- Print
- DarkLight
Rapid7 Nexpose Vulnerability Scanner
Rapid7 Nexpose is a comprehensive vulnerability scanner designed to help organizations identify, assess, and manage vulnerabilities across their IT infrastructure. It is used to find weaknesses in networks, operating systems, and applications by scanning devices, servers, cloud environments, and more.
Integration
DataBee integrates with Rapid7 to get user management data. DataBee integrates by connecting to an API endpoint which retrieves a list of user management details.
Integration Method: API
Tables: Account Change, Authentication, API Activity, User Access Management
Rapid7 Configuration
To leverage the Rapid7 API’s, we will need to generate an organization keys. Detailed steps can be found at https://docs.rapid7.com/insight/managing-platform-api-keys/
Log in to your Insight account with an administrator account
Go to the API Keys page.
From the API Keys page, go to the Organization Keys tab and click the New Organization Key button.
When the “Generate New Organization Key” panel appears, select an organization and provide a name for the key.
Generate the key. A new window opens and displays the generated key.
Copy the key. You will not be able to view it again after you close the window.
DataBee Configuration
DataBee will be configured to add Rapid7 as a new datasource. The API Key will be used to configure the API setup for RAPID7 within the DataBee console. General DataBee configuration steps can be found at https://docs.databee.buzz/docs/api-ingest
Login to the DataBee console and navigate to the Data > Data Sources tab
Click on Add New Source
Search for Rapid7 and select the Nexpose Vulnerability Scanner
Select API Ingest
Enter basic contact information in the dialog box and click Next
In the credentials page:
Authorization Method: Bearer Token
Secret Key: Paste the key generated from earlier
API endpoints: If not prefilled, enter the following URLs
https://us3.rest.logs.insight.rapid7.com/audit/management/logs