checkpointdome9
Dome9 integration allows to easily manage the security and compliance of the public cloud.
- Category
- Network Security
- Pack
- CheckPointDome9
Configuration parameters
- base_url — Server URL (required)
- api_key_id — API key ID
- api_key_secret — API key secret
- api_key_id_cred —
- api_key_secret_cred —
- proxy — Use system proxy settings
- insecure — Trust any certificate (not secure)
- max_fetch — Maximum incidents for one fetch.
- isFetch — Fetch incidents
- alert_region — Alert region (AWS) to fetch as incidents.
- alert_severity — Alert severity to fetch as incidents.
- first_fetch — First fetch time
- incidentType — Incident type
- incidentFetchInterval — Incidents Fetch Interval
Commands (37)
- dome9-access-lease-delete — Terminate an Access Lease.
- dome9-access-lease-invitation-delete — Delete an Access Lease invitation.
- dome9-access-lease-invitation-list — Get a lease invitation.
- dome9-access-lease-list — Get a list of all active Access Leases.
- dome9-cloud-accounts-list — Get the cloud account list.
- dome9-cloud-trail-get — Get CloudTrail events for a Dome9 user.
- dome9-compliance-remediation-create — Add a new remediation.
- dome9-compliance-remediation-delete — Delete a remediation.
- dome9-compliance-remediation-get — Get a list of remediations for the account.
- dome9-compliance-remediation-update — Update a remediation.
- dome9-compliance-ruleset-list — Get all Rulesets for the account.
- dome9-compliance-ruleset-rule-list — Get rule details. Get the rule logic hash to create a new remediation.
- dome9-findings-bundle-get — Get the findings for a specific rule in a bundle, for all of the user's accounts.
- dome9-findings-get — Get a findings by its ID.
- dome9-findings-search — Search for findings in CloudGuard.
- dome9-global-search-get — Get top results for each service.
- dome9-instance-list — Fetch an AWS EC2 instance.
- dome9-ip-list-create — Add a new IP list.
- dome9-ip-list-delete — Delete an IP List by ID.
- dome9-ip-list-get — Get an IP List by ID.
- dome9-ip-list-metadata-create — Add metadata for a new IP address. An IP address metadata must contain the CIDR, name, and classification. Classification can be External, Unsafe, Dmz, InternalVpc, InternalDc, or NoClassification.
- dome9-ip-list-metadata-delete — Delete an IP address metadata with a specific CIDR.
- dome9-ip-list-metadata-list — Get all IP addresses metadata.
- dome9-ip-list-metadata-update — Update an existing IP address metadata. Classification can only be External, Unsafe, Dmz, InternalVpc, InternalDc, or NoClassification.
- dome9-ip-list-update — Update an IP list. This will override the existing IP list.
- dome9-organizational-unit-flat-get — Get flat organizational units.
- dome9-organizational-unit-get — Get an organizational unit by its ID.
- dome9-organizational-unit-view-get — Get organizational unit view entities.
- dome9-security-group-instance-attach — Attach the security group to an AWS EC2 instance.
- dome9-security-group-instance-detach — Detach the security group from an AWS EC2 Instance.
- dome9-security-group-ip-list-details-get — Get AWS cloud accounts for a specific security group and region and check if there is an IP list to attach to a security group.
- dome9-security-group-list — Get all security group entities.
- dome9-security-group-protection-mode-update — Change the protection mode for an AWS security group (FullManage or ReadOnly).
- dome9-security-group-service-create — Create a new service (rule) for the security group.
- dome9-security-group-service-delete — Delete a service from an AWS security group.
- dome9-security-group-service-update — Update a service (rule) for an AWS security group. Can update only the port and name.
- dome9-security-group-tags-update — Update the list of tags for an AWS security group.