Instructions on how to configure API access for Tanium to fetch endpoints and CVE Vulnerability Findings
host
host
Module | Requirement | Purpose |
---|---|---|
Tanium Comply | Required | Enables vulnerability assessments and provides access to CVE findings. |
Tanium Gateway | Required | Exposes the GraphQL API for secure data access. |
Tanium Platform Core | Required | Core platform services like RBAC, API token generation, etc. |
Tanium Asset | Required | Provides endpoint metadata (OS, hardware, installed software). |
# | Parameter | Description |
---|---|---|
1 | Tanium API Base URL | The base URL of the Tanium Cloud Gateway API for your tenant. The URL should be your instance name followed by ‘-api’. e.g.: https://instancename-api.cloud.tanium.com |
2 | Tanium API Token | Token generated using the Persona with proper access to endpoints and CVEs. |
Create a Custom Role
Gateway User
.Leen Integration Role
).Sensor > Read
Base
Comply Reporting
Reserved
Tanium Data Service
Create a Persona
Leen Integration Persona
).Generate the API Token
192.168.1.10
0.0.0.0/0
for unrestricted access (not recommended for production)Enter credentials