Skip to main content

CollectorsCloud Collectors Administration Guide

Add Accounts for Cisco Duo Cloud Collector

You can use your Cisco Duo account across one or more Cisco Duo Cloud Collector instances. Before you can add your account, you must identify the authentication method and obtain the identifying information.

To create a Cisco Duo account, perform each of the following workflows:

Create an Admin API Protected Application to Obtain an Integration Key, Secret Key, and API Hostname

Duo Security APIs are authenticated via application keys. To obtain an Integration key, Secret Key, and the API Hostname, you must create a new Admin API Protected application.

To create a new API protected application:

  1. Log in to the Duo Admin console.

  2. Navigate to Applications > Protect an Application.

    Duo_console1.png
  3. In the list of available applications, click Protect this Application link for Admin API. On the new application’s Properties page, note the secret key Integration key, Secret key, and API hostname that the Details section displays. The integration key and secret key uniquely identify a specific application to Duo. The API hostname is unique to your account and shared by all related applications. Use these values, represented by a string of letters and numbers, to configure the Cisco Duo Cloud Collector.

    duo_console_2.png
  4. Specify a name for the application that you created.

  5. Select the following options to give the required permissions to the Admin API protected application:

    • Grant administrators - For the Exabeam Security Operations Platform to read administrator identifying properties.

    • Grant read log - For the Exabeam Security Operations Platform to read the required audit logs.

    • Grant read resource – For the Exabeam Security Operations Platform to read users and groups information.

  6. Save the changes.

    Proceed to create a sharable account for Cisco Duo.

Create a Sharable Account for Cisco Duo

To set up a sharable account for Cisco Duo in Cloud Collectors:

  1. Log in to the Exabeam Security Operations Platform with your registered credentials as an administrator.

  2. Navigate to Collectors > Cloud Collectors.

  3. Click Accounts, then click New Account.

    Account1.png
  4. In the Add a New Account page, enter the required information.

    Duo_account1.png
  5. Click Save.

  6. Proceed to configure your Cisco Duo Cloud Collector.

    When you onboard new collectors for Cisco Duo, you must select the Cisco Duo account. You can reuse credentials between different Cisco Duo cloud collectors.