Integrations

You can set up integrations for Tenable One OT Exposure EM with other Tenable products — Tenable Security Center and Tenable One Vulnerability Management. This enables Tenable One OT Exposure to send data to Tenable Security Center and Tenable One Vulnerability Management. The data from Tenable One OT Exposure EM includes Tenable One OT Exposure vulnerabilities as well as data discovered by IT-type Tenable Nessus scans initiated from Tenable One OT Exposure. By setting up the integrations on the Tenable One OT Exposure EM level, you provide a single source of data, and alleviate the need to configure separate integrations for each site.

.

Note: To integrate the platforms, Tenable One OT Exposure must be able to reach Tenable Security Center and/or Tenable One Vulnerability Management via port 443. Tenable recommends that you create a specific user on Tenable Security Center and/or Tenable One Vulnerability Management to be used as the integration user to Tenable One OT Exposure.

Integrate with Tenable Security Center

You can integrate Tenable Security Center with Tenable One OT Exposure EM so that Tenable One OT Exposure EM sends information to the designated repositories.

Note: Tenable recommends that you create Tenable Security Center repositories with matching names to Tenable One OT Exposure Sites to optimize the mapping of Sites to repositories. The exact Tenable One OT Exposure Site names must be contained within the Tenable Security Center repository names. For example, for a site named “London”, a repository name of “OT_London” or “London – OT”. Sites without a matching repository send information to the default repository that you designate during the integration setup. For detailed instructions, click the button on the Integrations page.

To integrate Tenable Security Center:

  1. In the Tenable OT Security interface, navigate to Local Settings > Integrations.

  2. Click Add Integration.

    The Add Integration wizard opens with the Module Type page.

  3. Click Tenable Security Center, then click Next.

    The Module Definition page appears.

  4. In the Hostname\IP box, type a hostname or an IP address of the Tenable Security Center system.

  5. In the Username box, type the username associated with the Tenable Security Center system.

  6. In the Password box, type the password associated with the Tenable Security Center system.

  7. In the Default Repository ID box, type the ID for the repository that can serve as the default destination for any synced information that does not have a designated repository (see the note).

  8. In the Sync Frequency box, set the sync frequency for the integration.

  9. To test the connection, click Test Connection.

  10. Click Save.

    Note: Tenable recommends that you create a specific user on Tenable Security Center to integrate with Tenable One OT Exposure EM. The user must have the Security role.

Integrate with Tenable One Vulnerability Management

You can integrate Tenable One Vulnerability Management with Tenable One OT Exposure EM after generating an API key in the Tenable One Vulnerability Management console.

Note: First generate an API key in the Tenable One Vulnerability Management console (Settings > My Account > API Keys > Generate). You are given an Access Key and a Secret Key which you provide in the Tenable One OT Exposure console when configuring the integration. For more information, see Generate API Keys in the Tenable One Vulnerability Management User Guide.

To integrate Tenable One Vulnerability Management:

  1. In the Tenable OT Security interface, navigate to Local Settings > Integrations.

  2. Click Add Integration.

    The Add Integration wizard opens with the Module Type page.

  3. Click Tenable One Vulnerability Management, then click Next.

    The Module Definition page of the Add Integration Module wizard opens.

  4. In the Access Key box, type the access key for the API.

  5. In the Secret Key box, type the secret key for the API.

  6. In the Sync Frequency box, set the sync frequency for the integration.

  7. To test the connection, click Test Connection.

  8. Click Save.