Preparing for the Vulnerability Response Integration with Palo Alto Networks Prisma Cloud Compute
Summarize
Summary of Preparing for the Vulnerability Response Integration with Palo Alto Networks Prisma Cloud Compute
This document outlines the necessary setup tasks to prepare for integrating ServiceNow's Vulnerability Response with Palo Alto Networks Prisma Cloud Compute. It provides a checklist to ensure proper configuration before installation and data import.
Show less
Key Features
- Information Requirements: Ensure you have the API base URL, username, and password for pulling vulnerabilities. The user must have permissions to monitor images.
- Application Installation: Install the Vulnerability Response application prior to the third-party integration. Version 16.1 or later is required.
- Entitlements: Obtain and download the Vulnerability Response Integration application on your ServiceNow instance.
- Instance Capacity: Assess the instance's capacity for expected vulnerable item imports to avoid performance issues.
- User Roles: Assign necessary roles, including Container Vulnerability Admin and Vulnerability Analyst, to manage integrations and remediation efforts.
Key Outcomes
By following the checklist and completing the setup tasks, you will ensure a smooth integration process with Palo Alto Networks Prisma Cloud Compute. This integration enables effective monitoring and remediation of container vulnerabilities within your ServiceNow environment, leading to improved security posture and operational efficiency.
You can prepare for the Vulnerability Response Integration with Palo Alto Networks Prisma Cloud Compute by performing setup tasks.
Before you begin
To install and configure the Vulnerability Response Integration with Palo Alto Networks Prisma Cloud Compute application, you may print the following checklist. Verify the items listed are completed before you install the application and import the vulnerability data into your ServiceNow AI Platform® instance.
| Task | Description |
|---|---|
Verify that you have the following sets of information:
These credentials are used to pull the vulnerabilities from the Prisma Cloud Compute integration. For more information, see https://pan.dev/compute/api/
Note: Mid Server is optional. The user credential used for Prisma Cloud Compute integration needs permission to monitor the images. See the following code:
|
|
| If not already installed and activated, install the Vulnerability Response
application before you install the third-party application. For more information about installing and activating the Vulnerability Response application, see Install Vulnerability Response. This integration requires version 16.1 of Vulnerability Response or later. |
|
| Get entitlements and download the Vulnerability Response Integration with Palo Alto Networks Prisma Cloud Compute application on your ServiceNow AI Platform® instance. | |
| Estimate the number of vulnerable items that you expect to import. Verify that your instance can accept the number of vulnerable items that you expect to import. An undersized instance can lead to long load times. If you don't know the size of your instance, or if you need assistance, contact ServiceNow Technical Support. |
|
Verify that you have the following groups or users to manage the integrations and to
remediate the vulnerable items:
If not already created, you may prefer to create additional groups and add users with the User Administration module in your instance. For more information, see Create a user group. |
|
| Install the Vulnerability Response integration with NVD and run the NIST National Vulnerability Database Integration - API (CVE only). |
You are ready to Configure the Vulnerability Response Integration with Palo Alto Networks Prisma Cloud Compute application.