Document toolboxDocument toolbox

Adding a NIOS Source Configuration

To add NIOS as a source configuration for Data Connector traffic flows, do the following:

  1. Log in to the Configuring NIOS in the Infoblox Portal.
  2. Click ConfigureIntegrations > Data Connector.
  3. Select the Source Configuration tab, and then click Create.
  4. From the drop-down list Create, select NIOS.
  5. In the Create NIOS Source Configuration wizard, do the following:
    • Name: Provide a name that will distinguish this source from others.
    • Description: Provide a description that does not exceed 256 characters.
    • State: Use the slider to enable or disable the source’s configuration, which will be in effect only after you enable it; if you disable it, you will not be able to select this source when you create a traffic flow.
    • Tags: Click Add and specify the following to associate a key with the source:

      • KEY: Enter a meaningful name for the key, such as a location or department.  

      • VALUE: Enter a value for the key. For details, see Managing Tags.

    • Source Data Type: Select the type of source data you want the Data Connector to collect from this source. Available source data types include Query/Response Log, IPAM Metadata/DHCP Lease, Logs from Threat Defense and Logs from DDI. 
    • CREDENTIALS FOR GRID MASTER CONFIGURATION:
      • FQDN/IP: Enter the FQDN or the IP address of the source.
      • User Name: Enter the user name for the source credentials. The Data Connector uses this entry to access the source appliance.
      • Password: Enter the password for the source credentials. The Data Connector uses this password to access the source appliance.
      • Insecure Mode: If you do not upload a CA certificate, this checkbox will be selected by default, the user-provided credentials will not be encrypted, and Data Connector will perform authentication by using just the credentials. However, if you do upload a CA certificate, your credentials will not be encrypted, HTTPS will be used, and data will be encrypted but the certificate will not be validated.
      • CA Certificate: Click Select file to upload the CA-signed certificate for the NIOS appliance. If the certificate is valid, then Data Connector will secure the connection by using the credentials as well as the certificate.

6. To allow the transfer of query and response log data, you must give Data Connector the access it needs to collect this data through SCP. In the CREDENTIALS FOR DNS QUERY LOGS TRANSFER section, do the following:

  • User Name: Enter the user name used to access the SCP server. Data Connector uses SCP to communicate with the source.
  • Password: Enter the password for the SCP server.

If you select RPZ Logs as the type of source data, you must upload the security certificate for the Data Connector to access the RPZ logs. In Certificate for RPZ Logs, click Select file and navigate to the RPZ certificate to be uploaded.

7. Click Save & Close.