Skip to main content

Imperva Skyfence

This Integration is part of the Imperva Skyfence Pack.#

The Imperva Skyfence Cloud Gateway is a Cloud Access Security Broker (CASB) that provides visibility and control over sanctioned and unsanctioned cloud apps to enable their safe and productive use. This integration was integrated and tested with version 1.0.8 of Imperva Skyfence

Configure Imperva Skyfence on Cortex XSOAR#

  1. Navigate to Settings > Integrations > Servers & Services.

  2. Search for Imperva Skyfence.

  3. Click Add instance to create and configure a new integration instance.

    ParameterRequired
    Server URL (e.g., 123.168.01.222)True
    Client IDFalse
    Client IDFalse
    Client SecretFalse
    Client SecretFalse
    Trust any certificate (not secure)False
  4. Click Test to validate the URLs, token, and connection.

Commands#

You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook. After you successfully execute a command, a DBot message appears in the War Room with the command details.

imp-sf-list-endpoints#


Returns a list of, and basic details for, all managed and un-managed endpoints.

Base Command#

imp-sf-list-endpoints

Input#

Argument NameDescriptionRequired

Context Output#

There is no context output for this command.

imp-sf-set-endpoint-status#


Updates the status (enroll or revoke) of an endpoint. You can run this command on an endpoint with any status, but the most common use case is endpoints with a status of pending.

Base Command#

imp-sf-set-endpoint-status

Input#

Argument NameDescriptionRequired
endpointIdThe ID of the endpoint. Run the "imp-sf-list-endpoints" command to return a list.Required
actionEnroll/Revoke endpoint status. Can be "enroll" or "revoke".Required

Context Output#

There is no context output for this command.