NextDLP Reveal

The NextDLP Reveal connector provides a simple way to connect to your Reveal tenant so that detection, incident, and audit log events can be pulled into DNIF.

Leverage detections to gain insight into unauthorized and unusual user activities on endpoints and strengthen your data loss prevention strategy. Use incidents to cut down triage and investigation time by viewing detections that have been grouped together because they have the same root cause. Access audit logs to capture details about operator interactions with the Reveal UI and Reveal API, providing you with important compliance and security information for your organization.

Pre-requisites
  • Tenant Name
  • Stream ID
  • Access Token
Steps to derive prerequisites:
  • NOTE: The NextDLP Reveal API documentation is not public and can only be accessed by partners or customers.
  1. Open the Admin tab on the About page
  2. The documentation link should be the first visible link
Configurations

The following are the configurations to forward NextDLP Reveal Connector logs to DNIF.‌

image 1-1

Field Name Description
  Connector NameEnter a name for the connector
  Reveal Tenant NameEnter the Reveal Tenant Name
  Event Stream IDEnter the Event Stream ID
  Access TokenEnter the Access Token
  • Click Save after entering all the required details and click Test Connection, to test the configuration.
  • Connection successful message will be displayed on screen along with the time stamp.