Tenable Vulnerability Management
introduction this guide tells you how to authenticate the tenable vulnerability management connector in swimlane using api key authentication you will generate api keys in tenable vulnerability management, collect the required credentials, and configure the connector in swimlane prerequisites tenable vulnerability management access requirements you must have permissions to access the tenable vulnerability management console generate api keys access the tenable vulnerability management api view vulnerability and asset data required by the connector required credentials during setup, you will collect host url access key secret key tenable vulnerability management setup take the following steps to generate api keys log in to your tenable vulnerability management account click your profile icon in the upper right corner select my account open the api keys section click generate api keys copy and securely save the following values access key secret key these credentials are used to authenticate the swimlane connector take the following steps to collect the host url log in to your tenable vulnerability management tenant copy the url displayed in your browser example https //cloud tenable com use this value as the url during connector configuration connector configuration in swimlane log in to turbine from the left hand navigation pane, click orchestration and click assets asset homepage opens click the plus icon to open the configure your connector asset window select tenable vulnerability management from the asset type list fill in the asset settings and asset input as shown field description required/optional url tenable vulnerability management host url required access key api access key generated in tenable required secret key api secret key generated in tenable required verify ssl enable/disable ssl verification optional http proxy optional proxy configuration optional fields with marks are required click create troubleshooting authentication failed (401 unauthorized) verify that the access key is correct the secret key is correct the api keys have not been regenerated or revoked the host url is correct permission denied (403 forbidden) verify that your tenable account has permission to access the requested resources the api keys belong to a user with sufficient privileges your account has access to the required assets, scans, and reports unable to connect verify that the host url is reachable from the swimlane instance firewall or proxy settings allow outbound https traffic the tenable service is available ssl errors if ssl verification fails verify that the tenable endpoint uses a trusted ssl certificate confirm that any proxy is not intercepting ssl traffic disable verify ssl only for testing if permitted by your organization's security policy result you have successfully authenticated the tenable vulnerability management connector in swimlane sources tenable developer portal β generate api keys https //developer tenable com/docs/authorization https //developer tenable com/docs/authorization tenable vulnerability management api documentation https //developer tenable com/reference https //developer tenable com/reference tenable workbench filters documentation https //developer tenable com/docs/workbenches filters tenable vulnerability management user guide https //docs tenable com/vulnerability management/ https //docs tenable com/vulnerability management/