SentinelOne

The integration of Playblocks with SentinelOne allows you to receive real-time alerts from SentinelOne agents and take corrective actions through automations. These automated workflows enable faster responses and more efficient threat management.

Note:

Before you configure the SentinelOne connector, create a SentinelOne service user with sufficient permissions. For more information, see Appendix F - Creating a SentinelOne Service User.

Configure a SentinelOne connector

  1. Access Playblocks and click Connectors.
  2. Select SentinelOne.
  3. Turn on the Enable toggle button.
  4. In the Management URL field, enter your SentinelOne domain, for example, https://my-mgmt.sentinelone.net.
  5. In the API Token field, enter the API token that you created in your SentinelOne account.
  6. Click Fetch.
  7. Click Save.

    The protected account that you chose is displayed.