Windows Integration
To configure Tenable with QiAnXin using Windows integration:
- Log into your Tenable user interface.
-
In the upper-left corner, click the
button.
The left navigation plane appears.
-
In the left navigation plane, click Settings.
The Settings page appears.
-
Click the Credentials widget.
The Credentials page appears. The credentials table lists the managed credentials you have permission to view.
-
Click the
button next to the Credentials title.
The credential form plane appears.
-
In the Host section, click Windows.
The selected credential options appear.
-
In the Authentication Method drop-down, select QiAnXin.
The QiAnXin options appear.
-
Configure the QiAnXin credentials.
Option Description Required QiAnXin Host
The IP address or URL for the QiAnXin host.
yes
QiAnXin Port
The port on which the QiAnXin API communicates. By default, Tenable uses 443.
yes
QiAnXin API Client ID
The Client ID for the embedded account application created in QiAnXin PAM.
yes
QiAnXin API Secret ID The Secret ID for the embedded account application created in QiAnXin PAM. yes
Domain The domain to which the username belongs. no
Username The username to log in to the hosts you want to scan. yes
Host IP Specify the host IP of the asset containing the account to use. If not specified, the scan target IP is used. no
Platform Specify the platform (based on asset type) of the asset containing the account to use. If not specified, a default target is used based on credential type (for example, for Windows credentials, the default is WINDOWS). Possible values:
-
ACTIVE_DIRECTORY — Windows Domain Account
-
WINDOWS — Windows Local Account
-
LINUX — Linux Account
-
SQL_SERVER — SQL Server Database
-
ORACLE — Oracle Database
-
MYSQL — MySQL Database
-
DB2 — DB2 Database
-
HP_UNIX — HP Unix
-
SOLARIS — Solaris
-
OPENLDAP — OpenLDAP
-
POSTGRESQL — PostgreSQL
no
Region ID Specify the region ID of the asset containing the account to use. Only if using multiple regions.
Use SSL When enabled, Tenable uses SSL for secure communication. This is enabled by default. no
Verify SSL Certificate
When enabled, Tenable verifies that the SSL Certificate on the server is signed by a trusted CA.
no
-
- Click Save.