon Black Management Dashboard
    Endpoint Detection & ResponseTrellix ePOTrellix ePO Management Dashboard
    IP Address Management
    Infoblox
    BlueCat
    Infoblox ManagementBreach DetectionISC PortsBreach Detection Endpoint Detection & ResponseMcAfee ePOMcAfee ePO Management
    BlueCat Management Dashboard
    IP Address Management
    Merakinone - integration augments device details
    Infoblox NIOS DDIInfoblox Management Dashboard
    Host Vulnerability ManagementQualysQualys Management Dashboard
    Risk Management
    Rapid7
    Tripwire
    Rapid7
    Tripwire Management Dashboard
    Endpoint Detection & ResponseRedSealRedSeal Management Dashboard
    Breach DetectionTORBreach Detection
    Host Vulnerability ManagementTenable.scTenable.sc Management Dashboard
    Host Vulnerability ManagementTenable
    SecurityCenterTenable SecurityCenter Management
    .ioTenable.io Management Dashboard
    IP Address ManagementCisco MerakiManagement Station Devices Reports
    Risk ManagementRapid7Rapid7 Management Dashboard
    Security Stack ManagersSplunk 
    Lumeta
    Asset Manager's Dashboards in Splunk
    Security Stack Managers
    Service Now 
    ServiceNow ServiceNow
    (SNOW)
    Integration Overview
    Security Stack ManagersMcAfee DXLMcAfee DXL Management