Cisco
Import your network equipment inventory and security policies from Cisco
The Cisco connector allows you to connect to Cisco ISE (Identity Services Engine) to retrieve network equipment inventory, authentication policies and security configurations.
Objective
The Cisco connector allows you to retrieve the following information:
- Network device inventory and endpoints
- Authentication and access policies
- Security event logs and audit trails
Prerequisites
- Access to Cisco ISE with administrator rights
- ERS (External RESTful Services) API enabled
- API user account configured with appropriate permissions
Authentication
This connector uses Basic Authentication or ERS (External RESTful Services) API with API credentials.
Procedure
Enable ERS API (ISE)
- Log in to Cisco ISE with administrator rights.
- Go to Administration > System > Settings.
- Locate the ERS (External RESTful Services) section.
- Enable the Enable ERS for Read/Write checkbox.
- Click Save.
Configure API Authentication
- Create an ERS API user account in ISE:
- Go to Administration > Users.
- Create a new user with ERS API permissions.
- Store the username and password securely.
- For Basic Auth:
- Use the ERS API user credentials (username/password).
Configure in OverSOC
- In OverSOC, go to Data Sources Settings > Sources.
- Select Cisco and click Configure.
- Enter the Cisco ISE server URL.
- Configure authentication:
- For Basic Auth: enter username and password
- For ERS API: use the configured credentials
- Click Save Configuration.
Official Documentation
For more information, see the Cisco ISE ERS API Authentication Documentation