OT Connectors
The following is not supported in Tenable FedRAMP Moderate environments. For more information, see the Tenable FedRAMP Moderate Product Offering.
If your organization has OT Security and Tenable Vulnerability Management, you can allow OT Security to transmit assets and findings data to Tenable Vulnerability Management by setting up OT connectors. You can manage OT connectors from the Tenable Vulnerability Management Sensors page.
To open the OT Connectors menu in Tenable Vulnerability Management:
-
In the left navigation, click Sensors.
The Sensors page appears. By default, the Nessus Scanners tab is active and Linked Scanners is selected in the drop-down box.
-
Click the OT Connectors tab.
The list of linked OT connectors appears.
-
Use the following procedures to manage OT connectors:
-
Click Add OT Connector.
The Add OT Connector window appears.
-
Click Generate.
Tenable Vulnerability Management shows the appropriate cloud site to link the OT connector to and generates an OT linking key.
Note: You can use the linking key to link one OT connector, and you must use the linking key within two hours of generation. To link additional OT connectors, generate and use a new linking key for each connector. -
Use the cloud site and linking key to link the connector to Tenable Vulnerability Management from the OT Security user interface. For more information, see the OT Security User Guide.
Required Tenable Vulnerability Management User Role: Scan Manager or Administrator
To ensure that your OT connectors are recognizable and represent the correct types, you may need to modify the OT connector names and types in Tenable Vulnerability Management. You can choose from two types: ICP and EM (Enterprise Manager). For more information about the types, see the OT Security User Guide.
Note: Updating an OT connector name or type in Tenable Vulnerability Management does not cause any changes in OT Security.
To modify an OT connector name or type:
-
In the OT Connectors table, double-click the Name or Type cell to edit it.
-
Enter the new name or select the new type (ICP or EM).
-
Click out of the cell.
Tenable Vulnerability Management saves your change.
Required Tenable Vulnerability Management User Role: Scan Manager or Administrator
There may be some cases where you want to disable an OT connector temporarily and enable it at a later time. For example, you may want to disable an OT connector if OT Security begins sending data from an unwanted network to Tenable Vulnerability Management. Once the issue is resolved, you can re-enable the connector.
To enable or disable an OT connector:
-
In the OT Connectors table, click in the row of the connector that you want to enable or disable.
A drop-down menu appears.
-
If the connector is currently enabled, click Disable. If the connector is currently disabled, click Enable.
If you enabled the connector, Tenable Vulnerability Management bolds the connector row text and updates the Enabled column to Yes. If you disabled the connector, Tenable Vulnerability Management grays the connector row text and updates the Enabled column to No.
Required Tenable Vulnerability Management User Role: Scan Manager or Administrator
Delete an OT connector from Tenable Vulnerability Management if you no longer want the OT connector to send data to Tenable Vulnerability Management. For example, if you need to redeploy OT Security, you would need to delete any connector associated with the old deployment.
Tenable recommends that whenever you delete an OT connector from Tenable Vulnerability Management, you also delete the related connector in OT Security to ensure that Tenable Vulnerability Management and OT Security stay aligned.
Note: You cannot undo an OT connector deletion; if you want to relink the OT connector, you have to repeat the Add an OT connector process.
To delete an OT connector from Tenable Vulnerability Management:
-
In the OT Connectors table, click in the row of the connector that you want to delete.
A drop-down menu appears.
-
Click Delete.
The Delete OT Connector window appears.
-
Click Delete.
Tenable Vulnerability Management removes the connector from the table.