Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

Tenable Blog

Subscribe

Tenable SecurityCenter and McAfee ePolicy Orchestrator Integration

Note: This integration is no longer supported. To view an updated list of Tenable's integration partners, please visit our Technology Ecosystem webpage.

McAfee ePolicy Orchestrator (ePO) is security management software for enterprise systems, providing agent-based accounting of managed networked assets. With automated policy management, you can centrally control the security processes of your organization and make faster, fact-based decisions to ensure the optimal protection of your critical assets and data. Currently, endpoint protection platforms like McAfee ePO lack vulnerability context (MVM was discontinued in January 2016). However, by having access to vulnerability data, McAfee ePO customers can achieve the following benefits:

  • Accurate and complete inventory of vulnerable assets, devices and systems
  • Visibility and confidence in your organization’s security posture
  • Data-based context for effective decision-making on action and remediation

How Tenable can help

With our recently released Tenable Connector for ePO, SecurityCenter® customers are now able to import market-leading vulnerability data into McAfee ePO. This rich and comprehensive vulnerability data includes security threats for managed hosts and rogue devices that SecurityCenter detects on a network. As a result, McAfee ePO customers now have critical visibility and context on systems, assets and data needed for an effective security program.

Connecting the two systems is easy. First, download the connector. Then follow the instructions below.

Installing the Tenable Connector for ePO

  1. Log on to McAfee ePO. From the drop-down Menu, click Extensions.

Installation Extensions

  1. Click Install Extension at the top of the page.
  1. Click Choose File.
  1. Select the file that you have downloaded from the portal and Open it.
  1. Click OK.
  1. Review the information to be sure that it is the correct extension and click OK.

Review extension information

  1. From the extension tree on the left, find the Tenable Security Connector under Third Party. Verify that everything was installed correctly by clicking on it. The connector will display a Running status.

Connector is running

Configuring the registered server

  1. Log on to ePO. From the Menu, click Registered Servers.

Registered Servers

  1. Click New Server at the top of the page.
  1. Give the SecurityCenter server a meaningful name, and click Next.
  1. Enter the configuration for your SecurityCenter installation: IP Address, Port Number, User Name and Password.

Enter configuration data

  1. Click the Test Connection button. This will check the credentials to make sure everything works. Click Save.
  1. The new server will be listed in the Registered Servers list with the name from step 3.

List of Registered Servers

Configuring the connector

  1. Log on to ePO. From the Menu, click Server Tasks.

Server Tasks

  1. In the Quick find search box, enter Tenable and click Apply.
  1. You should see a Tenable SecurityCenter Collect Task. Click Edit.

Tenable SecurityCenter Collect Task

  1. Change the schedule status to Enabled, and click Next.
  1. From the drop-down list, select the Registered Server you created previously.
  2. Select the schedule that works best for your environment to collect data from SecurityCenter. NOTE: You should only have one task configured at any given time; during the import process, all old data is purged. Click Next.

Schedule

  1. You should now see a summary of your configuration. If everything looks correct, click Save.

Configuration summary

Running the connector

At this point, the connector will run on your configured schedule. Alternatively, follow these steps to run the connector on-demand:

  1. Click Run in the Server Tasks list.

Run/Server Tasks

  1. This will pull the Server Task Log for the extension and display the current status of the import. Any errors or status updates will be in this log. The time to display the log depends on the amount of vulnerability data in SecurityCenter for the specified time frame.

Server Task Log status

Viewing the data from the connector

Tenable provides an ePO Dashboard with some basic charts and graphs of the imported data:

Tenable ePO Dashboard

The data can also be viewed on each host by using the system tree:

System Tree data view

With the Tenable-built, McAfee-certified connector, SecurityCenter data is automatically sent to the McAfee ePO console. Having this rich vulnerability assessment data enables ePO security professionals to make better informed decisions about action and remediation in their environment. The integration also enables McAfee ePO customers to maintain a complete and accurate inventory of all systems, whether managed by ePO or not.

For more information

See the McAfee Integration page for more information.

Related Articles

Cybersecurity News You Can Use

Enter your email and never miss timely alerts and security guidance from the experts at Tenable.

Tenable Vulnerability Management

Enjoy full access to a modern, cloud-based vulnerability management platform that enables you to see and track all of your assets with unmatched accuracy.

Your Tenable Vulnerability Management trial also includes Tenable Lumin and Tenable Web App Scanning.

Tenable Vulnerability Management

Enjoy full access to a modern, cloud-based vulnerability management platform that enables you to see and track all of your assets with unmatched accuracy. Purchase your annual subscription today.

100 assets

Choose Your Subscription Option:

Buy Now

Tenable Vulnerability Management

Enjoy full access to a modern, cloud-based vulnerability management platform that enables you to see and track all of your assets with unmatched accuracy.

Your Tenable Vulnerability Management trial also includes Tenable Lumin and Tenable Web App Scanning.

Tenable Vulnerability Management

Enjoy full access to a modern, cloud-based vulnerability management platform that enables you to see and track all of your assets with unmatched accuracy. Purchase your annual subscription today.

100 assets

Choose Your Subscription Option:

Buy Now

Tenable Vulnerability Management

Enjoy full access to a modern, cloud-based vulnerability management platform that enables you to see and track all of your assets with unmatched accuracy.

Your Tenable Vulnerability Management trial also includes Tenable Lumin and Tenable Web App Scanning.

Tenable Vulnerability Management

Enjoy full access to a modern, cloud-based vulnerability management platform that enables you to see and track all of your assets with unmatched accuracy. Purchase your annual subscription today.

100 assets

Choose Your Subscription Option:

Buy Now

Try Tenable Web App Scanning

Enjoy full access to our latest web application scanning offering designed for modern applications as part of the Tenable One Exposure Management platform. Safely scan your entire online portfolio for vulnerabilities with a high degree of accuracy without heavy manual effort or disruption to critical web applications. Sign up now.

Your Tenable Web App Scanning trial also includes Tenable Vulnerability Management and Tenable Lumin.

Buy Tenable Web App Scanning

Enjoy full access to a modern, cloud-based vulnerability management platform that enables you to see and track all of your assets with unmatched accuracy. Purchase your annual subscription today.

5 FQDNs

$3,578

Buy Now

Try Tenable Lumin

Visualize and explore your exposure management, track risk reduction over time and benchmark against your peers with Tenable Lumin.

Your Tenable Lumin trial also includes Tenable Vulnerability Management and Tenable Web App Scanning.

Buy Tenable Lumin

Contact a Sales Representative to see how Tenable Lumin can help you gain insight across your entire organization and manage cyber risk.

Try Tenable Nessus Professional Free

FREE FOR 7 DAYS

Tenable Nessus is the most comprehensive vulnerability scanner on the market today.

NEW - Tenable Nessus Expert
Now Available

Nessus Expert adds even more features, including external attack surface scanning, and the ability to add domains and scan cloud infrastructure. Click here to Try Nessus Expert.

Fill out the form below to continue with a Nessus Pro Trial.

Buy Tenable Nessus Professional

Tenable Nessus is the most comprehensive vulnerability scanner on the market today. Tenable Nessus Professional will help automate the vulnerability scanning process, save time in your compliance cycles and allow you to engage your IT team.

Buy a multi-year license and save. Add Advanced Support for access to phone, community and chat support 24 hours a day, 365 days a year.

Select Your License

Buy a multi-year license and save.

Add Support and Training

Try Tenable Nessus Expert Free

FREE FOR 7 DAYS

Built for the modern attack surface, Nessus Expert enables you to see more and protect your organization from vulnerabilities from IT to the cloud.

Already have Tenable Nessus Professional?
Upgrade to Nessus Expert free for 7 days.

Buy Tenable Nessus Expert

Built for the modern attack surface, Nessus Expert enables you to see more and protect your organization from vulnerabilities from IT to the cloud.

Select Your License

Buy a multi-year license and save more.

Add Support and Training