Cortex XDR by Palo Alto Networks is an extended detection and response platform that monitors and manages cloud, network, and endpoint events and data.
URL - URL for the Cortex XDR server
api_key_id - Unique ID for the API Key
api_key - API Key
api_key_security_level - The security level for the API Key, either Standard or Advanced.
The key must have view access for Endpoint Administration.
Instructions to generate the API Key ID and API Key can be found here
Add a source: Follow our instructions to add a Sevco source.
Provide credentials: You'll be asked to provide source credentials that Sevco will use to connect to SOURCE:
Updated about 1 month ago