Signal Sciences Web Application Firewall (WAF)¶
Chronicle supports ingesting Signal Sciences web application firewall security logs in order to visualize network traffic. Currently supported ingestion is for Request Feeds, with the option to ingest Custom Alerts as well.
Chronicle Data Types¶
- SIGNAL_SCIENCES_WAF
Configuration¶
Creating Personal API Token¶
Reference: https://docs.signalsciences.net/developer/using-our-api/
- Go to My Profile > API Access Tokens
- Under “API Access Tokens” click on Add API access token
- Enter the name Cyderes for the access token and click Create
- The new token will be displayed. Record the token in a secure location.
- Click I understand to finish creating the token
Gather Information¶
Provide the following information to Cyderes to complete implementation:
- Email Address - email address setup for Cyderes to access API
- Personal API Token - used to authenticate against API