Trend Micro Vision One
Trend Micro Vision One is a threat defense platform that provides advanced extended detection and response (XDR) capabilities.
The Trend Micro Vision One adapter enables Axonius to fetch and catalog endpoints, identities, and software inventory, providing unified visibility into their inventory details and security posture.
Asset Types Fetched
- Devices
- Vulnerabilities
- Users
- Software
- SaaS Applications
Before You Begin
Required Ports
- TCP port 443 (HTTPS)
Authentication Methods
- Token
Required Permissions
The value supplied in User API Token must be associated with credentials that have the following permissions for:
-
Report Management:
- View
- Configure and download
-
Endpoint Inventory
- View
APIs
Axonius uses the Trend Vision One Public API (v3.0) to retrieve asset data.
Supported From Version
Supported from Axonius version 4.8.
Connection Parameters
To connect the adapter in Axonius, provide the following parameters.
Required Parameters
-
Host Name or IP Address - Enter the the hostname or IP address of the Trend Micro Vision One server that Axonius can communicate with via the Required Ports.
-
Token - Enter an API Key associated with a user account that has permissions to fetch assets. Read here about getting the API.
Optional Parameters
-
Verify SSL - Select whether to verify the SSL certificate of the server against the CA database inside of Axonius. For more details, see SSL Trust & CA Settings.
-
HTTPS Proxy - Enter an HTTPS proxy address to connect the adapter to a proxy instead of directly connecting it to the domain.
-
HTTPS Proxy User Name - Enter the user name to use when connecting to the value supplied in Host Name or IP Address via the value supplied in HTTPS Proxy.
-
HTTPS Proxy Password - Enter the password to use when connecting to the server using the HTTPS Proxy.
To learn about additional optional/common adapter connection parameters and options, see Adding a New Adapter Connection.
Advanced Settings
Note
- Advanced settings can apply to either all connections of this adapter, or to a specific connection. For more detailed information, see Advanced Configuration for Adapters.
- For more general information about advanced settings, see Adapter Advanced Settings.
Specific advanced settings that relate to the Trend Micro Vision One adapter are shown in the following figure.
- Fetch Device Vulnerabilities (default: true) - By default Axonius fetches device vulnerabilities. Clear this option to not fetch device vulnerabilities.
- Fetch Installed Software - Select this option to enrich devices with installed software.
- Fetch Extended Endpoint Details - Select this option to fetch extended endpoint details (including network interfaces (IP addresses and MAC addresses), cloud provider, and cloud ID). All of this data can significantly help with correlation.
- Fetch Risky Devices (default: true) - By default Axonius fetches risky devices. Clear this option to disable the risky devices endpoint.
- Fetch Users - Select this option to fetch users.
- Page Size (default: 200) - Specify the number of entities returned per page request.
Updated 7 days ago
