Integrating Cisco Umbrella
Capabilities
DataGrail's Cisco Umbrella integration provides the following capabilities:
| Product | Capability |
|---|---|
| Live Data Map | System Detection |
Before You Start
To successfully configure this integration, please ensure you have sufficient privileges:
- DataGrail User Role: Super Admin, Connections Manager
- Cisco Umbrella User Role: Full Admin
Create an Umbrella API Key
- Sign in to Cisco Secure Access: https://login.sse.cisco.com/
- Navigate to Admin > API Keys.
- Select API Keys, then click Add.
- Configure the key:
Key configuration
- Enter a Name (and optional description) for the key.
- Under Key Scope, expand Reports and enable App Discovery Read.
- Choose Read Only access for the selected scope/resource.
- Choose an Expiry Date (or Never expire if allowed by your security policy).
- Click Create Key.
- Copy and securely store the credentials (you can only view the secret once):
API Key and Key Secret
- API Key
- Key Secret
- Click Accept And Close.
Identify your Cisco Data Center (Region)
- In Cisco Secure Access, navigate to Admin > Log Management.
- Identify where your Secure Access logs are stored (data storage region).
- In DataGrail, select the matching Cisco Data Center value:
Cisco Data Centers
- North America -
us - Europe -
eu
Connect to DataGrail
- In DataGrail, navigate to Integrations and select Configure New Integration to search for Cisco Umbrella.
- Enter the API Key, Key Secret, and select your Cisco Data Center.
- Select Configure Integration.
Next Steps
Now that you've successfully connected the integration, check out the following resources:
- Direct Contact Integrations
- Learn more about Live Data Map
- Live Data Map - System Inventory
- Inventory System Reports Overview
Troubleshooting
If you are unable to successfully connect the integration, review these common troubleshooting steps:
Ensure Required Permissions Are Granted on API Keys/Resources
DataGrail checks required permissions and scopes on API keys/resources used by each integration. If all necessary permissions are not granted, new connections will fail.
Review Required Account Types and User Roles
If users do not have the necessary permissions or the minimum required user role in the connecting system, the connection to DataGrail will fail. Additionally, connections will fail if your account type does not match the one required by the integration.
See Before You Start to review these requirements.
Technical Details
The Cisco Umbrella integration uses the Umbrella Token Authorization API + Secure Access Reports API (v2).API Documentation
Learn more about this API implementation and DataGrail functionality in our API Integration Documentation.
Disclaimer: The information contained in this message does not constitute as legal advice. We would advise seeking professional counsel before acting on or interpreting any material.