ThreatX WAF Integration
Connect ThreatX to Guard to automatically ingest WAF-protected hostnames and metadata into your attack surface inventory.
ThreatX WAF Integration
Guard can ingest asset inventory from ThreatX, bringing WAF-protected hostnames and associated metadata into your Guard attack surface automatically.
What Guard collects
When the integration is enabled, Guard pulls ThreatX-protected assets and correlates them with the rest of your attack surface. Those assets appear alongside discoveries from other integrations, giving you a single view of WAF-covered and uncovered surfaces.
Prerequisites
- A ThreatX account with API access.
- A ThreatX API key with sufficient permissions to read asset/hostname data.
Connect ThreatX to Guard
- In Guard, go to Integrations > WAF > ThreatX.
- Enter your ThreatX API key.
- Save the configuration.
Guard will begin ingesting assets on the next scheduled sync. Newly discovered hostnames and their metadata will appear in your asset inventory automatically.
Verify the integration
After the first sync completes, search your asset inventory for hostnames that are protected by ThreatX. Assets sourced from this integration will be attributed to ThreatX, making it straightforward to distinguish WAF-covered assets from those discovered through other means.
Troubleshooting
Remove the integration
- Go to Integrations > WAF > ThreatX.
- Select Remove integration.
Removing the integration stops future syncs. Assets already imported are retained in your inventory until removed manually.