Rapid7 InsightCloudSec
  • 17 Apr 2024
  • 2 Minutes to read
  • Dark
    Light
  • PDF

Rapid7 InsightCloudSec

  • Dark
    Light
  • PDF

Article Summary

Rapid7 InsightCloudSec (formerly DivvyCloud) manages cloud security posture, secures cloud workloads, and governs identity and access management.

Types of Assets Fetched

This adapter fetches the following types of assets:

  • Devices

Parameters

  1. Domain (required) - The hostname or IP address of the DivvyCloud server.
  2. Port (optional, default: 8001) - The port used for the connection.
  3. Username and Password (optional) - The credentials for a user account that has Read-only permissions to fetch assets. To create a user account with Read-only permissions, see Creating a User in the Rapid7 InsightCloudSec Console.
Note:

When API Token is not supplied, Username and Password are required.

  1. API Key (optional) - An API Key associated with a user account that has the Required Permissions to fetch assets.
Note:

When Username and Password are not supplied, API Key is required.

  1. Verify SSL - Select whether to verify the SSL certificate of the server against the CA database inside of Axonius. For more details, see SSL Trust & CA Settings.
  2. HTTPS Proxy (optional) - Connect the adapter to a proxy instead of directly connecting it to the domain.

To learn more about common adapter connection parameters and buttons, see Adding a New Adapter Connection.

Rapid7%20InsightCloudSec


Advanced Settings

Note:

Advanced settings can either apply for all connections for this adapter, or you can set different advanced settings and/or different scheduling for a specific connection, refer to ​Advanced Configuration for Adapters.

  1. Fetch Containers (optional, default: true) - Select whether to fetch information from container objects.
  2. Do Not Fetch Powered Off Machines - Select to not fetch machines that have a State field value of 'stopped'.
  3. Fetch Badges as Tags - Select this option to fetch badges and parse them as asset tags.
  4. List of tags to parse as fields - Enter a list of tags to parse as additional asset fields.
  5. Fetch Insight Findings - Select this option to fetch Insight findings.

Note:

To learn more about Adapter Configuration tab advanced settings, see Adapter Advanced Settings.


Required Permissions

The value supplied in Username must be associated with credentials that have Read-only permissions to fetch assets.

Rapid7 InsightCloudSec has to add IP addresses to a permissions list in order to accept API requests. If you are working with an Axonius hosted system and your internal network is already on a permissions list, you can use a gateway to connect. Please contact Axonius Support for the external IP.


Creating a User in the Rapid7 InsightCloudSec Console

To create a user in the Rapid7 InsightCloudSec Console

  1. Log in as an administrator to the Rapid7 InsightCloudSec console. Click Identity Management and add a user. Axonius only uses the Username and Password field, so it doesn't matter what you specify in the Email field.
    image.png

  2. In the Identity Management page, select Roles > Add Role. Create a role that allows Viewing only and enable Global Scope.

  3. Select User Groups > Add User Group. Add a new group, then assign the role to the newly created user.

image.png image.png image.png

  1. Log in with the new user at least once to create it and verify that you can view your cloud accounts.

  2. Fill-in all required fields in the adapter configuration and click Save. The Rapid7 InsightCloudSec adapter is configured.



Was this article helpful?

Changing your password will log you out immediately. Use the new password to log back in.
First name must have atleast 2 characters. Numbers and special characters are not allowed.
Last name must have atleast 1 characters. Numbers and special characters are not allowed.
Enter a valid email
Enter a valid password
Your profile has been successfully updated.