Connect to Reveal(x) 360 from self-managed sensors
This guide provides instructions for connecting Reveal(x) 360 to the self-managed sensors and packetstores that are deployed on-premises or in AWS, Azure, and Google Cloud Platform (GCP) cloud service providers.
Before you begin
- You must have a user account with System Administration or System and Access Administration privileges to configure Reveal(x) 360. See the Reveal(x) 360 Setup and Administration Guide to learn how to configure Reveal(x) 360 and create users before completing the steps in this guide.
- You must have a user account with Unlimited privileges on your sensors and packetstores.
- Your sensor and packetstore firmware should be the same firmware version as Reveal(x) 360.
- Your sensor and packetstores must be connected to ExtraHop Cloud Services before connecting to Reveal(x) 360. For more information, see Connect to ExtraHop Cloud Services.
- You should configure network traffic forwarding to your sensors after the sensors are connected to Reveal(x) 360.
- If you have a firewall, all traffic must be permitted outbound to TCP 443 to connect to ExtraHop Cloud Services and the ExtraHop Cloud Recordstore. For more information, see Configure your firewall rules.
Note: | For ExtraHop-managed sensors, see Deploy Reveal(x) 360 sensors for AWS. |
Connect your sensor
- Log in to the Administration settings on your self-managed sensor through https://<extrahop-hostname-or-IP-address>/admin.
- In the Console Settings section, click Connect Console.
- Click Connect Console.
- Paste the token you generated from the Reveal(x) 360 Console into the Generated Token field.
- Type a name into the Sensor Nickname field to identify this sensor in the Reveal(x) 360 Console.
- Click Connect.
Connect your packetstore
- Log in to your self-managed packetstore through https://<extrahop-hostname-or-IP-address>/admin.
- In the Packetstore Cluster Settings section, click Connect to Reveal(x) 360.
- Paste the token you generated from the Reveal(x) 360 Console into the Generated Token field.
- Type a name into the Packetstore Nickname field to identify this appliance in the Reveal(x) 360 Console.
- Click Connect.
Connect sensors to your Trace appliance
You must establish a connection from all of your sensors to your packetstores before you can query for packets.
Test the configuration
Verify that you can view traffic from your connected sensors on the Reveal(x) 360 Console.
Learn more about Reveal(x) 360
After traffic data appears, you can begin exploring Reveal(x) 360. Check out our documentation website, which includes general concepts, how-to guides, and walkthroughs. For example, you can learn how to create a dashboard or activity map, prioritize the devices on your network for advanced analysis, and investigate security detections.
Thank you for your feedback. Can we contact you to ask follow up questions?