Endpoint Analytics

Endpoint Analytics#

The integration with Endpoint Analytics supplies the following additional contextual endpoint information to the Scrutinizer UI wherever host/entity details can be displayed:

  • Endpoint Analytics profile

  • MAC address

  • Operating system

  • Switch port location

  • Risk level

For example, from the Monitor > Alarm Monitor > Hosts page, drilling into an IP address opens the host information/activity view, which will include data ingested from EA (only available if the endpoint and its location have been discovered by EA).

Note

Further details are available in the Endpoint Analytics online documentation.

Configuration Guide#

After setting up an Endpoint Analytics account, configure integration in Scrutinizer as follows:

  1. Navigate to Admin > Plixer > Endpoint Analytics, and then tick the Enable checkbox.

  2. Enter the IP address or hostname to send API requests to.

  3. Enter the password to send with API requests.

  4. Enter the port to use for sending API requests.

  5. Use the dropdown to select the communication protocol for API requests.

  6. Enter the username to send with API requests.

  7. Click Save.

Important

Scrutinizer retains date and time data reported by Endpoint Analytics, which is based on the time zone of the account used for integration.

Troubleshooting#

If there are issues with the integration, try the following steps:

  • Check Scrutinizer logs for errors.

  • Verify that the correct credentials were entered during configuration.

For additional assistance, contact Plixer Technical Support.