Appendix E - Integrating CrowdStrike Falcon
The integration of Infinity Playblocks with CrowdStrike Falcon allows you to receive real-time alerts from CrowdStrike Falcon for Endpoint and take corrective actions through automations. These automated workflows enable faster responses and more efficient threat management.
|
Note - Make sure you have the necessary permissions to isolate (contain) and de-isolate devices. |
Integrating CrowdStrike Falcon
-
Log in to the CrowdStrike Falcon web portal:
-
Go to Support and resources > API clients and keys.
The API Clients and Keys window appears.
-
Click Add new API client.
The Create API client window appears.
-
Enter these:
-
Client name
-
Description
-
-
Select the relevant scopes checkbox(s).
-
Click Create.
The API client created window appears.
-
Click to copy Client ID, Secret Key and Base URL.
-
Click Done.
-