Admin Guides
RevealX 360
- RevealX 360 Setup and Administration Guide
- Connect to RevealX 360 from self-managed sensors
- Create a sensor tag
- Forward session keys to ExtraHop-managed sensors
- Add your own identity provider to RevealX 360
- Integrate RevealX 360 with Axonius
- Integrate RevealX 360 with Cisco XDR
- Integrate RevealX 360 with Cortex XSOAR
- Integrate RevealX 360 with CrowdStrike
- Integrate RevealX 360 with CrowdStrike Falcon Next-Gen SIEM
- Integrate RevealX 360 with LevelBlue
- Integrate RevealX 360 with Microsoft 365
- Integrate RevealX 360 with Netskope
- Integrate RevealX 360 with QRadar
- Integrate RevealX 360 with QRadar SOAR
- Integrate RevealX 360 with ServiceNow Service Graph Connector
- Integrate RevealX 360 with Splunk Enterprise Security SIEM
- Integrate RevealX 360 with Splunk SOAR
System Configuration
- Register your ExtraHop system
- Connect to ExtraHop Cloud Services
- Enable ExtraHop Remote Access
- Configure the system time
- Upgrade the firmware on your ExtraHop system
- Save system settings to the running configuration file
- Download the running configuration as a text file
- Configure the iDRAC IP address with a monitor, keyboard, and mouse
- Enable network overlay decapsulation
- Enable L2 Discovery
- Configure Device Discovery
- Device name precedence
- Configure endpoint lookup links
- Configure IP address discovery through TTL values
- Configure a global packet capture
- Analyze a packet capture file
- Configure a static IP address through the CLI
- Collect traffic from NetFlow and sFlow devices
- Set up shared SNMP credentials for your NetFlow or sFlow networks
- Automate AWS Traffic Mirroring with CloudFormation
- Forward GENEVE-encapsulated traffic from an AWS Gateway Load Balancer
- Mirror Wire Data with VMware
- Configure ERSPAN with the Nexus 1000V
- Configure ERSPAN with VMware
- Configure RSPAN with VMware
- Configure the iDRAC Remote Access Console
- Repair a Degraded RAID 10 Configuration on the EDA 6200
- Analyze Lync Traffic
- Apply an MS SQL key to the ExtraHop system
- Install the TLS Decryption Board
- Configure packet capture
- Port Channeling
- Packet Forwarding with RPCAP
- Configure packet forwarding for Kubernetes pods
- Configure packet forwarding for pods in EKS
- Configure RPCAP for an ExtraHop packetstore
- Replace the Datastore Hard Drive
- Replace the firmware disk in an ExtraHop appliance
- ExtraHop Rescue Media Guide
- Update Lambda function runtime for ExtraHop flow sensor
- ExtraHop Open Data Stream for ELK
- ExtraHop System Notices
- Module Migration
Connected Appliances
- Connect an ExtraHop console to an ExtraHop sensor
- Connect the EXA 5300 to the ExtraHop system
- Connect the EXA 5200 to the ExtraHop system
- Connect sensors and console to the packetstore
- Create a recordstore cluster
- Disable record ingest on an Explore cluster
- Increase the capacity of your ExtraHop recordstore cluster in VMware
User Management
- Add a local user account
- Add an account for a remote user
- Configure remote authentication through LDAP
- Configure remote authentication through SAML
- Configure SAML single sign-on with Microsoft Entra ID
- Configure SAML single sign-on with Google
- Configure SAML single sign-on with JumpCloud
- Configure SAML single sign-on with Okta
- Configure remote authentication through RADIUS
- Configure remote authentication through TACACS+
- Manage imported LDAP user groups
- Migrate to SAML from LDAP
Decryption
- Decrypt TLS traffic with certificates and private keys
- Create a certificate signing request from your ExtraHop system
- Add a trusted certificate to your ExtraHop system
- Decrypt domain traffic with a Windows domain controller
- Install the ExtraHop session key forwarder on a Windows server
- Install the ExtraHop session key forwarder on a Linux server
- Set up decryption on an MS Exchange server
- Download session keys with packet captures
- Store TLS session keys on connected packetstores
- Session key forwarding from an F5 LTM
Import or Export Data
- Import external data to your ExtraHop system
- Configure an HTTP target for an open data stream
- Configure a Kafka target for an open data stream
- Configure a MongoDB target for an open data stream
- Configure a raw data target for an open data stream
- Configure a syslog target for an open data stream
- Export logs for Machine Learning Service API interactions
3rd-Party Integrations
- Send records from ExtraHop to Google BigQuery
- Send records from ExtraHop to Splunk
- Send records from ExtraHop to CrowdStrike Falcon LogScale
- Integrate ExtraHop with AWS CloudFormation
- Integrate RevealX Enterprise with Cortex XSOAR
- Integrate RevealX Enterprise with Netskope
- Integrate RevealX Enterprise with QRadar
- Integrate RevealX Enterprise with Splunk
- Integrate RevealX Enterprise with Splunk SOAR
- Deploy ERSPAN with an ExtraHop sensor and Brocade 5600 vRouter in AWS