Gigamon ThreatINSIGHT is a SaaS-based network security monitoring platform that detects, responds, and investigates network-based threats. ThreatINSIGHT includes metadata search of supported protocols, visualization tools for tracking the different aspects of your network, and automated threat-detections with alerting functionality.
Configuring the Connector for Gigamon ThreatINSIGHT #
To configure Lucidum to ingest data from Gigamon ThreatINSIGHT:
-
Log in to Lucidum.
-
In the left pane, click Connector.
-
In the Connector page, click Add Connector.
-
Scroll until you find the Connector you want to configure. Click Connect. The Settings page appears.
-
In the Settings page, enter the following:
-
URLÂ (required): The URL of the Gigamon ThreatINSIGHT API
-
API Token (required) – Gigamon ThreatINSIGHT API token
-
Verify SSL. For future use.
-
-
To test the configuration, click Test.
-
If the connector is configured correctly, Lucidum displays a list of services that are accessible with the connector.
-
If the connector is not configured correctly, Lucidum displays an error message.
-
API Documentation #
https://community.gigamon.com/gigamoncp/s/question/0D55Y00007U3XBASA3/how-do-i-use-python-to-execute-a-query-using-the-threatinsight-rest-api