Skip to content

Signal Sciences Web Application Firewall (WAF)

Chronicle supports ingesting Signal Sciences web application firewall security logs in order to visualize network traffic. Currently supported ingestion is for Request Feeds, with the option to ingest Custom Alerts as well.

Chronicle Data Types

  • SIGNAL_SCIENCES_WAF

Configuration

Creating Personal API Token

Reference: https://docs.signalsciences.net/developer/using-our-api/

  1. Go to My Profile > API Access Tokens
  2. Under “API Access Tokens” click on Add API access token
  3. Enter the name Cyderes for the access token and click Create
  4. The new token will be displayed. Record the token in a secure location.
  5. Click I understand to finish creating the token

Gather Information

Provide the following information to Cyderes to complete implementation:

  • Email Address - email address setup for Cyderes to access API
  • Personal API Token - used to authenticate against API