vectra ai data.md

For the complete documentation index, see llms.txt. Markdown versions of documentation pages are available by appending .md to page URLs; this page is available as Markdown.

Vectra AI

The Dropzone AI Platform integrates with Vectra AI, an AI-driven NDR platform for automated threat detection and response across hybrid networks, including public clouds, SaaS, identity systems, and data centers. Dropzone supports both Cloud and On-premise deployments of Vectra AI.

Create an API Client (Cloud Deployment)

If you have a Cloud deployment, Vectra AI requires an API Client and Secret Key to enable.

To obtain these, do the following:

Add API Client

Generate the API Client

Save the credentials

Create an API Token (On-Premise Deployment)

Click "My Profile"

Input your credentials

Copy the API Token

Enable Vectra AI

To enable the Data Source integration, you'll need the following information:

Dropzone Field Source
Deployment Type Your Vectra AI deployment type, e.g. Cloud or On-Premise
Vectra AI URL The base URL of your Vectra instance, e.g. https://api.vectra.ai or https://10.20.1.5
OAuth2 Client ID The Client ID value you copied earlier. Only necessary for Cloud deployments
OAuth2 Client Secret The Secret Key value you copied earlier. Only necessary for Cloud deployments
Vectra AI Server The server hostname of your on-premise deployment, e.g. 10.20.1.5
Vectra AI Port The API port of your on-premise deployment

To enable the Data Source integration, do the following:

Integrations Dropdown

Click Available

The Vectra AI Tile

The Vectra AI alert source configuration (pt 1)

The Vectra AI alert source configuration (pt 2)

The Vectra AI alert source configuration (pt 3)

If you have any errors or questions, engage your Dropzone AI support representative.