McAfee Threat Intelligence Exchange V2
Connect to McAfee TIE using the McAfee DXL client.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- McAfee-TIE
Configuration parameters
- broker_ca_bundle — Broker CA certificates (required)
- cert_file — Client certificates (required)
- private_key — Client private key (required)
- broker_urls — Broker URLs (required)
- integrationReliability — Source Reliability
- feedExpirationPolicy —
- feedExpirationInterval —
Commands (3)
- file — Retrieves the reputations for the specified hashes. Can be "MD5", "SHA1", or "SHA256".
- tie-file-references — Retrieves the set of systems which have referenced (typically executed) the specified hashes.
- tie-set-file-reputation — Sets the “Enterprise” reputation (trust level, filename, and comment) of the specified hashes. Hashes that represent the same file can have a different "Enterprise" reputation if they are given different reputations. Permissions are required to invoke this method. See the 'How-to' in the instance instruction.