Link Aurora ASM to an Arctic Wolf MSP Account

Overview

The Arctic Wolf Aurora MDR and Arctic Wolf Aurora VM integrations need each Aurora ASM Organization to be linked to its matching Arctic Wolf (AWN) organization. You create the link by entering two values from Arctic Wolf into the Aurora ASM Organization: the organization_uuid and the pod.

This guide is for MSP partners. You can link your own Aurora ASM Organization and each of your child Organizations. Every Aurora ASM Organization is linked to its own Arctic Wolf organization, so each one gets its own organization_uuid and pod.

This guide explains how to:

  1. Create a Personal API Key in the Arctic Wolf Unified Portal.
  2. Use that key in the Arctic Wolf Developer Portal to find the organization_uuid and pod of your organization and each child organization.
  3. Enter those values on the Subscription page of each matching Aurora ASM Organization.

Key Terms

TermPlatformDescription
organization_uuidArctic Wolf (AWN)The unique identifier of your Arctic Wolf tenant. Entered in the Organization ID field in Aurora ASM.
podArctic Wolf (AWN)The deployment location of your Arctic Wolf tenant, for example us001. Entered in the Pod Name field in Aurora ASM.
org_idAurora ASMThe unique identifier of your Aurora ASM tenant.
🚧

organization_uuid is not the same as org_id

Both values are UUIDs, but they belong to different platforms. The organization_uuid identifies your tenant in Arctic Wolf. The org_id identifies your tenant in Aurora ASM. Only the Arctic Wolf organization_uuid goes in the Organization ID field on the Subscription page. Do not enter your Aurora ASM org_id there.



Step 1: Create a Personal API Key

A Personal API Key (PAK) authenticates you to the Arctic Wolf Developer Portal. The key carries the same permissions as the user who created it, so it can only see the organizations that user can access.


Follow the steps in Create a Personal API Key in the Arctic Wolf documentation. Copy the key to a safe location, because you will need it in Step 2.



Step 2: Find Your organization_uuid and pod

  1. Go to the Arctic Wolf Developer Portal at developer.arcticwolf.com.
  2. Go to one of the API Catalog endpoint test pages, like getCustomerReports
  3. Click Authorize.
  4. Paste the Personal API Key you created in Step 1, then Authenticate.
  5. The portal lists every organization your key can access under Select Organization. Select the organization you want to find the organization_uuid and pod for.
  6. After selecting an organization, note the pod listed under the organization name (e.g. "us001"), then click Close.
  7. Click the Try it out button to test your credentials.
  8. If the request was successful, the organization_uuid for the selected organization will be shown.
  9. For each Aurora ASM Organization you want to link, note the matching Arctic Wolf organization_uuid and pod from steps 5 and 7.
ℹ️

If the key is rejected, it may have expired or been revoked. Create a new key and try again. If the key is accepted but no organizations appear, check that the user who created the key has access to the organizations you expect.



Step 3: Enter the Values in Aurora ASM

ℹ️

Only a Team Admin can enter these values. Organization Admins can see the Organization Identifiers section, but its fields are read-only for them.

🚧

These values cannot be changed once saved

After you save the Pod Name or Organization ID, it is locked and can't be edited. Check both values carefully against Step 2 before you save.


  1. Sign in to Aurora ASM and switch to the Organization you want to link. For help switching Organizations, see Switching to an Organization.
  2. Click the Admin icon () on the Navigation bar, then click Subscription from the dropdown menu.
  3. Find the Organization Identifiers section.
  4. In the Pod Name field, enter the pod from Step 2.
  5. In the Organization ID field, enter the organization_uuid from Step 2.
  6. Click Save. Once saved, each value appears as read-only text instead of an input field.
  7. Repeat these steps for each Aurora ASM Organization you want to link.

When the link is in place, you can configure the Arctic Wolf Aurora MDR and Arctic Wolf Aurora VM integrations.

You no longer need the Personal API Key once you have these values. You can revoke it from Organization Profile > Personal API Keys in the Unified Portal.



Contact Us

If you're having problems linking your account, or if you've found something wrong in this document, please email us at [email protected].