- 08 Mar 2022
- 2 Minutes to read
- Print
- DarkLight
- PDF
BitSight Security Ratings
- Updated on 08 Mar 2022
- 2 Minutes to read
- Print
- DarkLight
- PDF
BitSight Security Ratings are a data-driven and dynamic measurement of an organization’s cybersecurity performance.
Types of Assets Fetched
This adapter fetches the following types of assets:
- Devices
Parameters
- BitSight Domain (required, default: https://api.bitsighttech.com) - The hostname or IP address of the Bitsight server.
- API Key (required) - An API Key associated with a user account that has the Required Permissions to fetch assets.
- Company Name (leave empty to fetch data from parent company) *(optional, default: empty) - Specify a company name form data will be fetched.
- If supplied, only data associated with the specified company name will be fetched.
- If not supplied, data associated with the parent company and all its 'child' companies will be fetched.
- Verify SSL (required, default: False) - Verify the SSL certificate offered by the value supplied in BitSight Domain. For more details, see SSL Trust & CA Settings.
- If enabled, the SSL certificate offered by the value supplied in BitSight Domain will be verified against the CA database inside of Axonius. If the SSL certificate can not be validated against the CA database inside of Axonius, the connection will fail with an error.
- If disabled, the SSL certificate offered by the value supplied in BitSight Domain will not be verified against the CA database inside of Axonius.
- HTTPS Proxy (optional, default: empty) - A proxy to use when connecting to the value supplied in BitSight Domain.
- If supplied, Axonius will utilize the proxy when connecting to the value supplied in BitSight Domain.
- If not supplied, Axonius will connect directly to the value supplied in BitSight Domain.
- HTTPS Proxy User Name (optional, default: empty) - The user name to use when connecting to the value supplied in BitSight Domain via the value supplied in HTTPS Proxy.
- If supplied, Axonius will authenticate with this value when connecting to the value supplied in HTTPS Proxy.
- If not supplied, Axonius will not perform authentication when connecting to the value supplied in HTTPS Proxy.
- HTTPS Proxy Password (optional, default: empty) - The password to use when connecting to the value supplied in BitSight Domain via the value supplied in HTTPS Proxy.
- If supplied, Axonius will authenticate with this value when connecting to the value supplied in HTTPS Proxy.
- If not supplied, Axonius will not perform authentication when connecting to the value supplied in HTTPS Proxy.
- For details on the common adapter connection parameters and buttons, see Adding a New Adapter Connection.
Required Permissions
The value supplied in API Key must be associated with a user account that has read access to devices.
Creating a User in BitSight
Log in to the BitSight admin panel as Administrator.
Click Settings -> Manage Users.
Create a new user. Axonius requires the least-privileged type of user, which is the 'User' role.
Once added, you should receive an approval email from BitSight to the specified mail address. Click the attached link to set a new password. Then, log in to the panel and click settings > account.
Scroll down to 'API Token' and click 'Generate New Token'.
Use the generated token in the credentials screen.