Integrations

You can set up integrations with other supported platforms to allow Tenable One OT Exposure to sync with your other cybersecurity platforms.

Tenable Products

You can integrate Tenable One OT Exposure with Tenable Security Center and Tenable One Vulnerability Management. Tenable One OT Exposure shares data with the other platforms through these integrations. The synced data includes OT vulnerabilities as well as data discovered by IT-type Tenable Nessus scans initiated from Tenable One OT Exposure.

Note: Tenable One OT Exposure does not send data for Hidden assets to Tenable Security Center and Tenable One Vulnerability Management via the integration.
Note: To integrate the platforms, Tenable One OT Exposure must be able to reach Tenable Security Center and/or Tenable One Vulnerability Management via port 443. Tenable recommends that you create a specific user on Tenable Security Center and/or Tenable One Vulnerability Management to be used as the integration user to Tenable One OT Exposure.

Tenable Security Center

Required Tenable One OT Exposure User Role: Administrator

To integrate Tenable Security Center, create a Universal Repository in Tenable Security Center to store Tenable One OT Exposure data and take a note of the repository ID. For more information, see Universal Repositories.

Note: Tenable recommends creating a specific user on Tenable Security Center that is used to integrate with Tenable One OT Exposure. The user should have the role of Security Manager/Security Analyst or Vulnerability Analyst and be assigned to the “Full Access” group.

To integrate Tenable Security Center:

  1. In the Tenable OT Security interface, navigate to Settings > Integrations.

    The Integrations page appears.

  2. In the upper-right corner, click Add Integration Module.

    The Add Integration Module panel appears.

  3. In the Module Type section, select Tenable Security Center.

  4. Click Next.

    The Module Definition panel with the relevant fields appears.

  5. In the Hostname/IP box, type the hostname or IP of your Tenable Security Center.

  6. In the Username box, type the account user ID.

  7. In the Password box, type the password of your account.

  8. In the Repository ID, provide the Universal Repository ID.

  9. In the Sync Frequency drop-down box, set the frequency to sync the data.

  10. Click Save.

    Tenable One OT Exposure creates the integration and shows the new integration on the Integrations page.

  11. Right-click the new integration and click Sync.

Tenable One Vulnerability Management

Required Tenable One OT Exposure User Role: Administrator
Note: You need to first generate an API key in the Tenable One Vulnerability Management console (Settings > My Account > API Keys > Generate). You are given an Access Key and a Secret Key which you can then enter in the Tenable One OT Exposure console when configuring the integration.

To integrate Tenable One Vulnerability Management:

  1. In the Tenable OT Security interface, navigate to Settings > Integrations.

    The Integrations page appears.

  2. In the upper-right corner, click Add Integration Module.

    The Add Integration Module panel appears.

  3. In the Module Type section, select Tenable One Vulnerability Management.

  4. Click Next.

    The Module Definition panel with the relevant fields appears.

  5. In the Access Key box, provide the access key.

  6. In the Secret Key box, provide the secret key.

  7. In the Sync Frequency drop-down box, select the frequency to sync the data.

Tenable One

Required Tenable One OT Exposure User Role: Administrator

To integrate with Tenable One, follow the steps in Integrate with Tenable One.

Palo Alto Networks – Next Generation Firewall

Required Tenable One OT Exposure User Role: Administrator

You can share asset inventory information discovered by Tenable One OT Exposure with your Palo Alto system.

To integrate Tenable One OT Exposure with your Palo Alto Networks Next Generation Firewalls (NGFW):

  1. In the Tenable OT Security interface, navigate to Settings > Integrations.

    The Integrations page appears.

  2. In the upper-right corner, click Add Integration Module.

    The Add Integration Module panel appears.

  3. In the Module Type section, select Palo Alto Networks NGFW.

  4. Click Next.

  5. In the Hostname/IP box, type the hostname or IP address of your Palo Alto NGFW account.

  6. In the Username box, type the username of your NGFW account.

  7. In the Password box, type the password of your NGFW account.

  8. Click Save.

    Tenable One OT Exposure saves the integration.

Aruba – ClearPass Policy Manager

Required Tenable One OT Exposure User Role: Administrator

You can share asset inventory information discovered by Tenable One OT Exposure with your Aruba system.

To integrate Tenable One OT Exposure with your Aruba ClearPass account:

  1. In the Tenable OT Security interface, navigate to Settings > Integrations.

    The Integrations page appears.

  2. In the upper-right corner, click Add Integration Module.

    The Add Integration Module panel appears.

  3. In the Module Type section, select Aruba Networks ClearPass.

  4. Click Next.

  5. In the Hostname/IP box, type the hostname or IP address of your Aruba Networks ClearPass account.

  6. In the Username box, type the username of your Aruba Networks ClearPass account.

  7. In the Password box, type the password of your Aruba Networks ClearPass account.

  8. In the Client ID box, type the client ID of your Aruba Networks ClearPass account.

  9. In the API Client Secret box, type the API Client Secret of your Aruba ClearPass account.

  10. Click Save.

    Tenable One OT Exposure saves the integration.